<img height="1" width="1" style="display:none;" alt="" src="https://px.ads.linkedin.com/collect/?pid=1732033&amp;fmt=gif">
Skip to content
Does your organization
fall under the NIS-2 Directive?
Since 6 December 2025, the NIS2 Directive applies bindingly in Germany.
Organizations must deploy secure communication systems, including voice, video and text. The ISEC7 Group supports you with certified, proven solutions for NIS2-compliant IT.

NIS2 is in force, with no transition period

On 6 December 2025, the „Act to Implement the NIS2 Directive“ officially came into force (BGBl. I No. 301 of 5 December 2025).
With it, tightened security standards apply immediately to around 30,000 organizations in Germany, from energy providers and public authorities to KRITIS operators.

The law requires organizations to actively manage risks and, in particular:

  • to implement a comprehensive risk assessment and technical safeguards,
  • to report security incidents to the BSI within 24 hours,
  • and to introduce secured voice, video and text communication (Section 30 (10) of the NIS2 Act).

What is the NIS2 Directive?

Since December 2025, the NIS2 Directive (Network and Information Security) requires all EU member states to introduce stricter IT security measures. In Germany, it affects more than 30,000 organizations across sectors such as energy, healthcare, transport, public administration and digital services.

Particularly relevant: organizations must now ensure encrypted voice, video and text communication, a core competency of the ISEC7 Group.

Management and IT leadership are accountable

Under NIS2, executives are personally liable for the first time. Anyone who cannot demonstrate adequate safeguards risks fines, regulatory action, or the loss of their leadership role.

„We create security through stability and strength – NIS2 delivers exactly that.“
– Federal Interior Minister Alexander Dobrindt, Bundestag debate, 13 November 2025

Sind Sie NIS2-ready?

Beantworten Sie 10 kurze Fragen aus den NIS2-Pflichtbereichen und erhalten Sie eine ehrliche Standortbestimmung in 3 Minuten.

  • Ihr Gesamt-Score in vier Pflichtbereichen
  • Die groessten Luecken in Ihrer aktuellen Aufstellung
  • Konkrete naechste Schritte, sortiert nach Prioritaet
Frage 1 / 10

0 / 100

Ihr NIS2-Readiness-Score

Ergebnis nach Pflichtbereich

Detaillierten Report anfordern

Wir senden Ihnen Ihre individuelle Auswertung und melden uns fuer ein unverbindliches 30-Minuten-Gespraech.

Ihr persoenlicher NIS2-Report

Ihre Daten landen verschluesselt bei ISEC7 in Deutschland.

Mit Absenden stimmen Sie unserer Datenschutzerklaerung zu.

ISEC7 MAIL secure mobile communication

ISEC7 Solutions for NIS2-Compliant Communication

ISEC7 MANAGED SECURE VOICE

High-security voice communication for public authorities, KRITIS and industry, VS-NfD compliant and NIS2-ready. Meets the requirements for encrypted voice and emergency communication. Developed and operated in Germany.

ISEC7 MAIL & ISEC7 CLASSIFY

Secure mobile communication with encryption, classification and digital signature. Prevents misclassification and meets NIS2, GDPR and ISMS requirements. Ideal for confidential communication in public institutions and critical infrastructure.

ISEC7 SPHERE

Monitoring, compliance and transparency across your IT infrastructure. SPHERE delivers unified reporting, CVE monitoring and asset management, and supports your NIS2 risk management.

ARCTIC WOLF MANAGED SOC by ISEC7

24/7 Security Operations Center in Germany, including incident response, threat intelligence and compliance support for NIS2, DORA and KRITIS.

Why ISEC7?

  • ✅ Certified, NIS2-compliant security solutions
  • ✅ More than 20 years of experience in cybersecurity, mobility and KRITIS
  • ✅ Consulting, implementation and managed services from a single source
  • ✅ More than 700 customers worldwide, from mid-market companies to federal authorities
ISEC7 cybersecurity team
ISEC7 NIS2 consulting

Ready for your NIS2 strategy?

Secure your communication before it becomes critical. Our experts support you with analysis, consulting and implementation of your NIS2 measures.

Frequently Asked Questions about NIS2

What is the NIS2 Directive and when did it come into force?

NIS2 (Network and Information Security 2) is an EU directive that sets stricter cybersecurity requirements for essential and important entities. In Germany, the implementing act came into force on 6 December 2025, with no transition period.

Who is affected by NIS2?

NIS2 affects around 30,000 organizations in Germany. The scope covers energy, transport, healthcare, water, banking, public administration, digital services, manufacturing and waste management. Companies above the size threshold in these sectors must comply, as do KRITIS operators by default.

What are the key obligations under NIS2?

The core obligations include risk management with technical and organizational safeguards, supply-chain security, incident reporting to the BSI within 24 hours, secured voice, video and text communication (Section 30 (10) of the German NIS2 Act), and accountability of executive management.

What are the penalties for non-compliance with NIS2?

NIS2 introduces personal liability for executives and substantial fines for organizations that fail to implement adequate safeguards. Penalties can reach up to 2% of global annual turnover for essential entities. Regulatory measures and reputational damage are additional risks.

How can ISEC7 support NIS2 compliance?

ISEC7 supports NIS2 implementation across the full stack: secure voice and messaging (ISEC7 Managed Secure Voice, ISEC7 MAIL, ISEC7 CLASSIFY), risk monitoring and compliance reporting (ISEC7 SPHERE) and 24/7 Security Operations through the Arctic Wolf Managed SOC delivered by ISEC7.

Contact Us

Want to make your communication infrastructure NIS2-compliant?
Our security experts will advise you individually on the right solutions.

📧 sales@isec7.com  |  ☎️ +49 40 325076 0