🛡️ Pentest from €539 · Compliance from €89. See All Services →
Optimum Web
NIS2CR-NIS2-01

NIS2 Applicability Assessment

Definitive NIS2 applicability assessment: are you in scope? Essential or important entity? What obligations apply? Clear answer in 5 business days. €199.

NIS2 Applicability Assessment by Optimum Web is a fixed-price compliance service covering NIS2 Articles 2–3 — Scope and essential/important entity determination. It costs €199 with 5 business days delivery by senior security engineers. NIS2 applicability determination (in-scope / out-of-scope). 14-day warranty included.

€199
Fixed price, VAT excluded
5 business daysSenior only
NIS2 applicability determination (in-scope / out-of-scope)
Entity classification: essential, important, or not applicable
Specific obligations matrix for your entity type
Recommended next steps and compliance priority actions
🛡️
14-Day Warranty
If the delivered pack does not match your ISMS scope and Statement of Applicability, we rework it at no cost, or refund in full within 14 days of delivery.

Secured by PayPal · 256-bit SSL encryption

or order without payment
+373 22 843569
PayPal · SSL
👨‍💻 Senior only
14-day warranty
🆔 CR-NIS2-01

This Service Covers

NIS2Articles 2–3 — Scope, essential and important entities

What You Get

Determine whether your organization falls under the NIS2 Directive and what obligations apply. We analyze: your sector (18 sectors covered by NIS2), entity size (250+ employees or €50M+ revenue = essential; 50+ or €10M+ = important), cross-border operations, digital service type, and supply chain position. Result: definitive applicability determination, entity classification (essential/important/out-of-scope), specific obligations that apply, and recommended next steps.

Who Needs This

  • Companies unsure whether NIS2 applies to them
  • Organizations operating in potentially covered sectors (energy, transport, health, digital)
  • Businesses whose clients or partners ask about NIS2 compliance status
  • Management teams needing a clear answer for board reporting

How It Works

  1. 1
    Questionnaire

    Short questionnaire: sector, size, services, countries of operation

  2. 2
    Analysis

    Map your organization against NIS2 scope criteria (Articles 2-3)

  3. 3
    Classification

    Determine entity type and specific obligations

  4. 4
    Report

    Applicability report + obligations matrix + recommended next steps

NEXT STEP

Ready to Implement the Findings?

After the assessment, our fixed-price implementation services cover every gap — from GDPR backup (€449) to incident response (€359). No surprises.

Browse Fix Services

Ready to Start?

€199 · 5 business days · 14-day warranty

Secured by PayPal · 256-bit SSL encryption

or order without payment

Ready to implement? Browse individual fix services

Learn more

Frequently Asked Questions

Which sectors does NIS2 cover?+
18 sectors in two groups. Highly critical: energy, transport, banking, financial markets, health, drinking water, wastewater, digital infrastructure, ICT B2B management, public administration, space. Other critical: postal, waste, chemicals, food, manufacturing, digital providers, research.
What if we're a small company?+
NIS2 applies to medium and large entities (50+ employees or €10M+ revenue). However, some entities are covered regardless of size: DNS providers, TLD registries, cloud computing services, data centers, CDN providers, trust services.
When do NIS2 obligations begin?+
EU member states had until October 2024 to transpose NIS2 into national law. Obligations are active. If you're still unsure about applicability, assessment now is critical.
What's the penalty for non-compliance?+
Essential entities: up to €10M or 2% of global annual turnover. Important entities: up to €7M or 1.4% of turnover. Personal liability for management board members who fail to supervise compliance.
If we're out of scope, should we still follow NIS2?+
If you're out of scope, you have no legal obligation. However, in-scope companies in your supply chain may require NIS2-level security from their vendors. Article 21(2)(d) covers supply chain security.

Secured by PayPal · 256-bit SSL encryption

or order without payment