NIS2 and the Cybersecurity Act — what applies now?
The Swedish Cybersecurity Act entered into force in January 2025. We walk through the key requirements and what your organisation needs to do.
Cybersecurity & Compliance
We help critical infrastructure organisations navigate NIS2, ISO 27001 and the Cybersecurity Act — combining specialist advisory with our platform Securapilot.
NIS2
Gap analysis & implementation
ISO 27001
Information Security Management System
CISO
As-a-Service
Securapilot
Compliance platform
Why Verit
We combine deep specialist knowledge with our own technology platform — for compliance that actually works in practice.
Advisory
Experienced consultants in information security, compliance and risk management. We guide you from gap analysis to full implementation.
Platform
Our SaaS platform makes compliance actionable. Automated follow-up, document management and real-time dashboards.
The combination
A unique combination of hands-on consulting and our own technology platform. You get not just a plan — you get the tool to execute it.
Services
We cover the entire chain — from regulatory interpretation and gap analysis to implementation and ongoing monitoring.
Industries
We work with organisations where the demands for security, integrity and trust are particularly high.
The public sector faces stricter requirements through NIS2, the Protective Security Act, and the new Cybersecurity Act. We help government agencies, municipalities, and regions build systematic information security programmes that meet regulatory requirements and protect functions vital to society.
Relevant areas
The energy sector is one of the most heavily regulated industries under NIS2. From power producers to grid operators — the requirements for cybersecurity and incident reporting are high. We have experience working with energy companies that need to balance operational reliability with regulatory compliance.
Relevant areas
The manufacturing industry faces new requirements through NIS2 and supply chain security demands. We help manufacturing companies integrate information security into existing management systems and ensure compliance throughout the entire value chain.
Relevant areas
The healthcare sector handles some of the most sensitive personal data in existence. Digitalisation creates new opportunities but also new vulnerabilities. We support healthcare providers and e-health companies with security that protects patients without slowing down innovation.
Relevant areas
24
Controls OK
8
In progress
3
To fix
Recent activity
Securapilot
Securapilot makes your information security work actionable. Stop chasing documents in folders — get real-time oversight of compliance status, risks and actions.
Insights
The Swedish Cybersecurity Act entered into force in January 2025. We walk through the key requirements and what your organisation needs to do.
The updated standard introduces new controls and a restructured control annex. Here is how your ISMS is affected.
Not every organisation needs a full-time CISO. We explore when a shared security leader is the smartest choice.
Book a free meeting and we will discuss how we can help your organisation meet the new requirements.
Book a meeting