Confirm your scope
Map your sector and size against Annex I/II to determine if — and as which tier — you are in scope.
Compliance roadmap
A pragmatic sequence security leaders can follow — from confirming scope to maintaining continuous, auditable compliance.
Map your sector and size against Annex I/II to determine if — and as which tier — you are in scope.
Provide the required entity details to your national competent authority or CSIRT.
Benchmark your current controls against the Article 21 measures and prioritise the gaps.
Deploy the technical, operational and organisational controls, proportionate to your risk.
Build the 24h / 72h / one-month workflow, with clear owners, templates and escalation paths.
Train management, review continuously, and keep auditable evidence of compliance.
A quick readiness check shows you where to focus first, before you commit to the roadmap.
Start free assessment →