Companies in regulated sectors
Entities to which the obligations apply directly.
Cyber security regulation under the NIS2 directive has widened the circle of obliged entities and added duties in risk management and incident reporting. The first step is to find out whether it applies to you.
It is unclear whether your company falls within the regulated sectors and in which category.
You need to handle registration and communication with the national cyber security authority.
Processes and internal roles are not set up.
There are no procedures for reporting within the prescribed deadlines.
Security obligations need to be passed on through supplier contracts.
We establish whether you are an obliged entity and to what extent.
Comparison of your current state against the requirements.
Preparation of procedures including incident reporting.
Adding security clauses to your contracts.
Advice on the liability of governing bodies.
Entities to which the obligations apply directly.
Companies to which the requirements are passed on contractually.
We assess how the regulation applies to your company.
We identify what needs to be added against the obligations.
We prepare a plan with deadlines and responsibilities.
We support implementation and verify that it works.
Bratislava, Banská Bystrica, Košice
It depends on the sector, size, type of services provided and the company's specific position. The first step is therefore to assess whether the regulation applies to the particular organisation.
First, determine whether and to what extent the obligations apply to the company. Only then does it make sense to carry out a gap analysis and a plan of measures.
No. Besides technical measures, the regulation also affects internal processes, risk management, incidents, management liability and contractual relationships with suppliers.
In many cases, yes. Security requirements and obligations may need to be reflected in supplier contracts, SLAs, incident management and cooperation rules.
Mainly by assessing applicability, a legal gap analysis, preparing or reviewing documentation and contractual provisions, and setting up the legal part of the implementation plan.
We will assess the scope of the regulation and prepare an action plan with deadlines.
Contact us to schedule a consultation
Please briefly describe what you need help with.
We will contact you and suggest the best course of action.