Automation that feels like teamwork.

Back to the Infowall

Article

NIS-2: solving requirements pragmatically

The MR.KNOW Security Assistant

NIS-2 – MR.KNOW Security Assistant

The NIS-2 Directive (Network and Information Systems Security Directive) presents companies with new challenges in the area of information security. Adopted by the European Union in 2023, it is intended to help protect critical infrastructure from IT disruptions and cyberattacks. From 18 October 2024, all organisations with more than 50 employees are required to implement IT security measures and report security incidents. For the first time, companies are not only required to fulfil documentation obligations but also to introduce control measures.

The Directive requires:

  • Comprehensive risk management
  • Improved supply chain security
  • Reporting obligations for security incidents
  • Implementation of technical and organisational measures

For many companies, this means considerable additional effort and the need to revise existing security concepts. This is where the Security Assistant from MR.KNOW helps. It offers a comprehensive solution for meeting the NIS-2 requirements and enables holistic implementation as an information security management system (ISMS).

Comprehensive consulting: The MR.KNOW solution based on Business Process Management (BPM) makes it possible to consider information security topics holistically and map processes across the board. This eliminates the need for additional tools for topics such as emergency management, DORA, the Supply Chain Act, data protection, ESG guidelines, occupational safety and many more. Thanks to an extensive partner network, companies can receive comprehensive advice in all these areas according to their needs and focus.

Automated control mechanisms and workflows: The focus of the MR.KNOW solutions is on automating controls and automated workflows. Already in the first step, digital assistants can be used for internal and external risk assessment, individual rule sets can be created without programming, required training can be reviewed and existing systems can be extended easily. For example, XDR systems for preventing cyber risks can easily be supplemented with active protection functions.

Measures management: The digital assistant enables the creation of security measures and controls as well as the management of security incidents.

Risk management: In addition to a pragmatic start with digital assistants and workflows, a holistic approach also includes recording and defining risks. At MR.KNOW, these can be mapped and stored in standard BPMN 2.0 modelling and in process maps. Extensive evaluation options such as RiskMap and individual reports provide a comprehensive overview of the risk landscape. This allows companies to visualise, model and actively monitor their risks. Digital assistants help with carrying out risk analyses. In combination with process automation, an internal control system (ICS) can also be implemented efficiently.

Reporting and documentation: Individual reporting, monitoring and audit-proof documentation facilitate reporting to authorities.

With the MR.KNOW solution, companies can not only meet the requirements of the NIS-2 Directive and information security topics in a legally compliant manner, but also significantly optimise their internal processes. The MR.KNOW Security Assistant offers a holistic solution that supports companies in complying with the new guidelines while strengthening their cybersecurity. By combining automated workflows, expert consulting and flexible extension options, the Security Assistant can be seamlessly integrated into existing systems and adapted through modelling in the BPMN 2.0 standard as well as through low- and no-coding.

The implementation of the NIS-2 Directive thus turns from a complex challenge into an automated and structured process that relieves companies and sustainably improves their digital resilience.

Find more information on the SECURITY ASSISTANT here.