NIS2 Compliance Checklist — by Industry
NIS2 obligations are the same law for everyone, but the external-posture risks that fail a BSI audit differ by sector. Pick your industry for a tailored checklist — then verify your live domain free in 60 seconds.
Scan your domain freeNIS2 Checklist for Fintech & Payment Providers
Fintechs face double regulatory pressure: NIS2 plus DORA (binding since January 2026, BaFin-supervised).
essential entityNIS2 Checklist for Healthtech & Medical Devices
Health-IT serving KRITIS hospitals inherits essential-entity obligations.
important entityNIS2 Checklist for B2B SaaS & Cloud Providers
B2B SaaS is in NIS2 scope as a digital provider AND mediates compliance for every regulated customer in its supply chain (§30 BSIG).
important entityNIS2 Checklist for E-commerce & Online Retail
Online marketplaces are explicitly named NIS2 important entities.
important entityNIS2 Checklist for Managed Service Providers (MSPs)
MSPs are NIS2 important entities themselves AND a supply-chain attack multiplier — one compromised MSP cascades to its entire SMB client book.
important entityNIS2 Checklist for Manufacturing & Industrial
NIS2 newly pulls discrete manufacturing into scope.
essential entityNIS2 Checklist for Logistics & Transport
Transport operators are NIS2 essential entities.
essential entityNIS2 Checklist for Energy & Utilities
Energy is the most heavily regulated NIS2 sector and a declared nation-state target.