Affected companies must demonstrate risk management and report incidents within 24 hours. Check now whether you are in scope.
Sign up — we'll keep you informed about changes to NIS2 / BSIG and send you the free checklist.
The consequences of non-compliance with NIS2 / BSIG.
NIS2 violations carry fines of up to €10 million or 2% of global annual turnover.
Company management is personally liable for implementing and overseeing the cybersecurity measures.
Security incidents must be reported to the BSI (Germany's Federal Office for Information Security) within 24 hours — hardly feasible without preparation.
Upload your relevant documents or details — processed securely and in line with the GDPR.
Kevvo checks your data against NIS2 / BSIG and automatically identifies all relevant requirements.
You receive the finished, audit-proof document or evidence — ready to submit.
As a rule, companies with 50 or more employees or €10 million in turnover in certain sectors fall under NIS2 — the official BSI check gives an authoritative assessment.