Blog

Field notes from security operations and the audit room.

Notes on NIS2, ISO 27001, incident reporting and supply-chain risk, written by the people who run the platform.

SMEs and NIS2: Preparing Even If Not Directly In Scope
NIS2 · 9 min read · 17 Jun 2026

SMEs and NIS2: Preparing Even If Not Directly In Scope

SMEs not directly in NIS2 scope should prepare now. Learn how supply chain, partner networks and indirect obligations affect your business.

Daniel Grigorovich
Daniel Grigorovich · Founder
Encryption Under NIS2: Mandatory for Some, Encouraged for All
NIS2 · 7 min read · 15 Jun 2026

Encryption Under NIS2: Mandatory for Some, Encouraged for All

NIS2 encryption guidance for telecom providers. Understand when end-to-end encryption is mandatory and why it matters for communications security.

Daniel Grigorovich
Daniel Grigorovich · Founder
NIS2 for the Food Sector: Wholesale and Industrial Processing
NIS2 · 9 min read · 12 Jun 2026

NIS2 for the Food Sector: Wholesale and Industrial Processing

Understand NIS2 requirements for food businesses. Learn how wholesale and industrial processing entities must implement cybersecurity under Annex II Sector 4.

Daniel Grigorovich
Daniel Grigorovich · Founder
Peer Reviews Under NIS2: How Member States Will Be Assessed
NIS2 · 9 min read · 10 Jun 2026

Peer Reviews Under NIS2: How Member States Will Be Assessed

Understand NIS2 Article 19 peer review process. Learn how Member States evaluate each other's cybersecurity capabilities and NIS2 implementation.

Daniel Grigorovich
Daniel Grigorovich · Founder
WHOIS Data Under NIS2: Obligations for Registries and Registrars
NIS2 · 9 min read · 8 Jun 2026

WHOIS Data Under NIS2: Obligations for Registries and Registrars

Understand NIS2 Article 28 WHOIS data obligations. Learn what domain registries and registrars must implement to maintain DNS security.

Daniel Grigorovich
Daniel Grigorovich · Founder
Large-Scale Incident and Crisis Management Under NIS2
NIS2 · 9 min read · 5 Jun 2026

Large-Scale Incident and Crisis Management Under NIS2

Understand NIS2 Articles 9 and 16 requirements for large-scale cybersecurity incidents. Learn about national crisis frameworks and EU-CyCLONe coordination.

Daniel Grigorovich
Daniel Grigorovich · Founder
NIS2 in Germany: How the New BSI-Gesetz Transposes the EU Directive
NIS2 · 29 min read · 4 Jun 2026

NIS2 in Germany: How the New BSI-Gesetz Transposes the EU Directive

Germany transposed NIS2 through the NIS2UmsuCG of 5 December 2025, replacing the BSI-Gesetz in full. Scope, BSI authority, KRITIS rules, incident reporting, fines and what to do this quarter.

Daniel Grigorovich
Daniel Grigorovich · Founder
Cybersecurity Training Requirements: What Management and Staff Need to Know
NIS2 · 8 min read · 3 Jun 2026

Cybersecurity Training Requirements: What Management and Staff Need to Know

Understand NIS2 Article 20 training mandates. Learn what cybersecurity knowledge management and staff must develop to comply with NIS2.

Daniel Grigorovich
Daniel Grigorovich · Founder
NIS2 in Belgium: How the Law of 26 April 2024 Transposes the EU Directive
NIS2 · 23 min read · 2 Jun 2026

NIS2 in Belgium: How the Law of 26 April 2024 Transposes the EU Directive

Belgium transposed NIS2 through the Law of 26 April 2024, designating the CCB, NCCN and sectoral regulators as the institutional pillars. What every essential and important entity needs to know after twenty months in force.

Daniel Grigorovich
Daniel Grigorovich · Founder