Blog

Field notes from the SOC and the audit room.

Two new posts a month. Written by the people who run the platform.

Essential vs. Important Entities: Classification, Obligations, and Supervision
NIS2 · 9 min read · 20 Apr 2026

Essential vs. Important Entities: Classification, Obligations, and Supervision

Understand NIS2 essential and important entity classification. Differences in obligations, supervision, and enforcement implications explained clearly.

Daniel Grigorovich
Daniel Grigorovich · Founder
NIS2 Enforcement Powers: What Regulators Can Do and How to Prepare
NIS2 · 11 min read · 17 Apr 2026

NIS2 Enforcement Powers: What Regulators Can Do and How to Prepare

Understand NIS2 enforcement powers (Articles 32-34). What regulators can do, penalty tiers, serious infringements, and how to minimize enforcement risk.

Daniel Grigorovich
Daniel Grigorovich · Founder
NIS2 for the Energy Sector: Compliance Across Electricity, Oil, Gas, and Hydrogen
NIS2 · 11 min read · 15 Apr 2026

NIS2 for the Energy Sector: Compliance Across Electricity, Oil, Gas, and Hydrogen

Energy sector NIS2 guide covering electricity, oil, gas, hydrogen, nuclear considerations, supply chain vulnerabilities, and implementation roadmap.

Daniel Grigorovich
Daniel Grigorovich · Founder
Supply Chain Security Under NIS2: Managing Third-Party Risk
NIS2 · 10 min read · 13 Apr 2026

Supply Chain Security Under NIS2: Managing Third-Party Risk

Master NIS2 supply chain security (Article 21(2)(d)). Vendor assessment, contractual controls, monitoring, and coordinated risk assessments explained.

Daniel Grigorovich
Daniel Grigorovich · Founder
The NIS2 Incident Reporting Framework: Step-by-Step Guide
NIS2 · 12 min read · 10 Apr 2026

The NIS2 Incident Reporting Framework: Step-by-Step Guide

Master NIS2 incident reporting: 24-hour and 72-hour timelines, notification process, what to report, and how to comply with Article 23.

Daniel Grigorovich
Daniel Grigorovich · Founder
Board-Level Cybersecurity Accountability Under NIS2
NIS2 · 11 min read · 8 Apr 2026

Board-Level Cybersecurity Accountability Under NIS2

NIS2 Article 20 makes boards liable for cybersecurity. Understand governance requirements, approval duties, oversight, training, and personal liability.

Daniel Grigorovich
Daniel Grigorovich · Founder
Article 21 Decoded: The 10 Cybersecurity Risk-Management Measures
NIS2 · 17 min read · 6 Apr 2026

Article 21 Decoded: The 10 Cybersecurity Risk-Management Measures

Master NIS2 Article 21's 10 mandatory cybersecurity risk-management measures. Detailed breakdown with implementation guidance for each measure.

Daniel Grigorovich
Daniel Grigorovich · Founder
From NIS1 to NIS2: What Changed and Why It Matters
NIS2 · 8 min read · 3 Apr 2026

From NIS1 to NIS2: What Changed and Why It Matters

Understand the evolution from NIS1 to NIS2. Learn scope expansion, fragmentation fixes, enforcement changes, and what matters for your compliance.

Daniel Grigorovich
Daniel Grigorovich · Founder
NIS2 Scope Demystified: How to Determine If Your Organisation Is In Scope
NIS2 · 10 min read · 1 Apr 2026

NIS2 Scope Demystified: How to Determine If Your Organisation Is In Scope

Decode NIS2 scope in 6 minutes. Check if you're in scope: Annex I/II sectors, size rules, exceptions, and Member State discretion explained clearly.

Daniel Grigorovich
Daniel Grigorovich · Founder