Free online NIS2 orientation

NIS2 Quickscan: a first picture of your NIS2 obligations

Answer 30 practical questions about the Dutch Cybersecurity Act on your own and remote. You will receive an indicative overview of strengths and focus points and choose more precisely between scope assessment, GAP analysis, implementation and audit.

  • Direct removal
  • Six NIS2 components
  • Replies not saved

This is what you can expect.

You will get an initial picture of your organisation in relation to NIS2 right after the questionnaire.

You will answer an online questionnaire on governance, duty of care, incidents, suppliers and traceability on your own and remote.

  • A total score and score per NIS2 theme
  • Strengths and topics that call for attention
  • Opinion on an appropriate follow-up step

Start here

Put the main NIS2 building blocks in conjunction

Choose the answer that best describes your current, demonstrable situation. If in doubt, the I don't know. a useful answer: it shows where further verification adds value.

Step 1 of 6Scope & Registration
  1. 1Scope & Registration
  2. 2Governance
  3. 3Duty of care
  4. 4Incident Notification
  5. 5Supply chain
  6. 6Evidence & Improvement

Scope & Registration

Applicability, entity status and registration

These questions are about your position under the Dutch Cybersecurity Act and its underpinning.

01Has any research been conducted on which legal entities, services and branches may be covered by the Dutch Cybersecurity Act?
02Are sectors, sizes, services and possible exceptions supported by current sources?
03Has it been established whether the organisation is considered an essential or important entity and which supervisor and CSIRT are relevant?
04Is the organisation registered via MijnNCSC and the registration data kept up to date?
05Does the scope chosen include the entire organisation and are critical processes, systems and digital dependencies identifiable?

Your answers will only be processed in this browser and will not be saved or sent.

Need more support?

The quickscan is orienting. The GAP analysis and audit add evidence.

Use the NIS2 GAP analysis for a systematic diagnosis and the NIS2 audit for independent review of already established measures.

View the NIS2 GAP analysis →
View the NIS2 audit →

Two different scans

Implementation at Kynexis; board-level learning orientation on the training site

This Kynexis Quickscan provides a broad view of compliance and implementation: governance, duty of care, incident reporting, suppliers and demonstrability. The separate scan on NIS2BoardroomTraining.nl is intended as a board-level starting point for participants considering a briefing, masterclass, boardroom session or webinar.

View the NIS2 Quickscan board at NIS2BoardroomTraining →

Frequently Asked Questions

What you can expect from the NIS2 Quickscan

What does the NIS2 Quickscan give me?

You will immediately get an indicative picture of six parts: applicability and registration, governance, duty of care, incidents and continuity, supply chain and demonstrability. The result helps you choose a suitable follow-up step.

How do I support my NIS2 performance?

The quickscan gives you a first orientation. For a legal scope assessment, audit or substantiated judgment on the NIS2 implementation, Kynexis will examine your sector, size, service, measures, operation and evidence.

Are my answers being saved?

Your answers and scores are only processed in your browser. You only share information when you open and send an e-mail.

Which follow-up step fits after the quickscan?

An NIS2 GAP analysis fits when you want to identify differences and priorities. Implementation fits when improvements need to be made. An NIS2 audit fits when equipped control has to be independently verified on the basis of traceable evidence.

Wouter Parent

An NIS2 quickscan helps to identify points of interest. For board-level security, an appropriate scope, evidence and a substantive assessment of the actual effect are then required.