kbn
kbn.com · 7 vendors
The domain kbn.com is not publicly accessible and returns an access-denied error. No verifiable public information about the company operating this domain could be confirmed through the website, WHOIS records, or linked business registry data.
Resilience scores
- Digital Sovereignty: 0
- Digital Resilience: 3
Technology vendors
- CSC — Other — United States
- Meta Platforms, Inc. — Technology — United States
- Trend Micro Incorporated — Cybersecurity — United States
- and 4 more
Insights
Last updated 2026-09-12 · revision 4
7 direct vendors, 153 subvendors
Direct vendors by controlling owner country (sample)
- United States: 6
- Norway: 1
Subvendors by controlling owner country (sample)
- Poland: 1
- Netherlands: 1
- Norway: 1
Migration Readiness: 3/10
Assessed by AI based on technology stack characteristics (cloud-native vs legacy, containerization, microservices), regulatory environment, data residency requirements, financial stability, and vendor lock-in risks. The score ranges from 0-10, where higher scores indicate better readiness for technology migration.
The company's migration readiness is assessed as very low due to a lack of critical information across multiple domains. The internal tech stack and key technologies are unknown, making it impossible to determine if the current architecture is cloud-native, containerized, or monolithic, which are crucial factors for migration complexity. The regulatory environment requires a NIS2 assessment, indicating unaddressed compliance requirements that could significantly complicate or delay any migration efforts. Similarly, data residency requirements are unknown, posing a major potential hurdle for cloud adoption. Financial stability, essential for funding a significant migration project, cannot be determined. Furthermore, vendor relationships present significant unknowns: there is a contradiction in the provided data, stating "Total Vendors: 0" while simultaneously listing "Total Services: 7" and vendor geographic diversity across Norway and the United States. Assuming there are indeed vendors, the total number of vendors and vendor lock-in risk are explicitly unknown. These combined factors indicate a high level of uncertainty and potential challenges, leading to a very low migration readiness score.
Compliance
8 in-scope frameworks identified; showing 3.
NIS2 (source) — Assessment Required
KBN, as a provider of credit to the Norwegian local government sector, falls under the 'banking' and 'financial market infrastructure' sectors, which are classified as 'Essential Entities' under NIS2. It operates in the EU (Norway, via EEA agreement) and exceeds the size thresholds.
As a key financial entity, a significant cybersecurity incident could have systemic impacts, leading to regulatory scrutiny and financial penalties. The likelihood depends on the maturity of its cybersecurity controls.
Evidence: https://www.kbn.com/en/about-us/privacy-policy/
ISO 27001 (source) — Assessment Required
While not legally mandated, ISO 27001 is a globally recognized standard for information security management, highly relevant for a financial institution managing sensitive data and critical infrastructure.
Lack of a certified Information Security Management System (ISMS) can be a competitive disadvantage and may not meet the expectations of regulators and partners for an institution of its systemic importance.
Evidence: https://kbncertification.com/about-us.aspx, https://kbncertification.com/
CRR — Compliant
As a Norwegian credit institution, KBN is subject to the EU's Capital Requirements Regulation (CRR) and Directive (CRD IV), as implemented in Norwegian law.
Non-compliance with capital and liquidity requirements would result in significant regulatory sanctions and reputational damage. Given KBN's AAA/Aaa credit rating and state ownership, the likelihood of non-compliance is very low.
Evidence: https://www.kbn.com/globalassets/dokumenter/finansielle-rapporter/arsrapport/kbn-annual-report-2025.xhtml, https://www.annualreports.com/Company/kommunalbanken-as, https://en.wikipedia.org/wiki/Kommunalbanken, https://www.finanstilsynet.no/globalassets/laws-and-regulations/regulations/crr-crd-iv-regulations-04-2020.pdf, https://www.kbn.com/contentassets/3499dde0c6e042ad83ec07f8dde2316c/registration-document---kommunalbanken-as---dated-13.05.2024.pdf, https://www.finanssivalvonta.fi/en/regulation/regulatory-framework/crrcrd/
Financials
Signed-in users can see whether their own company is exposed to this vendor's disruption, plus the full sub-vendor list and country breakdowns, every in-scope compliance framework plus gaps and next steps, and alerts when any of it changes.