CONFIDENTIAL · Airbus Protect internalMUC / EDDM · pre-meeting briefing
MUC
EDDM
Pre-Meeting Dossier · ACI EUROPE 2026 · Prague

Munich Airport

🇩🇪Flughafen München GmbH (FMG) · Germany · Booth 254
Approach vector — An IR contract is already landing — now expand a mature cyber leader into OT, Part-IS and adversarial assurance. Munich runs its own SOC; treat them as a peer, sell depth and surge, not basics.
Passengers (2025)
43.4M
Growth 2025
+4.4% (top in DACH)
New T1 Pier
+6M pax, opened Apr 2026
Cyber maturity
Own SOC + ISH
Status
Active
01

Who we're meeting

named targets · relationship status
Thomas Hoff Andersson
Managing Director & COO
Booth 254 · opening session
Andreas Haumberger
Head of SOC
IR contract starting — primary cyber contact
Jan Hendrik Anderson
COO track
Routed to Maxime Brun
Relationship · ActiveIR contract starting soon via Andreas Haumberger (Head of SOC) → LWE. COO track via Jan Hendrik Anderson → Maxime.
02

Situation board

what's happening · why now
Cyber posture
Runs its own Information Security Hub (ISH)

Munich operates a “Center of Excellence against Cyber Crime” with a full Cyber Defense Centre, OT training room and IT labs — and even sells cyber training via its AirportAcademy. This is a mature, self-aware buyer. The pitch is specialist depth and surge capacity, never “you need security.”

Growth
43.4M passengers in 2025, +4.4% — biggest absolute DACH growth

New T1 Pier for non-Schengen long-haul opened April 2026 (+6M capacity). Growth and new infrastructure expand the attack surface faster than internal teams can scale.

Resilience event
October 2025 drone sightings halted flight ops

Repeated drone incursions delayed operations — a vivid, recent, board-level reminder that airspace and operational resilience is not just a cyber-screen problem. A crisis-management and resilience opening.

Operating model
T2 is a JV with Lufthansa

Shared infrastructure and governance across operator and anchor carrier multiplies third-party and identity complexity.

03

Risk & regulatory exposure

the pressure they're under

NIS2 is in force — no transition period

The German NIS2UmsuCG entered into force on 6 December 2025. As KRITIS, Munich is automatically a “besonders wichtige Einrichtung”: management-board personal liability (§38), 24h/72h incident reporting (§32), mandatory supply-chain risk management (§30), fines to €10M / 2% turnover (§65). The BSI registration deadline (6 March 2026) has already passed.

Spared by Collins — knows exactly why it matters

Munich runs different passenger systems and was unaffected in September 2025. As a sophisticated buyer, FMG understands this was vendor architecture, not invulnerability — and that NIS2 now makes supply-chain assurance a legal duty, not a best practice.

Part-IS obligations are live

EASA Part-IS reaches FMG as an operator whose information systems touch aviation safety. A mature SOC is necessary but not sufficient for the aviation-safety governance Part-IS demands.

04

Opportunity map

their need → our offer · P1 = lead
CyberP1

Incident Response retainer (landing now)

Contract starting via Haumberger. Even a strong in-house SOC needs an external, aviation-grade IR partner for major-incident surge and forensics.

Airbus ProtectAirbus Protect CSIRT, 24/7 hotline and digital forensics — the surge layer above the ISH, rehearsed via joint exercises.
CyberP1

Part-IS readiness & audit

A world-class SOC doesn't equal Part-IS governance maturity.

Airbus ProtectEASA-accredited Qualified Entity — build the aviation-safety security governance the ISH doesn't cover.
CyberP2

OT / Industrial security

ISH has an OT training room — proof OT is on their radar. New pier, baggage, energy and apron systems need live OT defence, not just training.

Airbus ProtectCISSP-certified OT consultants extend SOC visibility into the OT estate around the new infrastructure.
CyberP2

Red & Purple teaming

The fastest way to add value to a mature SOC: test it adversarially and tune detection together.

Airbus ProtectPurple teaming with the ISH analysts — peer-to-peer, measurable detection uplift.
SafetyP2

Resilience & crisis management (drones)

October 2025 drone disruption is fresh. Operational resilience and crisis playbooks are top of mind.

Airbus ProtectBusiness Continuity Plans, resilience exercises and crisis coaching — Airbus uniquely spans the airspace-to-ground threat picture.
CyberP3

Attack-Surface & Digital Risk (darknet)

A premium hub is a high-value target for credential leakage and industrial espionage.

Airbus ProtectContinuous attack-surface management plus darknet monitoring for compromised credentials and brand abuse.
05

Why Airbus Protect — for them

the unfair advantages
USP 01

Peer, not vendor

Munich runs one of Europe's most respected airport SOCs. Airbus Protect engages as a technical equal — surge capacity, adversarial testing and aviation-safety governance the ISH doesn't replicate.

USP 02

Aviation-grade IR, already chosen

The IR contract validates the fit. Airbus's CSIRT brings forensics and 24/7 response with aviation context no generic MSSP matches.

USP 03

Only EASA Part-IS Qualified Entity present

Bridges the gap between an excellent SOC and the aviation-safety security governance Part-IS requires.

USP 04

Airspace-to-ground threat span

Post-drone, the Airbus pedigree across counter-UAS, airspace and ground operations is a differentiator no pure-play cyber firm can claim.

06

Talking points

tap to open · tailored openers
“The IR retainer is the start. The two things a SOC as good as yours still wants from outside: adversarial pressure to tune detection, and aviation-safety governance for Part-IS. We do both — peer to peer.”
“NIS2 is now in force with no grace period and personal board liability — and September proved a vendor you don't control can stop your operation. We make supply-chain assurance auditable, and we did it for aviation, not in theory.”
“The drone disruptions were a reminder that resilience isn't only about screens. Airbus is the one partner that spans airspace and ground — we can pressure-test your operational crisis playbooks end to end.”