Applicability
Entity type, sector, jurisdiction and national transposition context.
Cybersecurity governance
Management-focused readiness assessments that connect NIS2 obligations with risk governance, incident response, supply-chain assurance and ISO 27001 controls.
Scope of support
Scope is tailored to the certification basis, current lifecycle state and evidence already available.
Entity and scope assessment
Article 21 measure mapping
Incident reporting workflow
Supply-chain security review
Management accountability briefing
ISO 27001 crosswalk and evidence plan
Typical outputs
Training & working sessions
Modules combine standards context with the documents, reviews and evidence choices teams make during delivery.
Entity type, sector, jurisdiction and national transposition context.
Governance, technical controls and supply-chain obligations.
Escalation, evidence and reporting timeline design.
Management review, test plan and traceable remediation evidence.
Instructor assignments and any claimed program history are provided only after internal approval and verification.
Engagement scoping
No compliance outcome is promised from a website form. Scope begins with the program facts and evidence that can actually be reviewed.
Standard revision, authority or customer basis, assurance level and agreed means of compliance.
Current milestone, approved plans, baselines, open findings and target review date.
Training, gap analysis, document review, evidence recovery or audit-readiness support.
FAQ
No. NIS2 is an EU directive implemented through national law. Scope, supervision and procedures must be checked against the applicable member-state rules.
No. ISO 27001 can supply strong management-system evidence, but legal scope, reporting, accountability and sector obligations require a dedicated assessment.
Start with a technical conversation
Tell us the standard, lifecycle stage and evidence challenge. We will help frame a focused next step.
info@heraklet.com ↗