NIS2 Directive — EU 2022/2555

NIS2 is mandatory. Do it yourself.

Like accounting — you must comply with the law, but you don't need to hire a consultant. Automated scanning, dashboard and report in under 15 minutes. Self-service, 24/7.

AWS · Azure · GCP
Read-only access — zero risk
Daily automated scans
Auditor-ready PDF reports
Swedish sovereign hosting available

Three steps. Under 15 minutes.

You don't need a security team to get started. Connect your cloud account with read-only credentials and we do the rest — automatically, every day.

~2 min
1
Connect your cloud account

Paste your AWS read-only API keys (or Azure / GCP equivalent) into the portal. No installation. No agents. Nothing to deploy.

~10 min
2
Scan runs automatically

Our Prowler-powered engine audits your cloud environment against 200+ NIS2 and CIS controls. Every finding is mapped to the exact NIS2 article it covers.

Immediate
3
Dashboard & PDF ready

Your compliance score, severity breakdown, and board-ready PDF report appear instantly. Share with your auditor, board, or insurer in one click.

One report shows where you stand today.
A year proves you always have.

NIS2 compliance is not an annual checkbox — it is an ongoing requirement. The value of the service grows every month you are a customer.

Month 1
You know where you stand

The first scan gives you a baseline — your NIS2 score, critical findings and a PDF you can show the board.

Month 3
You can prove improvement

Three months of trend data shows you are actively working on security. From 61% to 84% — a concrete argument for your board, client or auditor.

Month 6
Your cloud changes — the scan keeps up

New resources are added, configurations drift. Findings that didn't exist in January can appear in March. Continuous scanning catches that — a one-time scan does not.

Month 12
Audit-ready — every day

Authorities can audit you any day of the year. With twelve months of scan history you can prove continuous compliance — not just a snapshot from the day you subscribed.

A one-time scan proves what you were that day. A continuous subscription proves who you are.

Everything your NIS2 compliance needs.
Nothing it doesn't.

Fully automated scanning

Scans run on a daily schedule — no manual triggers, no forgotten audits. You get continuous visibility, not a point-in-time snapshot.

Dynamic links to NIS2 articles

Every finding links directly to the official NIS2 article on EUR-Lex — one click from finding to legislation. Applies to both cloud findings and VM host findings.

Goals and improvement plan

Set a compliance target — e.g. 85% by a specific date. The platform shows your current trajectory, how far you have come, and what is needed to reach the goal on time.

Executive reports saved permanently

Every scan generates an executive PDF report — saved automatically with date and version. Download any historical report at any time, directly from the portal.

Drill-down findings explorer

Click any finding to see the exact resource, the risk it poses, and step-by-step remediation guidance — all from one self-service portal.

Trend, delta and improvement

See exactly which findings appeared, were resolved or regressed between scans. Follow your improvement journey and prove active security governance to auditors.

VM host findings with article links

Endpoint and server findings are mapped to the same NIS2 articles as cloud findings — with direct links to the legislation. A complete compliance picture, not just the cloud.

Multi-tenant architecture

Run compliance for multiple companies or business units from one portal. Total data isolation — each tenant sees only their own data.

Sovereign Swedish hosting

Bundle with our Nextcloud sovereign cloud storage. Your data — and your compliance engine — hosted on Swedish soil under your control.


Traditional compliance is broken.
We fixed it.

Traditional compliance tools require long onboarding, rigid contracts, and manual effort. We give you a fully automated, self-service platform — up and running in 15 minutes, cancel any time.

Capability Our platform Traditional tools Generic SaaS tools
Time to first report 15 minutes Weeks Days to set up
Automated daily scans Yes No Some
NIS2 article-level mapping Yes Manual interpretation Generic frameworks only
Board-ready PDF reports On demand Expensive add-on Basic exports
Drill-down remediation guidance Per finding Separate engagement Generic recommendations
Swedish sovereign hosting option Yes — bundled No No
Ongoing cost From 5,990 SEK/mo 150k–500k SEK per audit High per-seat pricing

What does NIS2 non-compliance actually cost?

Every business does the math. Here are the numbers you need.

up to €10M
Maximum fine for essential entities
€7M for important entities · EU Directive 2022/2555, Art. 34
Active supervision
Authorities are already auditing
Swedish MSB and EU member state authorities have supervisory responsibility. Enforcement is increasing through 2025–2026.
5 990 SEK/mo
Our service — always ready
Continuous scanning, dashboard and report. Proof of compliance ready to show at any audit.
Do the math yourself

If the probability of being fined is 5% and the fine lands at 1,500,000 SEK — the expected cost is 75,000 SEK per year. Our Professional plan costs 71,880 SEK per year. And ask yourself: what would one of your HIGH findings cost if it led to a breach? The fine is only part of the bill.

75,000 SEK/yr Expected cost at 5% risk and 1,500,000 SEK fine
vs
71 880 kr/år Our Professional plan · continuous coverage, always current

🌙  Sleep well. You know you comply with the law — and you can prove it.


Simple, transparent pricing.

About the same as your monthly bookkeeping — but you do NIS2 yourself, around the clock, without waiting for a callback.

Monthly Annual Save 20%

Billed annually · NIS2 audits can happen any day — continuous coverage protects you all year.

Professional

For companies that take NIS2 compliance seriously.

5 990 SEK/mo
1 cloud account · billed 71,880 SEK/year
  • 1 AWS / Azure / GCP account
  • Automated monthly scan + manual scan on demand
  • Continuous NIS2 dashboard — always current
  • Unlimited PDF report generation included
  • Email notification on every scan
Start free trial
Enterprise

For organisations with multiple environments and high control requirements.

Custom
Unlimited accounts · annual contract
  • Unlimited cloud accounts
  • Daily scans + real-time alerts
  • NIS2 gap analysis view
  • GDPR & ISO 27001 overlay
  • Sovereign Nextcloud bundle
  • Dedicated onboarding & SLA
Contact us
Unique in Sweden
Sovereign On-Premise

For healthcare, government and organisations where scan results must never leave your own servers.

  • Full platform installed on-premise — on your own infrastructure
  • Data, scan results and reports never leave your environment
  • Activated via license key — no external connection required
  • All Enterprise features included
  • Meets requirements for healthcare, defence and public sector
Healthcare
Government
Defence
Finance
Annual licence
Pricing based on organisation size and scope
Contact us

Indicative launch pricing — contact us for early access or reseller terms.

Questions & Answers

About NIS2, the service, and getting started.

NIS2 (EU Directive 2022/2555) is the EU's updated framework for network and information security. It applies to organisations operating critical and important infrastructure — energy, transport, healthcare, finance and digital infrastructure. The directive has been transposed into national law across all EU member states.

The main rule is that NIS2 applies to medium and large organisations (50+ employees or €10M+ turnover) in 18 designated sectors. But the exceptions matter: DNS providers, cloud services, managed service providers and trust services are covered regardless of size. If you are approaching 50 employees, start preparing now — compliance takes time to build. And even if you are formally below the threshold, your clients are likely to impose NIS2-aligned security requirements on you as a supplier. Use MSB's self-assessment tool and consult a lawyer if in doubt.

Fines of up to €10 million for essential entities, or €7 million for important entities — or up to 2% and 1.4% of global annual turnover respectively if that is higher. Supervisory authorities can also issue binding orders and in serious cases restrict operations.

Essential entities (e.g. energy, transport, banking, healthcare) face stricter requirements and higher fines. Important entities (e.g. food, manufacturing, postal) have slightly lower requirements but the same fundamental obligation to implement risk-based security governance.

From registration to your first report takes under 15 minutes. Paste your read-only API keys, the scan runs automatically, and your NIS2 dashboard and PDF report are ready immediately. No installation. No waiting.

Read-only access only — we can never modify, delete or create resources in your account. We provide the exact permissions required (SecurityAudit + ViewOnlyAccess for AWS). Your environment remains entirely under your control.

Yes. Monthly subscriptions can be cancelled at any time with no lock-in or cancellation fee. Annual contracts run to the end of the period. We commit to no price changes without 90 days' notice — your price is locked for as long as you're a customer.

Scan results, findings and reports are stored encrypted in Sweden. We never share data with third parties. If you choose the Sovereign On-Premise option, data never leaves your own servers at all.

Yes — try the Professional tier free for 30 days. No credit card required. If you're not satisfied, it costs you nothing.

Questions? We're here.

The service is built so you can manage entirely on your own. But we're available if you need us.

Send a message

We typically respond within 1–2 business days.

Support options
Always included
Self-service

FAQ, in-portal guidance on every finding, and full documentation. The platform is built so you shouldn't need to contact us.

Included in Business+
Email support

Response within 2 business days. Onboarding call included at start. No tickets — you write directly to us.

Add-on
Support agreement

Priority response within 4 hours on business days. Named contact, monthly review call and SLA guarantee. Contact us for pricing.

Live chat available during office hours — see the chat button at the bottom right.

Know your NIS2 status by this afternoon.

Takes 15 minutes. No credit card required for the trial.

Powered by Prowler open-source security platform. NIS2 framework references: EU Directive 2022/2555.