Awareness Session

NIS2 training for Management

Understand your responsibilities and lead with confidence.

Why leadership needs this training

Under NIS2, cybersecurity is no longer just an IT topic. For essential and important entities, it has become a responsibility of the management. Directors and senior leaders are expected to understand the cyber risk their organisation faces, oversee and approve security measures, and stay accountable for the outcome.

That’s a lot to take on, especially when security isn’t necessarily their background. This session gives them exactly an introduction with more information on their role, their obligations, and what accountability under NIS2 looks like in practice.

What the session covers.

You can expect a three-hour training, on-site or online, built around your management team’s day-to-day reality.

NIS2 and your organisation (60min)

  • Scope of the directive: does it apply to you, and how
  • Core obligations for management
  • Enforcement and sanctions
  • Frameworks that support compliance
  • What this means specifically for your organisation
  • Personal responsibility and liability

The role of the executive (60min)

  • Overseeing and approving cybersecurity measures
  • Providing sufficient resources
  • Building a genuine security culture beyond the papertrail
  • Incident resilience

Tabletop simulation (90min)

  • A realistic cyber incident, walked through live
  • Incident handling and decision-making under pressure
  • Lessons learned, applied to your context

Every participant leaves with a certificate of participation, proof that your leadership has met its training obligation under NIS2.

Training, built around your organisation

We don’t hand your management team a standard slide deck. Every session starts with a kick-off conversation to understand your sector, your risks, and your team’s starting point. From there, we build the examples, the scenarios, and the tabletop exercise around your actual operational reality.

Our approach, step by step:

Step 1

Kick-off.

We align on learning goals, participant profiles, and the context we need to tailor the session.

Step 2

Preparation.

We build the content and the simulation exercise around your organisation, then run it past an internal specialist for accuracy.

Step 3

Delivery.

A three-hour session, on-site or online, combining knowledge transfer with practical exercises. Attendance is recorded and certificates are issued.

Step 4

Follow up.

We share feedback, answer any lingering questions, and flag natural next steps if you want to build further.

The exact format can flex to your organisation’s needs. Tell us your constraints and we’ll tell you what’s possible.

The best of both worlds, in one session.

NIS2 sits at the crossroads of legal obligation and technical know-how. That’s why this session draws on the combined field experience of CRANIUM, specialised in privacy, digital law, and data governance, and Cingulum, specialised in cybersecurity and information security.
That means your leadership team doesn’t just get a pure legal briefing, and they don’t just get a technical one either. They get the full picture, based on real engagements across both fields, translated into one session.

Who trains your leadership team.

Throughout the training, you will have the opportunity to ask questions and engage in discussions with our expert trainers.

Frequently asked questions

We try to provide you with all necessary answers to adequately inform you about our course. Don’t hesitate to reach out if you have any additional questions.

Three hours is the standard for this session. That’s enough time to cover the theory, the executive’s role, and a full tabletop simulation, without eating up your leadership team’s entire day. We prefer to deliver it on-site at your premises, especially for larger groups, since that tends to work better for interaction and focus. That said, we know schedules don’t always allow it, so we also offer the session online if that suits your team better.

We work with a fixed price per session, so there are no surprises afterwards. The exact price depends on your organisation’s size, sector, and the level of tailoring you need (for example, a fully customised tabletop scenario takes more preparation than a standard one). Get in touch and we’ll put together a proposal that fits your needs and preferences.

The session is designed for groups of roughly 5 to 15 participants. Smaller or larger groups are possible, ask us and we’ll advise on how to organise this with the best impact.

Yes, everyone who attends receives a certificate of participation, which you can use to demonstrate that your management team has met its NIS2 training obligation.

Of course! Many organisations start with this session for management, then roll out a wider awareness programme for all staff. We’re happy to talk through what makes sense for your organisation.

That’s a great first conversation to have before booking a session. Get in touch and we’ll help you work out where you stand together with our colleagues from CRANIUM.

Get your leadership team up to speed.

You don’t need your leadership team to become security experts. They need to know their role, their risks, and how to act in case of a security emergency. That’s what this session delivers, and it’s what CRANIUM Campus does best: turning complex obligations into practical, applicable knowledge.

Fill in the form and we’ll reach out asap.