NIS2 Directive: does it apply to your business and what do you need to arrange?
The NIS2 directive sets stricter cybersecurity requirements. We explain who it applies to, what you need to arrange and how to prepare your organisation.
The NIS2 directive (Network and Information Security Directive 2) is European legislation imposing stricter cybersecurity requirements on organisations. It is the successor to the original NIS directive and has a much broader scope. NIS2 requires organisations to take appropriate technical and organisational measures for the security of their network and information systems. This includes risk management, incident response, business continuity, supply chain security and reporting obligations. Non-compliance carries significant fines. Board members can be held personally liable. Read our [insight on the NIS2 directive](/en/inzichten/nis2-richtlijn-valt-jouw-bedrijf-eronder) for a detailed analysis.

Gap analysis
Assessment of your current situation against NIS2 requirements.
ISO 27001 foundation
Our certification already covers most NIS2 requirements.
Policy support
Help with drafting security policies, procedures and documentation.
Incident response
24/7 incident response in line with NIS2 reporting obligations.
Supply chain security
Advice and measures for securing your supply chain.
"We've trusted Virtual Computing with our IT for over 18 years. From a handful of workstations we've grown to 250+ users spread across Europe. Online Workplace, Microsoft 365, Windows 365 — it scales effortlessly. Fantastic service and excellent knowledge."
Matija Jolic
Aushi BV
The NIS2 directive is European legislation imposing stricter cybersecurity requirements on essential and important organisations, and indirectly on their suppliers.
That depends on your sector and size. We help you determine this with a free quick scan. Suppliers of NIS2-obligated organisations can also be indirectly affected.
Essential organisations face fines up to 10 million euros or 2% of global turnover. Important organisations up to 7 million euros or 1.4% of turnover.
Largely yes. ISO 27001 provides an excellent framework covering most NIS2 requirements. We identify any gaps through a gap analysis.
With our ISO 27001 foundation as a starting point, you can be compliant within weeks. Without an existing framework, it typically takes 2-6 months.
Yes. Under NIS2, board members can be held personally liable for negligence in cybersecurity.
That varies per organisation. Contact us for a free quick scan and quote. Call 085-013 4500.
Yes. NIS2 requires security incidents to be reported within 24 hours. Our 24/7 monitoring and incident response ensure you comply.
The NIS2 directive sets stricter cybersecurity requirements. We explain who it applies to, what you need to arrange and how to prepare your organisation.
Cybercrime increasingly targets small and medium-sized businesses. What baseline measures do you need and how do you protect your company without a massive budget? A practical guide.
We use cookies to improve your experience and analyse the use of our website. More information