Governance and accountability
Management bodies, roles, point of contact, CSIRT contact, policies, reporting and training.
ISOPILOT turns NIS2 into a specialist project: qualification, ACN measures, risk management, supply chain, assets, continuity, incidents, CSIRT notifications and governed documentation in one workspace.
Management bodies, roles, point of contact, CSIRT contact, policies, reporting and training.
Risk register, relevant systems, suppliers, IAM, vulnerabilities, data, network and continuity.
Classification, timeline, procedures, notifications, reports and lessons learned.
Requirements/measures/evidence matrix, gaps, remediation, audits and review.
On first access ISOPILOT performs conservative autofill, populates the NIS2 document register and creates first revisions for all 73 documents. Missing information remains subject to validation: the system does not invent NIS classification, deadlines or actual implementation of measures.
Standalone plan dedicated to the NIS2 scheme. Enterprise may include NIS2 according to entitlements; Superadmin retains scheme authorisation through the Scheme Matrix.
The workspace is structured around Directive (EU) 2022/2555, Italian Legislative Decree 138/2024 and ACN 164179/2025 baseline specifications for important and essential entities. Applicability, classification and deadlines must be confirmed against the organisation’s actual position and ACN communications received.