NIS2 / BSIG QuickScope

Prepare NIS2/BSIG measures and technical evidence under control

Technical scope, evidence gaps, access, backup, suppliers, incident readiness and data protection for organisations in Germany. No legal applicability decision and no compliance certificate.

Order protocol

From QuickScope to implemented measures and evidence

  1. 1 Scope

    Services, systems, suppliers, data flows and responsible roles are captured.

  2. 2 Evidence

    Existing artefacts and missing technical proof points are mapped.

  3. 3 Measures

    Access, MFA, logging, backup, restore and incident work are prioritised.

  4. 4 Approval gate

    Any active test or live change starts only after a separate written approval.

Technical implementation and evidence

From initial scope to recurring proof points

These modules support technical preparation and implementation. They do not decide legal applicability and do not issue a compliance certificate.

Scope & Evidence QuickScope

System, service, supplier and evidence inventory with open decisions clearly marked.

Measures implementation sprint

Technical work packages for access, MFA, patching, logging, backup, restore and secure operations.

Incident readiness pack

Detection, escalation, technical evidence, contact chain and an exercise-ready incident route.

Evidence care

Recurring access, restore, patch, supplier and incident-exercise evidence for human review.

Technical data protection check

Data flows, storage, permissions, encryption, retention settings and deletion paths for professional review.

Management briefing preparation

Technical risk, measure and evidence material for management training and oversight.

BSIG §30 technical measure map

Ten areas translated into verifiable technical work packages

The map organises implementation and evidence. Qualified professionals remain responsible for legal applicability and the final assessment.

  • Risk analysis and inventory of systems, assets, services and dependencies
  • Incident handling: detection, escalation, technical evidence and response routes
  • Business continuity, backup, restore, crisis handling and emergency operation
  • Supply-chain and service-provider security with responsibilities and evidence
  • Secure acquisition, development and maintenance, including vulnerability handling
  • Effectiveness checks, control tests and tracked corrective actions
  • Cyber hygiene, staff awareness and material for management training
  • Cryptography, secret handling and protected data transfers
  • Personnel security, roles, access control and asset management
  • Multi-factor or continuous authentication and secure operational communications

QuickScope request

Prepare the first NIS2/BSIG check

Fill in the scope. We review the details and respond with the appropriate next step.

Describe only system types, services and responsibilities. Do not enter passwords, API keys, internal login links, customer data or incident secrets.

Rules of engagement
Requested deliverables