NIS2 Compliance Services

NIS2 compliance services designed to help organisations understand gaps, prioritise actions, and move towards compliance with confidence.
Gabrielius Vinciūnas
Head of Information Security
Paulius Užkurėlis
Business Development Manager

NIS2 Compliance Offers

NIS2 gap analysis

Independent assessment to understand current readiness for NIS2 requirements.
Assessment of current practices in relation to NIS2 requirements across governance, processes, and controls.
Cyber security risk analysis covering organisational and technical risks.
Documentation of missing security policies, controls, and risk areas.
Compliance roadmap with prioritised actions and milestones.
Deliverables:
A compliance report with the NIS2 roadmap and defined improvement actions.

NIS2 implementation

Practical support to implement the organisational and technical requirements of NIS2.
Creation of required NIS2 policies and documentation.
Information Security Management System (ISMS) setup and alignment.
Implementation of risk management, incident handling, and security policies.
Expert guidance provided by a CISO throughout the implementation phase.
Deliverables:
A complete set of NIS2 policies, plans, and procedures aligned with regulatory requirements.

CISO for NIS2

Flexible access to senior security expertise to support NIS2 compliance on demand.
On-demand security advisory and decision support.
Guidance on risk management and compliance roadmap.
Hands-on support with NIS2 implementation activities.
Flexible expert hours covering a wide range of security tasks.
Deliverables:
Ongoing senior-level security leadership to guide NIS2 compliance and risk management.

Industries We Support

Essential entities

Energy
Transport
Banking & financial services
Healthcare

Important entities

Manufacturing (critical products)
Food production & agriculture
Postal & courier services
Chemical industry

Our NIS2 Compliance Process

01

Gap analysis

We start by reviewing current practices to understand how they align with NIS2 requirements. This step highlights existing strengths, gaps, and areas that require attention across governance, processes, and controls.
02

Compliance roadmap

Findings are translated into a clear and realistic roadmap. Prioritised actions help teams focus on what matters first, without overloading internal resources.
03

Execution

We support the implementation of agreed changes across policies, processes, and controls. This includes ISMS setup and hands-on support where additional expertise is needed.

04

Validation

Implemented measures are reviewed to confirm they are applied consistently and documented clearly. This step helps organisations feel confident about their level of readiness.

05

Ongoing advisory

We provide ongoing CISO-level support to help organisations stay aligned with NIS2 requirements as risks and priorities change.

Why Baltic Amadeus

Compliance-first approach.

Certified experts.

Senior security guidance.

Certifications

Award badge with three gold stars, text 'Recommended Windows VPN', and a pink button labeled 'Check Offers'.
Informacijos saugumo vadovo kursas
Certification mark for TÜV Thüringen with a red checkmark and a red mask symbol.
ISO 27001
CISSP certification badge with white text on a green rounded square background.
CISSP
CISM Certified Information Security Manager logo with green circular design and blue text.
CISM

FAQ

Where can I learn more about the NIS2 Directive requirements?

The best place to start is the official NIS2 Directive published by the EU. National regulators also provide guidance on how the directive is applied locally, which can help clarify practical expectations, e.g., Cyber Security Act (liet. Kibernetinio saugumo įstatymas), published by Parliament of the Republic of Lithuania.

We are ISO 27001 certified. Will that make us compliant?

ISO 27001 is a strong starting point, but it does not automatically mean NIS2 compliance. NIS2 goes further, especially around governance, incident reporting, and management responsibilities, so additional work is usually required.

How long does it take to get NIS2 compliant?

The timeline depends on organisational size, existing security maturity, and regulatory scope. It can take from 6 months to 2 years. Most organisations work towards NIS2 compliance in stages, starting with a gap analysis and then addressing priorities step by step.

Case Studies

Related Services

Let’s talk about your project

Starting something new or need support for an existing project? Reach out, and our experts will get back to you within one business day.

Start the conversation

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.