Records, policies and access set up properly
Measures match your actual activity (data, sites, suppliers), not a catalogue of procedures. Compliance documents stay in your name.
Our service
Know where your company stands on NIS2 and the GDPR. Records, security policies and access management set up properly, so the evidence you present rests on verified facts.
Clients of the group, among others
The situation
Without an accurate assessment, every compliance effort is a gamble. So that is where we start.
Measures match your actual activity (data, sites, suppliers), not a catalogue of procedures. Compliance documents stay in your name.
We say so before you invest in tools. The report is a note leadership can read.
Microsoft 365 logs or the monitoring console: we use what serves as evidence. Not a pile of procedures. Compliance documentation belongs to you.
What we do
We do not tackle all four at once. The IT audit shows which one is most urgent, and we start there.
01
Records and policies in your name. We keep them up to date.
02
Access, logs, backups. Not a stack of unnecessary procedures.
03
Legal bases recorded, access restricted. Compliance and protected data.
04
Regulatory inspection or client audit: documented evidence and support.
Describe your environment. We state what is at risk, what it costs to fix, and in which order.
The method
Each step produces a document you keep, even if the contract ends.
Processing activities, policies, accounts, access.
Deliverable: written scoping noteRequirements, responsibilities, priorities.
Deliverable: prioritised IT roadmapProcessing records, policies, internal approval.
Deliverable: inventory and access registerAccess rights, authentication, logs.
Deliverable: inventory and access registerContracts, GDPR clauses, external access.
Deliverable: inventory and access registerA readable table, a written note on open points.
Deliverable: checks documented before and afterBudget and scope
Common questions
No. We put the technical measures and documentation in place, without giving a definitive legal opinion.
When the assessment and the risks justify it. Not by default.
You. Always.
Yes. They are held in your name. We operate, you remain administrator.
No. We define a written scope. You fund the agreed services.
Yes. Head office in Brussels, office in Paris. Each mandate follows the market: language, regulation, local providers.
Last step
Describe your need in two lines. You receive a costed quote and a written audit of your IT environment within 48 working hours.
Continue
We monitor servers, devices and the network, and apply updates on schedule.
Learn moreCybersecurityWe protect devices, email and accounts, with multi-factor authentication.
Learn moreCloudWe host your servers and applications in EU data centres.
Learn moreBackupWe set up 3-2-1 backups, an immutable off-site copy and tested restores.
Learn moreDevelopmentWe build business applications, APIs and integrations you own.
Learn moreMicrosoft 365We prepare devices and Microsoft 365, with licences held in your name.
Learn more