NIS-2 · BSIG · cyber resilience
NIS360
The platform the German Mittelstand implements NIS-2 with
NIS360 turns the NIS-2 requirements into a concrete plan of measures for your company: prioritised tasks, clear ownership, measurable progress and audit-proof evidence.
The quick check is currently available in German only. Four questions, about two minutes, no sign-up; the GAP analysis that follows is optional (23 questions, about ten minutes). The check is an indication, not legal advice — what binds is the BSIG as it stands and an assessment of your individual case.
NIS360 is part of MACONIA360 and in production use. The quick check is open to everyone; the application itself is enabled by granting a seat.
Scope & gap analysis
Know where you stand — in minutes rather than weeks
The guided check establishes whether you are in scope and where your gaps are under the BSIG. What comes out is not a brochure but your own plan of measures — the working basis for the whole implementation.
Your prioritised measures
32 tasksRun a risk analysis for critical systems
Risk management
Set up incident reporting channels (24 h deadline)
Incident response
Draw up a training plan for management & staff
Awareness
Implement access controls & MFA for critical accounts
Technical measures
Plan of measures & task board
Requirements become tasks, and tasks become progress
30+ prioritised measures with implementation guidance, organised on a kanban board with a review workflow. Everyone knows what to do — and you can see where you stand at any time.
Your NIS-2 action plan
14 of 32 measures implemented
Open
12Define the incident reporting process
Run a supplier risk assessment
In progress
6Document the backup & recovery concept
Roll out multi-factor authentication
Done
14Scope assessment completed
Responsibilities assigned
Team & roles
Compliance is teamwork — NIS360 makes it organisable
Invite IT, management and data protection with roles and rights of their own. Responsibilities are settled, without long email threads and spreadsheets.
Your compliance team
+ Invite memberThomas König
12 tasks
Sandra Meyer
4 tasks
Julia Roth
7 tasks
Andreas Maier
9 tasks
AI assistant
Questions about implementation? Answered in the context of your task
The NIS-2 assistant answers questions inside the task itself — trained on the BSIG, BSI-Grundschutz and ISO 27001.
NIS-2 AI assistant
In the context of your taskIs our existing backup concept sufficient for the NIS-2 requirements?
For this task, Section 30 BSIG requires documented backup management. Check three points: regular restore tests, storage at a separate location and defined recovery times. You will find a template directly in the task.
What NIS360 does
Scope, measures and evidence are three questions that build on each other. NIS360 answers them in that order.
Also in NIS360
Progress tracking
A measurable state of implementation at a glance: open, in progress and completed measures — made for reporting to management.
Also in NIS360
PDF reports & audit evidence
Audit-proof documentation of your implementation as a PDF — for the authority, the auditor and internal committees.
Also in NIS360
Supply chain risk assessment
Assess the risk in service providers and suppliers systematically, and meet the NIS-2 requirements on supply chain security.
Who this is for
NIS-2 reaches around 29,000 companies in Germany — most of them for the first time. Typically:
- Companies with 50 or more staff in one of the sectors of annex 1 or 2 of the BSIG.
- Operators of critical facilities who already know the KRITIS thresholds.
- Suppliers and service providers whose customers pass the obligations on by contract.
- Management, personally liable under § 38 BSIG and needing to know what for.
See for yourself — free and without obligation
Start with the two-minute quick check (in German) and get your own plan of measures — or have the platform shown to you in person.