Resources · Blog
Tag: NIS2
4 published posts.
Posts tagged “NIS2”
- GuideNIS2· 5 min read
NIS2 incident reporting: the 24-hour, 72-hour and one-month path as a runbook, not a policy
Article 23 sets three deadlines and asks different questions at each. Who decides "significant", who notifies whom, and which records the answers come from.
Read → - ArticleDORANIS2ISO 27001· 4 min read
A backup restore drill is evidence — if you record it like one
DORA, NIS2 and ISO 27001 ask whether you can restore, not whether you back up. What turns a restore test into evidence: date, scope, control, the gap it found.
Read → - GuideDORANIS2ISO 27001· 4 min read
Provider → service → function: the three links most third-party obligations read back to
DORA Art. 28, NIS2 Art. 21(2)(d) and ISO 27001 supplier controls all assume you know which provider delivers which service to which function. Model it once.
Read → - GuideNIS2· 6 min read
NIS2 Article 21: ten measure areas, one inventory — where to start when the deadline has already passed
NIS2 Article 21 lists ten measure areas but never says which system they protect. Start from the inventory and the management-body decision, not a policy pack.
Read →
See it on your own frameworks
A walkthrough on a workspace set up for your sector. No trial sign-up, no credit card.