Checklist
156 control points
ReCyF checklist: the 20 NIS 2 security objectives
ANSSI’s referential for NIS 2, turned into control points to tick, objective by objective, so you can see where you stand.
- Governance, protection, defence and resilience of information systems
- The 5 objectives reserved for essential entities
- What ISO 27001 and ANSSI-qualified services already cover
Checklist
209 control points
DORA checklist: the obligations of the regulation, article by article
The European regulation on digital operational resilience, turned into control points to tick, for the financial entities in scope.
- ICT risk management, incidents and resilience testing
- ICT third-party service provider risk
- The simplified framework of Article 16, for the entities it covers
Guide
Method and best practices
Third-party risk: the practical guide to structuring your TPRM programme
Map, qualify and steer your critical suppliers, in line with the DORA, NIS 2 and ISO 27001 requirements.
- Map the third-party ecosystem and qualify how critical each supplier is
- Build a cyber assessment grid, collect and analyse the evidence
- Steer action plans and continuous monitoring
Checklist
46 control points
Compliance checklist: the 15 steps of a programme
The 15 steps of a compliance programme, from framing to steering, turned into control points to tick.
- Framing, diagnosis, implementation, control and steering
- A method that holds for GDPR, ISO 27001, DORA and NIS 2
- The scale for reading your result once the boxes are ticked