NIS2 Policy Set
Editable policies, plans and registers to help organise a review of the NIS2 measures that apply to your organisation.
£249
one-time
18
included items
- Instant digital delivery
- Permanent access after purchase
- Single-organisation licence
- Editable working files
A starting point for your NIS2 policy and records review.
Built for a real piece of work
Preparedness material for one licensed organisation. Adapt the working files before adoption; this is not legal advice.
NIS2 obligations depend on the entity, sector and applicable national law. Article 34 sets minimum levels for national maximum administrative fines, with different thresholds for essential and important entities. These are not minimum fines for each infringement.
Use the policy templates to document your organisation's arrangements and record the changes needed before adoption. Article 20 requires management approval and oversight of the relevant security measures; it does not prescribe a particular approval block. Confirm the applicable national and sector requirements with your adviser.
The plans and registers provide places to record incident-response, continuity and governance arrangements. Treat the coverage matrix as a review aid: check each proposed mapping and add requirements specific to your organisation. Adopting the set does not establish that every applicable obligation is covered or met. Brandable copies are included for adaptation to your organisation.
What you get
Everything included
18 included items
- 01Start Here guide (PDF)
- 02Adoption & Coverage Guide (Word): prompts for reviewing and adapting the set
- 03POL-01 Network & Information Systems Security Policy (Word)
- 04POL-02 Risk Management Policy (Word)
- 05POL-03 Incident Handling & Reporting Policy (Word)
- 06POL-04 Business Continuity & Crisis Management Policy (Word)
- 07POL-05 Supply Chain Security Policy (Word)
- 08POL-06 Secure Acquisition, Development & Maintenance Policy (Word)
- 09POL-07 Effectiveness Assessment Policy (Word)
- 10POL-08 Cyber Hygiene & Security Training Policy (Word)
- 11POL-09 Cryptography Policy (Word)
- 12POL-10 HR Security & Access Control Policy (Word)
- 13POL-11 Asset Management & Physical Security Policy (Word)
- 14PLN-01 Incident Response Plan (Word)
- 15PLN-02 Business Continuity & Disaster Recovery Plan (Word)
- 16PLN-03 Crisis Management Plan (Word)
- 17NIS2 Registers & Records (Excel): nine registers including the coverage matrix and document control
- 18Brandable versions of all sixteen working files (folder)
How it arrives
Digital delivery, clearly explained
Instant digital download: one zip file (RightCyber_NIS2_Policy_Set_v1.0.0.zip) containing everything listed above. Open the Start Here guide first. Nothing is posted.
Read the product and licence boundaries
Single organisation licence. Not for use across multiple client organisations. Contact RightCyber about consultant licensing for use across client engagements. These are preparedness materials, not legal advice. RightCyber provides independent cyber security documentation and support. It is not affiliated with, endorsed by, or approved by any government body, regulator, standards organisation or certification body referenced in its products.