Blog
Insights on security and NIS2
Practical guidance on cybersecurity, NIS2 compliance and running a secure business, from the CloudSignLab team.

NIS2 evidence checklist: what to keep for each Article 21 measure
The records and proof that show your NIS2 measures work, measure by measure, and how to keep them current without a pile of folders.

NIS2 incident reporting: 24 hours, 72 hours, one month
What counts as a significant incident under NIS2, what you must report in the first 24 hours, after 72 hours and after one month, and how to be ready before something happens.

Supplier security under NIS2: what your customers will ask you
NIS2 makes covered companies responsible for the security of their suppliers. Here is what that means for you as a supplier, which questions to expect, and how to answer them once instead of every time.

NIS2 for small suppliers: not covered, but still asked
Most companies with fewer than 50 people are outside NIS2. Their customers are not. A practical minimum of security that small suppliers can put in place, and show, without a compliance team.

What is NIS2, exactly? A plain-language guide for busy companies
NIS2 explained without the legal jargon: who it applies to, what it asks for, the 24-hour reporting rule, and how to get ready step by step without drowning in spreadsheets.