Blog

Read all about our product updates, industry news, and helpful compliance tips.

All NIS2

12 posts

When customers ask for SOC 2 and what they really mean

When customers ask for SOC 2 and what they really mean

Categories: Guide

Customers asking for SOC 2 sometimes want something different from what they say. Learn what they're looking for, how to respond without a report, and how to avoid costly delays.

Frameworks: SOC 2ISO 27001NIS2
NIS2 checklist: what you need to have in order to be compliant

NIS2 checklist: what you need to have in order to be compliant

Categories: Guide

The Cybersecurity Act is expected to come into force on 1 July 2026. Discover the six pillars you need to have in place now to be NIS2-compliant.

Frameworks: NIS2ISO 27001
Is your startup too small for ISO 27001? Three triggers to start now

Is your startup too small for ISO 27001? Three triggers to start now

Categories: Guide

Three triggers that say you should start with ISO 27001 now and three scenarios where waiting is smarter, including costs and timelines.

Frameworks: ISO 27001SOC 2NIS2DORAGDPR
Performing a risk assessment: methods, models and tools

Performing a risk assessment: methods, models and tools

Categories: Guide

Learn what a risk assessment is, which methods exist, how to work through it step by step, and which mistakes organisations make most often.

Frameworks: ISO 27001ISO 9001NIS2DORAGDPR
What is GRC and why do modern businesses need a GRC platform?

What is GRC and why do modern businesses need a GRC platform?

Categories: Guide

GRC stands for Governance, Risk and Compliance. What it means, why silos break down, and when a GRC platform makes sense for your organisation.

Frameworks: ISO 27001ISO 9001NIS2SOC 2
NIS2 for SaaS: what do you need to arrange now?

NIS2 for SaaS: what do you need to arrange now?

Categories: Guide

Does your SaaS company fall under NIS2? Read about direct and indirect scope, DORA overlap for fintech, four core obligations and five concrete steps.

Frameworks: NIS2
SOC 2 for startups: becoming compliant without losing speed

SOC 2 for startups: becoming compliant without losing speed

Categories: Guide

Discover how startups implement SOC 2 without losing their development speed. Practical tips on change management, Type I vs Type II and smart first steps.

Frameworks: SOC 2ISO 27001NIS2
Individual security measures are not yet NIS2 compliance

Individual security measures are not yet NIS2 compliance

Categories: Guide

Individual measures create a false sense of security. Discover how to make the move to structural NIS2 compliance with ownership, risk analysis, and continuous visibility.

Frameworks: NIS2ISO 27001
What is NIS2 and when does the directive apply to you

What is NIS2 and when does the directive apply to you

Categories: Guide

Discover what the NIS2 directive entails, which organisations it applies to, and how to prepare. From sectors and size criteria to the relationship with ISO 27001.

Frameworks: NIS2
ISO 27001 vs ISO 27002: what's the difference and what do you need

ISO 27001 vs ISO 27002: what's the difference and what do you need

Categories: Guide

ISO 27001 and ISO 27002 contain the same controls, but are fundamentally different. Learn the difference and when you need which document.

Frameworks: ISO 27001SOC 2NIS2DORAGDPR
ISO 27001 costs: What does certification really cost your organisation?

ISO 27001 costs: What does certification really cost your organisation?

Categories: Guide

Audit costs are often the smallest line item. Discover all the cost components of ISO 27001: internal time, audit, tooling and maintenance, with realistic figures.

Frameworks: ISO 27001SOC 2NIS2GDPR
NIS2 for suppliers to NIS2-obligated organizations: what do you need to arrange now?

NIS2 for suppliers to NIS2-obligated organizations: what do you need to arrange now?

Categories: Guide

Not NIS2-obligated but still receiving a questionnaire from a client? Read how you as a supplier can meet chain obligations via SC, CyFun, or ISO 27001.

Frameworks: NIS2ISO 27001CIS Controls