The NIS 2 Directive has been in force since 6th December 2025. Its aim is to establish a high and binding standard of cybersecurity across Europe. For businesses – and in particular for senior management – this means greater responsibility, clearly defined obligations and significantly higher requirements in terms of governance, risk management and security measures. When implemented correctly, NIS 2 becomes an effective tool for sustainable cyber security. Work with us to implement the legal requirements efficiently, practically and appropriately. Who is affected?
Find out more!The NIS-2 Directive affects many companies across the European Union. If the required cybersecurity and information security standards are not met, the executive management of the companies and organizations is held liable. In Germany, the implementation is governed by the NIS-2 Implementation and Cybersecurity Strengthening Act (also known as NIS2UmsuCG).
Important: Even smaller companies are subject to the regulations if their operations, in the event of a failure, could affect public order, pose systemic risks, or have cross-border implications.
The goal of NIS-2 is to harmonize and improve the level of security across member states. With stricter requirements, critical infrastructures and digital services across the European Union will be better protected. The directive mandates, among other things:
Efficient and responsive
Targeted and tried and tested
integrated and everything from a single source
Customised and solution-oriented
in partnership and sustainable
The NIS2 Directive demands much more from organizations than just basic IT security. It calls for a systematic, risk-based approach to strengthening cybersecurity—technically, organizationally, and strategically. This includes effective incident response and business continuity planning, awareness training and employee education, clear reporting procedures for security incidents, secure system architectures, identity and access management, and measures to safeguard the supply chain.
In short: Organizations must elevate their digital resilience—regardless of whether national legislation is already in force. Our consulting services fully cover these requirements.
Explore the following slider to see how we can support you with targeted solutions.
We identify weaknesses in your IT security and create a comparison with the NIS-2 guideline. You receive an overview of the areas of your company where adjustments are required.
Based on the findings of the GAP analysis, we develop customised solutions, support you in closing gaps and ensure compliance with the NIS 2 requirements. On request, we can also take over tasks completely.
The NIS2 directive requires companies to be continuously up to date with their technology. We therefore want to share our expertise and our industry-relevant networks with you and support you with the implementation. We organise regular training courses to ensure that your employees' knowledge is always up to date.
find out more

Tino Müller
Expert NIS-2-Implementation

Tino Müller
Expert NIS-2-Implementation