OUR SERVICES
NIS2 DIRECTIVE LEAD IMPLEMENTER COURSE

NIS2 raises the bar for cybersecurity governance, risk management, and incident handling across essential and important entities. This training shows how to translate NIS2 obligations into a practical implementation programme — from scope determination and governance to measurable controls, evidence, and audit-ready documentation.

Course outline

A structured 4–5 day programme designed for implementation teams and decision-makers. Participants work through a continuous mini-project and build a coherent set of outputs that can be reused in real organisations.

The course focuses on what organisations struggle with in practice: determining NIS2 scope, setting up governance and accountability, selecting and implementing measures, building evidence, and preparing for supervisory expectations — including incident reporting and supply-chain requirements.

Participants practise how supervisory bodies, auditors, and customers assess NIS2 readiness — and how to defend decisions with traceable risk logic, measurable controls, and consistent documentation.

Outputs you build
NIS2 scope & obligations map · Governance & accountability model · Gap analysis & remediation roadmap · Controls & policy package outline · Incident reporting workflow · Evidence & audit-ready documentation structure
How you work
Implementation-first approach: interpret obligations, map them to organisational measures and technical controls, define ownership, and build evidence that can be maintained over time.
Review readiness
Learn common regulator/auditor review patterns and how to respond with defensible scope rationale, documented governance, and measurable implementation progress.
Your trainer
Christian Schlehuber – Lead OT Security Expert
Christian Schlehuber
Managing Director · Lead OT Security Expert

Christian supports organisations from cybersecurity programme design and governance down to implementation of measures across critical infrastructure and OT environments. He leads NIS2 implementation engagements as an external CISO and focuses on building sustainable governance, documentation, and remediation execution.

Implementation work
External CISO for NIS2 implementation (global chemical industry) · Policy house review, scope assessment, gap analysis, and remediation management
Programme delivery
Governance, roadmap design, control orchestration, documentation updates, security awareness and training campaigns, and stakeholder reporting
Experience
13+ years Cybersecurity · Executive advisory + hands-on engineering delivery
Education
M.Sc. IT Security
Key certifications
CISSP · CISM · ISO 27001 Senior Lead Implementer · ISO 27001 Senior Lead Auditor · GICSP · CEH · NIS2 Directive Senior Lead Implementer · CISA ICS (301 / 401)
What you receive

Participants leave with a reusable implementation blueprint and practical artefacts that can be directly applied in NIS2 programmes — across governance, controls, incident handling, and evidence.

  • Implementation templates: scope checklist, governance model, gap analysis format, roadmap tracker
  • Controls mapping: practical mapping of NIS2 obligations to organisational measures and technical controls
  • Incident readiness: reporting workflow, roles, timelines, and evidence expectations
  • Audit-ready structure: documentation package layout that supports internal review and supervisory assessment
Who this is for

Designed for organisations that must implement NIS2 in a structured, defendable way — with clear ownership, measurable progress, and sustainable evidence.

  • Management & governance: CISOs, IT/OT leadership, compliance, risk owners, executive stakeholders
  • Implementation teams: security engineers, architects, operations, GRC and policy owners
  • Assurance: internal auditors, external assessors, programme managers, consultants
  • Sectors: essential and important entities, critical infrastructure, industrial and OT-heavy organisations
Available courses

Choose a scheduled delivery below, or request a private cohort for your organisation (onsite or virtual).

Virtual Classroom

Live, instructor-led virtual classroom covering NIS2 requirements and implementation — from scope and governance to controls, incident readiness, and audit-ready evidence.

  • Hands-on templates: scope, governance, gap analysis, roadmap, evidence structure
  • Implementation-first method for measurable remediation and sustainable compliance
  • Incident reporting workflow, supplier controls, and supervisory review readiness

If your preferred date is not listed yet, contact us to reserve a slot for your team.

Onsite training for your company

Delivered onsite or as a private virtual cohort, tailored to your organisation’s scope, sector, and implementation maturity — ideal for aligning leadership, governance, and delivery teams on one plan.

  • Organisation-specific scoping, governance model, and remediation roadmap
  • Controls mapping to your existing policy house and technical landscape
  • Optional focus: incident reporting drills, supplier requirements, audit readiness

Tell us your sector and current status, and we will propose a tailored agenda.

Scroll to Top

ANNOUNCEMENT!

We are happy to announce our exciting updates!
(Feb 2026)

Please switch your Browser

We detected that you are using Safari as browser. Please consider to switch to a chromium-based Browser to ensure compatibility!