NIS2 Quickscan
An indicative first picture of applicability, duty of care, incident reporting, chain and evidence.
View NIS2 Quickscan →
Research, advice and implementation
Kynexis helps you to investigate digital risks, choose the right priorities and implement improvements. You can start with a first exploration or directly opt for in-depth research, implementation or structural direction.

Orientation and investigations
Choose the form of research that suits your decision question, desired depth and available information.
From an initial indication to a substantiated GAP and independent review of its operation.
An indicative first picture of applicability, duty of care, incident reporting, chain and evidence.
View NIS2 Quickscan →Supporting your position on duty of care, governance and chain.
View NIS2 GAP Analysis →Independent testing of how NIS2 measures and agreements work in practice.
View NIS2 audit →Choose the research level that suits your starting point, decision-making question and desired security.
A self-contained first orientation with direct score and partial scores.
View Quickscan cybersecurity →A broad and relatively compact starting image with risks and priorities for improvement.
View Information security baseline assessment →Focused on in-depth research into a technical, organizational or combined demand.
View Cybersecurity Assessment →Independent review of predefined criteria, with traceable evidence and audit conclusion.
View Cyber Security Audit →Translate risk scenarios, impact and risk readiness into treatment choices.
View Information security risk assessment →Research on standards and governance principles, concrete questions of design, ownership and evidence.
Identify what is necessary for a working and demonstrable ISMS.
View ISO 27001 GAP Analysis →Governance principles test ownership, evidence and digital control.
View Governance gap analysis →Improving and implementing
Bring together policies, processes, behaviour, technique and evidence in an executable improvement cycle.
Translate requirements and findings to a working facility with ownership, proof and a fixed improvement cycle.
Develop, implement and ensure policies from risk, roles and daily execution.
View Information security policy →Building a working ISMS and preparing for certification.
View ISO 27001 implementation support →Objective tests to determine whether it is detectable and works in practice.
View ISO 27001 internal audit →Duty of care, incident reporting, chain control and governance work.
View NIS2 advisory and implementation →Connecting risks, controls, evidence, owners and reporting.
View Internal control information security →Make safe behaviour recognizable, applicable and part of daily work.
Connect learning and practicing to observeable safe behaviour.
View Improve security awareness →With repetition and short learning moments, work structurally towards safe behaviour.
View Security Awareness Training →An interactive impulse with recognizable situations and practical actions.
View Security Awareness Workshop →Prepare people and decision-making for current threats, incidents and digital risks.
Prepare for incidents and organise direction when necessary.
View Incident management →An understandable, up-to-date and interactive lecture for conference or customer day.
View Lecture cybercrime →An board-level risk dialogue on continuity, chain, AI and demonstrable control.
View Boardroom cyber sessions →Executive Board and IT together make a first cyber risk analysis for their own organisation.
View Management & IT Cyber Risk Workshop →Consulting and directing
From an independent second opinion to temporary direction on a complete improvement program.
Independent advice, second opinion and periodic Trusted Advisor deployment.
View Cybersecurity consultancy →Risks, priorities, ownership and reporting in a fixed direction cycle.
View Cybersecurity management →Temporary senior management on risks, policies, suppliers, reporting and execution.
View CISO as a Service →Independent supervision of requirements and market exploration to contract, transition and assurance.
View Select new IT service provider →Additional expertise
For acquisitions and investments, specialist research is available through Pravus. Board members and supervisors who want to focus on NIS2 and the Dutch Cybersecurity Act can contact NIS2 Boardroom Training.
Research and risk management before, during and after a takeover or investment.
View IT, Cyber and Privacy Due Diligence at Pravus →NIS2 BOARDROOMTRAININGA targeted training on board-level responsibility, duty of care, oversight and demonstrable control.
View the NIS2 training for directors and supervisors →