Skip to content
B.1 · Entry Product

NIS2 Readiness Assessment

In 3–4 days we systematically assess your cybersecurity maturity against all NIS2 requirements – with 125+ checkpoints across 10 domains. At a fixed price.

Why Act Now?

In Force Since 12/2025

NIS2 applies – no transition period. 29,500 organizations in Germany must act immediately.

Personal Liability

Executive management is personally liable – this obligation cannot be delegated.

Up to EUR 10 Million in Fines

Or 2% of global annual turnover – whichever amount is higher.

24h Reporting Obligation

Early warning within 24 hours, incident report within 72 hours, final report within 1 month.

10 Requirement Domains · 125+ Checkpoints

Our proven questionnaire covers all NIS2-relevant areas:

15 Governance & Risk Management
15 Incident Management
15 Business Continuity & Crisis Management
12 Supply Chain Security
15 Network & Information Security
11 Vulnerability Management
10 Cryptography & Encryption
11 Personnel Security & Access Controls
10 Asset Management
11 MFA & Secure Communication

Process (3–4 Days)

Kickoff & Workshops

Day 1

Kickoff with IT leadership. Workshops with CISO, IT operations, risk management, and BCM. On-site inspection of relevant infrastructure.

Document Analysis

Day 2

Review and assessment of security concepts, policies, process descriptions, emergency plans, and contracts.

Evaluation & Report

Days 3–4

Consolidation, gap analysis, risk assessment, action plan. Preparation of the results report and management presentation.

Your Deliverables

Gap Analysis

Detailed comparison of NIS2 requirements vs. your current implementation status – per domain, per checkpoint.

Risk Matrix

Assessment of identified gaps by likelihood and impact.

Maturity Rating

5-level maturity scale per domain with traffic-light visualization and overall rating.

Prioritized Action Plan

Concrete recommendations: quick wins, short-term, medium-term – with effort estimates and timelines.

Results Report (40–60 Pages) & Management Presentation

Professional report with overall assessment, top risks, and investment framework. Decision template for your executive management.

125+
Checkpoints
3–4
Days of Effort
from EUR 7,500
Fixed price, no open-ended engagement

Follow-up offer: After the assessment, we support you as needed through the Compliance Program all the way to audit readiness – or as an ongoing Virtual CISO.

Frequently Asked Questions

What does a NIS2 Readiness Assessment cost?
Starting from EUR 7,500 for 3–4 days with 125+ checkpoints across 10 domains. Fixed price – no open-ended engagement.
Is our organization affected by NIS2?
Likely yes, if you operate in one of the 18 NIS2 sectors and have more than 50 employees or EUR 10 million in revenue. Our free self-check provides initial guidance.
How is the assessment conducted?
Day 1: kickoff and workshops with your key stakeholders. Day 2: document analysis. Days 3–4: evaluation, gap analysis, and report preparation.
What happens after the assessment?
Based on the results, we can support you with a full compliance program (framework, implementation, audit readiness) or as an ongoing Virtual CISO.

Is your organization affected by NIS2?

Let's evaluate your compliance requirements in a free introductory call – confidential and no strings attached.

Schedule a Call

30 min · Video call · No obligation