EU Directive 2022/2555 — Now in Force

NIS2.Documented.Audit-Ready.

Editable NIS2 compliance templates for manufacturing and energy — every document mapped to the NIS2 Directive, CIR 2024/2690, and ENISA guidance, with ISO 27001 cross-references. In English, ready to customise.

18
Sectors under NIS2 — including energy, manufacturing, transport
160k+
EU organisations newly in scope since 2024
€10M
Maximum fines for non-compliance with Article 21 measures
24h
Reporting deadline for significant security incidents

ENISA Aligned
All templates follow ENISA guidance & ISO 27001
OT/ICS Expertise
Industrial environments & critical infrastructure covered
Ready to Use
DOCX download — customised in hours
Plain English
No legal jargon — written for practitioners

Sector-Specific

Built for Your Industry

NIS2 doesn’t affect everyone equally. Our templates address the specific requirements of your sector — from OT systems in manufacturing to critical infrastructure obligations in energy.

Manufacturing

OT/ICS security, supply chain obligations, asset management in production environments.

~30,000 EU companies

Energy

Critical infrastructure requirements, smart grid security, operator obligations under NIS2 and sector regulations.

Essential Entity

Chemicals

Process control systems, SCADA security, requirements for newly affected chemical companies.

Coming Soon

Food Production

Supply security, ICS safety in production, reporting obligations for food manufacturers.

Coming Soon

Industrial facility — OT/ICS Security

Art. 21
NIS2 security measure obligations
2024
EU transposition deadline
Why Us

Compliance without Detours

We come from industry — not from management consulting. Our documents are written for organisations that operate real production facilities, not for corporations with in-house legal departments.

Practical: All templates were developed for SMEs in production environments — not a theoretical framework.
Standards-aligned: Structure and terminology follow ENISA guidelines and ISO 27001.
Triple-source mapped: Every document references the NIS2 Directive, CIR 2024/2690 Annex, and ENISA technical guidance — with ISO 27001:2022 cross-references built in.

Templates & Documents

Choose Your Compliance Path

88 editable DOCX and XLSX templates mapped to NIS2 Article 21 — from risk management to board governance. Three license tiers: single-org, enterprise, or sector-adapted for manufacturing and energy OT/ICS.

88+
Templates
10
Art. 21 measures
3
License tiers
Instant
Download
Compare packages & pricing →

From €249 · one-time payment · instant download

⚠ All templates are general samples. Not a substitute for individual legal advice. Please have them reviewed by a legal or IT security professional before use.

Customer reference

What one of our customers said

“I’ve just purchased the Complete Toolkit. It provides detailed policy and procedure templates as well as detailed NIS2 compliance implementation guides. Believe this will be a very useful tool for us.”

Enda Macken

Data and Systems Manager · Dromone Engineering Limited · Ireland

Dromone Engineering is an NIS2 “important entity” under Annex II (manufacturing).

30-day update-or-add pledge: if a template needs adapting to your environment — or you need a document outside the standard scope — email us within 30 days and we’ll update it or add it. You keep everything either way.

Questions buyers ask first

Will an auditor accept templates we bought?

Auditors assess your documented security measures, not who drafted them. Every template maps to the specific NIS2 Article 21(2) measure, the CIR 2024/2690 Annex section, and ENISA guidance, and ships fully editable so you adapt it to your organisation. They are general samples — have them reviewed by a qualified professional before adoption.

Do I still need a consultant?

The templates do the documentation groundwork a consultant would bill by the hour for — policies, risk registers, incident plans and board artefacts, already structured and regulation-mapped. You add your organisation-specific detail. Most buyers use them to cut consultant scope sharply rather than remove it entirely.

What if a template doesn’t fit my organisation?

That is what the 30-day update-or-add pledge covers: email us within 30 days and we’ll adapt the template or add a document outside the standard scope. You keep everything either way.

Get Started Free

Am I even affected?

Take our free readiness check and find out in 5 minutes which NIS2 action areas are relevant for your organisation — no registration required.

No spam. No registration for the check. Your data is safe.