Services
NIS2 compliance services — pick what fits and order or request a quote.
Choose your package:
A complete document package for meeting the requirements of NIS2 and your country's national transposition law — generated automatically for your company's profile, grounded in the law text in force.
- Cybersecurity Risk Management Policy — describes how your company identifies and manages cyber risks (NIS2 Art. 21).
- Incident Handling Plan — a step-by-step guide for what to do and whom to notify when a security incident happens.
- Business Continuity Plan — how your company keeps operating and recovers after a serious disruption.
- Supply Chain Security Policy — the security requirements you set for your own suppliers and partners.
- Management Responsibility Statement and Training Framework — documents management's responsibility and the staff training plan (NIS2 Art. 20).
- Fill-in assistant in the portal — step by step, with a manual explanation for every field
1 890 EUR
The NIS2 document package is usually ready within an hour of payment — we'll notify you when it's done.
A complete document package for meeting NIS2 requirements — generated automatically from your company's profile, based on the law currently in force. Plus an external technical scan and 12 months of updates.
- Cybersecurity Risk Management Policy — describes how your company identifies and manages cyber risks (NIS2 Art. 21).
- Incident Handling Plan — a step-by-step guide for what to do and whom to notify when a security incident happens.
- Business Continuity Plan — how your company keeps operating and recovers after a serious disruption.
- Supply Chain Security Policy — the security requirements you set for your own suppliers and partners.
- Management Responsibility Statement and Training Framework — documents management's responsibility and the staff training plan (NIS2 Art. 20).
- Fill-in assistant in the portal — step by step, with a manual explanation for every field
- NIS2 technical security check — external attack-surface check + report
- 12 months of updates — if your country's law changes, we regenerate the documents under the new law, at no extra charge.
2 490 EUR
The NIS2 document package is usually ready within an hour of payment — we'll notify you when it's done.
A free quick check: we map your company's current state against the ten mandatory measures of NIS2 Article 21(2) and show where the biggest gaps are — a clear starting point before ordering documents or technical measures.
- Quick check against the ten Article 21(2) measures (a–j)
- Ranked list of gaps with explanations
- Recommended next steps for your profile
- Instant result, no obligations
Free
Your company's NIS2 risk management policy — generated from your country, sector and company profile on the basis of your country's transposing law, with verbatim legal citations, in your language. Policies on risk analysis and information system security are the first measure in the NIS2 Article 21(2) list (point (a)) — the document the rest of your NIS2 documentation builds on. One-time payment, no subscription.
- Company-specific content: country, sector, size and your answers — not a generic template
- Based on your country's enacted transposing law, verbatim citations with sources
- The same quality gate as the full package — same rigour, same control chain
- In your language, downloadable from the portal
- Comes with an account and a living documentation profile: what exists, what is missing, when to renew
- The same document is included in the full documentation package
19 EUR
An independent external technical check: DNS, SPF/DKIM/DMARC, TLS configuration, open ports and security headers — results are mapped against the NIS2 Article 21(2) measures and packaged as verifiable evidence you can show to a client or a supervisor. This is not a penetration test or an audit — it is an external check of your publicly visible infrastructure.
- DNS setup — we check whether your domain's nameservers and records are correctly configured and protected against spoofing.
- Email spoofing protection (SPF, DKIM, DMARC) — we check whether an outside party could send emails pretending to be your company.
- Encrypted connection (TLS) — we check whether your website's certificate is valid and the encryption strong enough.
- Open ports — we check which services are reachable from the internet. Open admin interfaces are a common attack path.
- Web server security headers — we check whether the server gives visitors' browsers protective instructions that block common attacks.
- Findings mapped against the Article 21(2) measures — you see which NIS2 requirement each finding relates to, not just a technical result.
- Verifiable evidence report — a document you can show to a client, partner or supervisor as proof of the check performed.
- Ranked remediation recommendations — you know which finding to start with when time or resources are limited.
290 EUR
The technical security check report is usually ready within 5 minutes of payment — we'll notify you when it's done.
Your client falls under NIS2 and requires security measures from suppliers (Article 21(2)(d))? This attestation is for companies that are not NIS2 entities themselves: a technical check plus structured evidence that answers your client's supply chain requirements with a single document.
- Baseline technical check of your public infrastructure — the same checks as in the NIS2 technical security check (DNS, email, TLS, ports, security headers), adapted to the supply-chain context.
- Supply chain requirements compliance map (Article 21(2)(d)) — shows which of your client's supplier security requirements your technical posture satisfies.
- A security attestation you can hand to your client — a single document your client can use for their own compliance check.
- Discounted renewal with monitoring — if your infrastructure changes, you can renew the attestation more cheaply by joining monitoring.
- Fill-in assistant in the portal — step by step, with a manual explanation for every field
2 190 EUR
The supply chain security attestation is usually ready within 10 minutes of payment — we'll notify you when it's done.
Larger volume, multiple countries or a group? Request a personal quote.
VAT
All prices are net (excluding VAT). Invoices are issued by AIPOS OÜ (Estonia).
- For Estonian clients, Estonian VAT of 24% is added.
- Business clients in another EU country with a valid VAT number (VIES-verified): reverse charge — 0% on the invoice, you account for VAT in your own country (Art. 196 of the VAT Directive). Without a valid VAT number, Estonian VAT of 24% is added.
- For clients outside the EU, no Estonian VAT is added (export of services, 0%).