NIS2 catches far more organisations than its predecessor, and many of them have never had a cybersecurity supervisor before. Two questions decide your programme: whether you are an essential or an important entity, and how much of Article 21 you already satisfy through work done for another framework. Answer those and the rest is sequencing.
12 pages on NIS2, in the order the work happens. Jump to the stage you are at, or read straight through.
Decide whether you are in scope, in which tier, and what your national transposition adds.
Map the Article 21 measures onto controls you may already run for ISO 27001 or DORA.
Budget the programme and understand management liability under Article 20.
Walk into a supervisory audit knowing what will be asked and what evidence answers it.
Judge platforms on whether they carry Article 21 to evidence, not on logo counts.
These sit under another subject but bear directly on NIS2.
The free compliance check runs the NIS2 gap assessment in about five minutes and gives you a scored report you can take to a board meeting.
14-day free trial · no credit card · unlimited users