" /> NIS2 Gap Analysis Tool 2026: free self-assessment with cost to close
Veiledning

NIS2 Gap Analysis Tool: Free Self-Assessment Against Articles 20, 21 and 23 (2026)

Free NIS2 gap analysis: 17 questions, a readiness score, your biggest gaps, and what closes each one with a price. Four minutes, no sales call.

Oppdatert · okt 2026 By ITSECOPS Gratis · Ingen påmelding

Free tool · Updated 6 October 2026 · Also available in: Italiano · Français · Deutsch · Svenska · Nederlands · Dansk

In short: Free NIS2 gap analysis: 17 questions, a readiness score, your biggest gaps, and what closes each one with a price. Four minutes, no sales call.

October 2026: Italy's ACN measures are due by 31 October, the Netherlands' Cyberbeveiligingswet has applied since 15 August, Germany's NIS2UmsuCG since December 2025 and Sweden's cybersäkerhetslag since January 2026. The Sophos Active Adversary Report 2026 found 88 percent of ransomware encryption starts outside business hours, which is why the duties that cost most are detection, response and reporting.

How it works

  1. Answer 17 questions: One per screen, about four minutes. Each question states the article it comes from.
  2. See your score: A readiness percentage, a bar per domain and your three biggest gaps, free and without an email.
  3. Unlock the plan: The full table with what closes each gap, the ITSECOPS price range and the typical market price, plus a copy by email within one business day.

Frequently asked questions

Is this an official NIS2 audit?

No. It is a structured self-assessment built from the directive text and the national transpositions. It tells you where you stand and what it costs to close the gaps; the supervisor's inspection or an ISO 27001 audit is the formal check.

Which questions weigh most?

24×7 detection and response, MFA, EDR, patching, immutable backups and the risk analysis carry triple weight because they are what inspectors, insurers and attackers test first.

What happens after I unlock the report?

You see the full table on screen immediately and can print it. We email a copy within one business day. No newsletter and no call unless you ask for one.

Can I use the result for my board?

Yes. The score and the gap table are written for a management audience; Article 20 makes the management body responsible for approving the measures, so the report is a good first agenda item.

Related

NIS2 guide and country pages · Managed SOC pricing in Europe · SIEM as a service · VEDVERA GRC platform · Client testimonials

Trenger du hjelp til å ta dette i bruk i din bedriftsmiljø?

Vi gjør compliance-guider om til implementerte kontroller. Snakk med en ingeniør.

Bestill en konsultasjon
Popular guides and pricingCybersecurity price comparison 2026  ·  EDR pricing per endpoint  ·  MDR pricing per device  ·  Veeam vs Acronis vs Datto  ·  Remote IT support pricing  ·  White-label help desk pricing  ·  24/7 SOC monitoring cost  ·  Top MDR providers  ·  White-label NOC and SOC for MSPs  ·  Top ISO 27001 consulting firms  ·  ISO 27001 implementation plan  ·  CMMC readiness services  ·  Top CMMC consulting firms  ·  ISO 42001 AI certification  ·  Global laptop provisioning and MDM  ·  Security stack recommender  ·  Managed IT services Norway