Scoping and DNSC registration
We check whether GEO 155/2024 applies to you and in which category, and assist with registration on the DNSC platform.
We guide you from “Are we in scope?” to a self-assessment submitted to DNSC and a realistic remediation plan. Or we take on the NIS Officer role, so you can focus on your business.
Choose a single service or a complete package. Every quote starts with a short conversation about your organisation.
We check whether GEO 155/2024 applies to you and in which category, and assist with registration on the DNSC platform.
We carry out the self-assessment under DNSC Order 1/2026 together, using the official tools, at the applicable level (Basic, Important, Essential).
We turn gaps into concrete, risk-prioritised actions with owners, resources and committed deadlines.
The required documentation: security policy, risk analysis, business continuity, incident management, supply chain, access control.
We take on the role of officer responsible for network and information system security: liaison with DNSC, compliance monitoring, reporting.
Incident reporting procedures and templates, exercises, management and staff training.
30 minutes, free of charge, to understand your activity, size and infrastructure.
A clear proposal: what we deliver, how long it takes and how much effort your team needs to put in.
Interviews, evidence collection, self-assessment, policies and remediation plan.
Optional: outsourced NIS Officer, periodic reviews and preparation for DNSC audits.
Directive (EU) 2022/2555 was transposed into Romanian law by Government Emergency Ordinance (GEO) no. 155/2024. The competent authority is the National Cyber Security Directorate (DNSC).
General information only. Specific obligations depend on each entity’s classification; we recommend an individual assessment.
Tell us your sector, headcount and turnover. We will reply with a first opinion within 2 business days.
“The right first step is the right classification — every other obligation depends on it.”
Check your scopeIt depends on the size of your organisation, the applicable maturity level and how much documentation already exists. After a free initial call you receive a fixed quote with no hidden costs.
Scoping and registration can be done within days. The self-assessment and remediation plan usually take a few weeks; implementing the measures depends on the gaps identified.
The person appointed by the entity for network and information system security and for liaison with DNSC. The role can be filled internally or outsourced to a consultant.
Yes. We work alongside your internal IT team or service provider, covering governance, risk and documentation.
Your sector, approximate headcount, turnover, number of locations and a general description of your IT infrastructure.
Fill in the form and we will get back to you within 2 business days. The first call is free and without obligation.