NIS2 Compliance Articles
In-depth guides on the most complex NIS2 topics, ISO 27001 alignment, fines, implementation steps, SME applicability, and supply chain requirements.
Find out if your company is in scope
Does your organisation fall under Annex I (Essential) or Annex II (Important) entities?
NIS2 vs GDPR: Key Differences, Overlaps, and Dual Compliance
⏱ ~9 min readNIS2 and GDPR are two separate EU laws that can both apply to the same incident. Learn the key differences, when both laws trigger at once, and how to build a combined incident response that covers both.
Read article →NIS2 Incident Reporting: The Complete 24-72-1 Guide
⏱ ~10 min readA step-by-step guide to NIS2 Article 23 incident reporting. What makes an incident significant, what belongs in the 24h early warning, the 72h full notification, and the 1-month final report, plus country-specific reporting portals.
Read article →NIS2 Management Liability: What Board Members and CEOs Face
⏱ ~11 min readNIS2 Article 20 makes management bodies personally liable for cybersecurity breaches. Learn who is affected, what the training obligation requires, when executives can be suspended, and how to protect yourself as a board member.
Read article →NIS2 vs ISO 27001: Key Differences and How They Work Together
⏱ ~12 min readNIS2 and ISO 27001 are both cybersecurity frameworks, but they are not the same. Learn the key differences, overlaps, and whether ISO 27001 certification satisfies NIS2 Article 21 obligations.
Read article →NIS2 Fines and Penalties: The Complete 2025 Guide
⏱ ~10 min readNIS2 fines can reach €10 million or 2% of global turnover. Understand how penalties are calculated, what triggers enforcement, and how to avoid them with a solid compliance programme.
Read article →NIS2 Compliance Checklist: 10-Step Implementation Guide for 2025
⏱ ~14 min readA practical, step-by-step NIS2 compliance checklist covering all 10 Article 21 security measures. Use this guide to build your NIS2 programme from scratch or assess your current posture.
Read article →NIS2 for SMEs: Does It Apply to Small and Medium Businesses?
⏱ ~11 min readNIS2 officially excludes micro and small enterprises, but there are important exceptions. This guide helps SMEs understand the size thresholds, sector exceptions, and what to do if you are in scope.
Read article →NIS2 Supply Chain Security: Article 21(2)(d) Explained
⏱ ~12 min readNIS2 Article 21(2)(d) makes supply chain security mandatory for all in-scope entities. Learn what assessments are required, how to evaluate suppliers, and what ENISA's guidelines say.
Read article →🔧 Also useful: our free tools
Use our interactive tools to check if NIS2 applies to you and assess your compliance status.
View all tools →