NIS-2
- NIS2 is here – are you prepared?
The NIS-2 Implementation Act has been passed by the legislative bodies and has been in force since December 6, 2025. This significantly increases cybersecurity requirements for around 30,000 companies in Germany. New obligations in risk management, stricter reporting requirements, and expanded supervisory powers of the BSI create considerable pressure to act.
Affected companies must take immediate action, as there are no transition periods and the law applies immediately from December 6, 2025. Many companies face complex implementation requirements for which internal expertise is often lacking. That’s why we offer a specially developed service package for implementing NIS-2.
Our NIS-2 Implementation Service Package
Thanks to our many years of experience – especially in the KRITIS environment – we provide comprehensive support in preparing for and successfully implementing the requirements of the NIS-2 Implementation Act. Our modular service package includes:
- NIS-2 Workshop
Explanation of legal fundamentals and raising awareness of the specific need for action in your company. - NIS-2 Impact Analysis
Assessment of whether your organization falls under the NIS-2 Directive or the country-specific EU laws – clear and transparent. This also lays the foundation for possible registration. - NIS-2 Status Check
Identification of existing gaps regarding legal requirements – as a basis for targeted measures. - NIS-2 Training for Management Bodies
Initial implementation of the statutory training obligation for management bodies (board, executive management, other leadership roles), particularly by clarifying management duties and deriving concrete steps to meet legal requirements.
- NIS-2 Implementation Support & ISMS Consulting
Sustainable implementation of requirements, including:
• Support with necessary company registration (also applies to already registered KRITIS operators)
• Professional guidance and coaching for your responsible staff
• Assistance with planning and prioritizing implementation in connection with risk management
• Support in establishing supplier management (cyber supply chain)
• Building or expanding a Business Continuity Management System (BCMS) or emergency management to strengthen cyber resilience
• Building a new or expanding an existing Information Security Management System (ISMS)
• Establishing a structured reporting system
• Developing monitoring mechanisms for ongoing effectiveness checks
Your Benefits
With our NIS-2 implementation package, you not only ensure legal compliance but also strengthen your overall information security strategy:
- Compliance with legal requirements under the NIS-2 Implementation Act
- Protection of critical business processes through preventive security measures
- Transparent overview of IT risks – as a basis for targeted protective measures
- Avoidance of liability risks through documented and effective implementation
- Efficient use of investments thanks to clear prioritization
- Increased effectiveness, efficiency, and sustainability of information security