NIS-2 rapid test
NIS-2 rapid test
The NIS 2 Directive is the new EU directive to strengthen cyber security in the European Union and defines minimum standards for network and information system security (NIS) in many companies and organisations.
Take the quick test now to find out whether your company is covered by the directive and what to do if it is!
Are you affected by the NIS 2 Directive?
Do you need more information on the NIS 2 Directive?

What is in store for these organisations?
The Cybersecurity Directive sets out Minimum requirements for these facilities fixed. The management monitors compliance and is held liable for it. Measures must be implemented in the following areas:
- Concepts relating to risk analysis and security for information systems
- Management of security incidents
- Maintaining operations (Business Continuity Management - BCM)
- Security of the supply chain
- Security measures for the acquisition, development and maintenance of network and information systems
- Effectiveness of risk management measures in the area of cyber security
- Cyber hygiene and training in the area of cyber security
- Use of cryptography and encryption where appropriate
- Personnel security, concepts for access control and management of systems
- Use of solutions for multi-factor authentication or continuous authentication


What sanctions will I face if I do not comply with NIS-2?
Depending on the sector, offences are different fines sanctioned:
Essential sectors: Penalty of up to EUR 10 million or 2% of global turnover
Important sectors: Penalty of up to EUR 7 million or 1.4% of global turnover

What does the timeline look like?
Since the 17 October 2024 the NIS-2 Directive applies to EU member states and the German government is currently transposing the directive into national law. As a typical NIS-2 compliance process can take up to 12 months, the evaluation should be started as soon as possible. In addition, management must ensure in good time that all security measures are adhered to and regularly reviewed.

Do you have any questions?
Simply book a non-binding appointment. We can clarify any questions you may have about NIS-2 and information security in a personal meeting.
Book an appointment
In a personal meeting, we can clarify any questions you may have about information security (ISO/IEC 27001), data protection (ISO/IEC 27701 and GDPR/DSGVO) and the use of security-relevant technologies in the Modern Workplace with Microsoft 365 / Office 365 and Azure.