
Homepage " Cyber Security " NIS2 DORA audit and consultation
NIS2 DORA audit and consultation
Our services

Audit of compliance with NIS2 and DORA requirements
For companies that have not yet conducted an audit in this area, we offer a service that includes:
- Comprehensive assessment of compliance with the requirements of the directive including the published plan to amend the National Cyber Security System Act, including provisions on cyber resilience and risk management.
- Security vulnerability analysis - identifying areas for improvement in IT infrastructure, processes and security management policies.
- Assess risks associated with cyber incidents and data breaches that could affect key business operations.
- Reporting - detailed reports with audit results, including recommendations for corrective actions to ensure compliance with NIS2 and DORA

Consulting services
For companies that have already conducted an audit, we offer:
- Implementing technical and organizational measures - assist in the design and implementation of the security mechanisms required by the provisions of the NIS2 Directive, including monitoring, incident response, and reporting systems.
- Providing strategic consulting - support in the development of risk management and sensitive data protection policies in accordance with the latest regulations.
- Developing and updating documentation - create incident management plans, security policies, compliance procedures and business continuity plans that meet the requirements of the NIS2 Directive and DORA
- Training staff - educate employees on best practices related to cyber security, regulatory compliance and operational risk management.
- Consulting on technology and procedures in the area of incident monitoring and response - analysis of current tools and procedures for the operation of cyber security teams in the organization, recommendations on technological, organizational and procedural issues
NIS2 highlights in a nutshell
The NIS2 Directive - what is it and what is its purpose?
NIS2 is a directive that went into effect on January 16, 2023, replacing the existing NIS Directive. Both regulations concern the European Union's universal cyber security system. NIS2 provides for the implementation of additional regulations aimed at increasing the level of security in the provision and receipt of digital services. The new directive also has an operational dimension - it expands the EU's enforcement capabilities.
Cut-off dates related to NIS2
Due to the diversity of legislative systems in EU member states, a secure deadline has been set for the implementation of the NIS2 objectives. It passes on October 17, 2024. After that date, the new digital security legislation will apply in every country within the Union.
In turn, member states have until April 17, 2025 to create a list of key and important entities.
What areas does NIS2 address?
The new directive includes a number of regulations to improve cybersecurity policy and management. Monitoring and analyzing for possible risks in the listed sectors should include key areas such as:
- supply chains,
- Incident detection and response system,
- crisis management methods,
- access authentication,
- vulnerability management,
- IT infrastructure security.
Learn about the breakdown of key and important sectors in light of NIS2
Key Sectors
- energy,
- transportation,
- banking,
- financial markets infrastructure,
- health care,
- drinking water sector,
- wastewater,
- digital infrastructure,
- ICT service management,
- public administration,
- space
Important sectors
- postal and courier services,
- waste management,
- production, processing and distribution of chemicals,
- food production, processing and distribution,
- overall production,
- digital services,
- research
Take care of your company's security with ISCG
- Support and development of Microsoft and Nintex based applications
- Application design and development including digital processes
- Invoice management
- Requisition management
- Contract management
- Modern Intranet
ISCG Ltd.
Al. Jerozolimskie 178, 02-486 Warsaw
NIP: 5262798378
KRS: 0000220621
Phone