NIS2 · Readiness · Audit support · Advisory

NIS2 compliance with clarity and confidence

NIS2 raises the bar for cybersecurity, requiring sound processes, risk management, documentation and management accountability. Our experts guide your organisation through the full compliance journey, from initial assessment and audit preparation to ongoing support.

Responsive.Practical.Audit-ready.
Free initial consultation Quick scope assessment Tailored compliance plan Audit preparation roadmap
explore our approach
Instant estimate NIS2 readiness

How much does NIS2 preparation cost?

Adjust the sliders to see your estimated project fee, excluding VAT.

Number of employees 51 employees
1101001000+
Cybersecurity maturity 3Developing
Core policies are maintained, a risk assessment has been completed and a system inventory exists. Regular reviews, audits and training are still missing.
Number of information systems (EIRs) 0–5
Security classification of information systems Basic
Estimated preparation fee
3.9 – 4.7m HUF
Indicative fee · excluding VAT
Free consultation Response within 24 hours GDPR compliant

This is an indicative estimate. We confirm the fee after a free initial consultation. It covers preparation advisory services; the registered auditor’s fees and technology investments are separate.

Experience that makes a difference
10+
years of professional experience
Big4
consulting background
30+
successful NIS2 projects
Lead Auditor qualification
Applicability

Who is covered by NIS2?

NIS2 introduces cybersecurity requirements for medium-sized and large organisations across many sectors. These may include:

Energy companies
Transport operators
Healthcare providers
Digital service providers
IT and telecommunications companies
Manufacturing businesses
Logistics organisations
Financial service providers
Utilities and critical infrastructure
Unsure whether your organisation is in scope? We can help you establish this quickly. You can also consult the Hungarian National Cyber Security Center’s official scope guidance.
Request a scope assessment NKI scope guidance (Hungarian)
Why act now

The stakes are high. Preparation protects your business.

€10m / 2%
Maximum NIS2 fine
Essential entities may face fines of up to €10 million or 2% of annual turnover for non-compliance.
30+ controls
Requirements to address
NIS2 requires a comprehensive set of measures covering risk management, incident response, supply chain security and access controls.
Personal
Management accountability
Senior management is accountable for compliance and may face sanctions for failing to fulfil its obligations.
Our process

Five steps to
audit readiness

Our clear, proven approach takes your organisation from an assessment of its current position to a successful audit.

1
Step 01

Gap analysis

We assess your organisation against NIS2 requirements, identify gaps and prioritise the areas that need attention.

2
Step 02

Policies and documentation

We develop or update the policies, procedures and records needed to make your compliance demonstrable.

3
Step 03

Control implementation

We help implement the necessary technical and organisational measures, from risk and incident management to access controls.

4
Step 04

Audit preparation and internal review

A mock audit and expert review check your readiness, uncover remaining gaps and give you time to address them.

5
Step 05

Audit support and ongoing compliance

We support you throughout the audit and help maintain compliance as your organisation and the requirements evolve.

Successful audits & sustained compliance
Requirements

What does
NIS2 require?

Compliance brings together several areas:

01

Risk management

  • identify information security risks
  • establish risk management processes
  • conduct regular reviews
02

Policies and documentation

  • security policies
  • operating procedures
  • defined roles and responsibilities
  • maintained records
03

Technical and organisational measures

  • access management
  • incident management
  • backups
  • business continuity
  • supplier risk management
04

Audit and assurance

  • preparation for regulatory inspections
  • audit evidence and documentation
  • remediation of identified gaps
Why zemITis

Why choose zemITis?

Practical delivery

We develop solutions around your operations, risks and business goals. Our aim is to deliver business value as well as compliance.

An auditor’s perspective

We understand what auditors and regulators look for. Our experience helps identify critical issues during preparation and reduce the risk of surprises at audit.

A highly qualified team

Our advisers bring over ten years of experience in information security, risk management and audit. They draw on backgrounds at leading international consultancies, including the Big Four, to deliver practical results for our clients.

Current expertise

Cybersecurity and regulation keep evolving. Regular training, professional qualifications and continuing development ensure our advice reflects current requirements.

Solutions that work for your business

We design security requirements with operational efficiency in mind, recommending measures that support the way your organisation works.

Support from start to finish

We coordinate the entire process, from initial assessment and documentation to preparation for, and support during, regulatory or certification audits.

Scope of service

What does NIS2 preparation include?

The full compliance lifecycle in one clearly scoped project. Indicative fees, excluding VAT, are typically HUF 3–8 million depending on your organisation’s size and cybersecurity maturity. Get an instant estimate using our calculator.

FAQ

Frequently asked questions

NIS2 covers medium-sized and large organisations in sectors including energy, healthcare, transport, digital services and manufacturing. We establish the requirements relevant to your organisation during the initial assessment.
Typically 2–4 months, depending on your size and starting point. If your deadline is urgent, we develop a prioritised delivery plan.
Yes. Preparation is a one-off project. Our ongoing outsourced Information Security Officer service can then help maintain and oversee compliance. Use the calculator on the security officer page to estimate the monthly fee.
Non-compliance can lead to regulatory action, fines and business risks.
Yes. NIS2 involves governance, business processes and audit preparation as well as technology.
Applicable rules require certain organisations to undergo an audit. We help establish which obligations apply to you.
The exact requirements vary by organisation, but typically include security policies, risk management documentation, incident response procedures and supporting records.
NIS2 places significant responsibility on management. Leaders must ensure appropriate cybersecurity measures are established and maintained.
ISO 27001 provides a strong foundation but does not, by itself, guarantee full NIS2 compliance. Differences between the two sets of requirements need to be assessed separately.
Requirements vary, but common areas include access management, logging, vulnerability management, backups, incident response and supplier risk management.
Yes. Our experts support the full process, including preparation of evidence and documentation, and discussions with auditors.
Get started

Your next audit is approaching. Find out where you stand.

Get a free estimate and consultation. We will contact you within 24 hours with a tailored proposal.