How is you NIS2 compliance programme progressing?
NIS2 isn’t just another compliance hurdle — it’s a chance to build something lasting.
When I set out to design our NIS2 strategy, I didn’t want a one-time audit fix. I wanted a connected, evidence-driven framework that could adapt to NIS2, ISO, NIST, and beyond.
By mapping our functions to NIS2 clauses through five operational pillars, engaging the right stakeholders, and linking to BT Group’s wider governance strategy, we’ve built a model that:
This approach works because it’s not just about passing an audit — it’s about making compliance sustainable.
If your team is facing NIS2 or a similar framework, here are my top five recommendations:
✅ Compliance isn’t a box-tick. Done right, it’s a competitive advantage.
#NIS2 #CyberSecurity #Governance #AuditExcellence #OperationalResilience
BT Group•1K followers
7moThanks Mark, you create a good grounding for PQC migration and mitigation work in the years ahead.
BT•311 followers
8moGreat read, Mark! Really glad we could work together on this — a strong team effort. Excited to see how the NIS2 programme continues to progress 🙂