NIS-2 in practice:
from document to living management system
NIS-2 is not an IT project. NIS-2 is a matter for top management.
YOUR CHALLENGE?
Where most NIS-2 implementations actually fail
NIS-2 demands effective implementation: Section 30 of the German BSI Act (BSIG) requires effective risk management measures, Section 38 holds top management personally responsible. Management must approve and monitor their implementation. It is therefore crucial that measures are not only documented but actually implemented in everyday operations and made verifiable.
Asset list, risk analysis and SoA have been created – but not updated since.
Whether measures are actually implemented in everyday operations is not visible to management.
Responsibilities for individual mandatory tasks are not clearly assigned or not documented in a traceable way.
When it matters – audit, incident, liability question – continuous proof of effectiveness is missing.


Structure instead of binders
A system that makes NIS-2 implementation verifiable
- Asset list, risk analysis, SoA and risk treatment plan are assigned to specific employees as tasks and services and linked with each other.
- Risks are assessed and linked with measures in measure management – responsibility remains traceable at all times.
- All parties involved give monthly feedback on the compliant fulfilment of their NIS-2 mandatory tasks.
- Management receives a real-time overview via cockpit and dashboard, directly connected to measure management.
- Integrated reporting provides the evaluations for audit and liability cases.
See the cockpit in a conversation
Show me hereThe difference
Other solutions stop at documentation
We turn NIS-2 compliance into a living management system – with tasks that are carried out and feedback that is demanded.
Real-time transparency
Responsibility instead of assumption
Verifiability in everyday life
YOUR ADVANTAGE
Fast into implementation – with system and expertise
Proven reference models enable rapid customisation to your organisation. This allows NIS-2 implementation to start in a structured way and without a lengthy concept phase. You get from the need for action to a functioning management system by the shortest route.
We bring together technology, NIS-2 expertise and management
🇨🇭🇪🇺 ALSO FOR SWISS COMPANIES
NIS-2 does not stop at the Swiss border.
Swiss companies can be affected by NIS-2 – for example through branches or business activities in the EU and, in certain cases, through services offered there. In addition, NIS-2 requirements can be passed on to Swiss companies via customers, groups and supply chains.
For Swiss companies, too, NIS-2 can be implemented swiftly, in a structured and traceable way – with clear responsibilities, controllable measures and digital documentation.

“NIS-2 rarely fails because of a lack of knowledge about risks. It fails because nobody checks in everyday operations whether what is on paper actually happens. That is exactly the gap we close – with consulting and a system that makes responsibility visible.”
