INFORMATION AND CYBERSECURITY Ensure compliance with information and cybersecurity standards

No credit card needed  •  Unlimited time on Free plan  •  No commitment

Dashboard for information and cyber security software with NIS2 and ISO 27001 compliance overview and risk assessment
Johannes takes you for a tour of the ISMS module
Johannes Eyolf Aagaard Chief Product Officer
In developing the .legal ISMS module, we have focused on meeting the needs of those who wish to use the platform for broader compliance work.

INFORMATION AND CYBERSECURITY Comply with information and cybersecurity standards

Meet the requirements of the NIS2 Directive and follow ISO 27000 standards effortlessly. Our module makes compliance processes more efficient through automation, saves time, and enables your entire team to collaborate seamlessly.

  • Centralise all your information and cybersecurity management in one place.
  • Access our framework templates: ISO/IEC 27001:2022, NIS2 - General Requirements and NIS2 – Energy.
  • Conduct risk assessments of your systems and processing activities based on NIS2 risk scenarios.
NIS2 compliance software with system overview and assets for information security management

FEATURES Complete control over information security

Take control of your information security and compliance. With this module, you get all the tools to manage both information and cybersecurity from the same platform.
  • Create a unified overview of the organisation's assets and systems.
  • Create systems based on templates.
  • Register relevant information about connections, data storage, suppliers and much more.

Feature highlights

  • Smart asset management

    Register and organise all assets whether they are hardware, software, cloud services or other resources.

  • Template library

    Save time with system templates for popular systems with predefined information about the supplier, etc.

  • 360-degree system view

    See all relationships between systems, suppliers, processing activities and responsible parties in one place.

  • Incident log

    Maintain and track all security incidents with automatic versioning.

ISO 27001 framework templates with task management and automatic mapping between NIS2 and ISO standards

FEATURES Framework templates for NIS2 and ISO 27001

Get started with NIS2 and ISO 27001 compliance through our structured templates. Access predefined tasks and automatic mapping between frameworks, so you avoid duplication of work and ensure full compliance.
  • Comply with NIS2 and ISO 27001 using our framework templates.
  • Follow a structured approach to compliance with predefined tasks.
  • Save time with automatic mapping between different frameworks.

Feature highlights

  • NIS2 framework

    Meet all minimum requirements for risk management, incident handling and reporting. Ensures correct registration and organisational security.

  • ISO/IEC 27001:2022 framework

    Establish requirements for implementation, maintenance and continuous improvement of your ISMS with focus on confidentiality, integrity and availability.

  • Task management and responsibility

    Assign tasks to team members with deadlines and automatic reminders.

  • Custom frameworks: ISAE, SOC, CIS18

    Create your own compliance frameworks such as ISAE, SOC2 and CIS18 and customise them to your specific needs.

Risk assessment software with threat catalogue and risk matrix for IT security and NIS2 compliance

FEATURES Effective risk assessment: Security and compliance from all angles

Make complex risk assessment simple and effective. Our module enables you to assess risks from both information and cybersecurity perspectives with structured methods and ready-made scenarios, ensuring thorough protection across the organisation.
  • Conduct risk assessments for IT security and NIS2.
  • Choose a system-based or process-based approach to your risk assessments.
  • Access our predefined threat scenarios for IT security and NIS2.

Feature highlights

  • Threat catalogue

    Access a catalogue of risk scenarios within IT security and NIS2.

  • Risk matrix

    Get an overview of how your risks are distributed in a matrix.

  • Risk assessment

    Create individual risk assessments for all systems or processing activities in which the system is involved.

  • Incident log and risk management

    Maintain a detailed incident log and manage risks effectively with our module.

Our Customers

  • +375

    companies

  • +10.000

    users

  • +79.000

    contracts

  • +14.000

    processing activities

Statements top swirl
Statements bottom swirl
Dedicated customer support and onboarding for information security software implementation

Getting You Started Customer Support

You can always get help from a team member who’s ready to support you and your colleagues.
  • You get a dedicated Customer Success Manager.
  • Personal onboarding to ensure a smooth start.
  • Support available Monday to Friday, 9 AM to 3 PM.
Top swirl

Sign up for Information Security today

Get started for free and upgrade to a paid plan when and if you want.

No commitment - Unlimited time on free plan - No credit card needed

Card bg

Information Security

EUR 135

pr. month

  • All InfoSec standard features
  • Unlimited users
  • Onboarding and support
All prices are exclusive of VAT and any taxes.
Monthly payments, no commitment.
Top swirl

Add-ons

Enhance your compliance platform with add-ons.

.legal's Compliance

Read all about .legal's compliance on our Compliance Hub.

Frequently asked questions about information and cyber security software

What is information and cyber security software?

A system that helps organisations manage and document their information and cyber security. The software supports compliance with NIS2 and ISO 27001 through asset management, risk assessment and automated documentation.

Learn more about the difference between information and cyber security

How does .legal help with NIS2 compliance?

.legal offers a complete NIS2 framework with predefined tasks covering requirements for risk management, incident handling and reporting. Includes risk assessment based on NIS2 scenarios and automatic documentation.

Read the introduction to NIS2

Can I use the platform for ISO 27001 certification?

Yes, .legal includes the ISO/IEC 27001:2022 framework with all necessary controls and documentation requirements. The platform supports implementation, maintenance and continuous improvement of your ISMS.

Learn about ISO 27001 compliance

What does automatic mapping between frameworks mean?

When you complete information in one framework (e.g. NIS2), relevant parts of other frameworks (e.g. ISO 27001) are automatically updated. This saves time and ensures consistency without duplicate work.

See all frameworks

How does risk assessment work in the platform?

The platform offers system and process-based risk assessment with predefined threat scenarios. You can assess risks, visualise them in a risk matrix and link security measures directly to identified risks.

Learn about information security risk management

What is a threat catalogue?

A library of predefined risk scenarios for IT security and NIS2. It contains typical threats such as cyber attacks, data exfiltration and system failures, making it easier to identify relevant risks.

Can I customise frameworks to my organisation's needs?

Yes, in addition to NIS2 and ISO 27001, you can create custom frameworks such as ISAE, SOC2 and CIS18. Customise controls, tasks and requirements to your organisation's specific needs.

Learn about ISAE 3402

How are security incidents handled in the platform?

The platform has an incident log where all security incidents are registered with automatic versioning. Incidents can be linked to systems, risks and corrective measures.

What are system templates?

Predefined templates for popular systems that automatically populate information about vendors, data processing and security measures. This saves time and ensures consistent documentation.

Read introduction to ISMS

How do I get started with the platform?

Start on the free plan with no credit card required and no commitment. You get personal onboarding, a dedicated Customer Success contact and support on weekdays 9am-3pm.

Book a demo
+375 companies use .legal
Region Sjælland
Aarhus Universitet
aj_vaccines_logo
Realdania
Right People
IO Gates
PLO
Finans Danmark
geia-food
Vestforbrænding
Evida
Klasselotteriet
NRGI1
BLUE WATER SHIPPING
Karnov
Ingvard Christensen
VP Securities
AH Industries
Lægeforeningen
InMobile
AK Nygart
ARP Hansen
DEIF
DMJX
Axel logo
qUINT Logo
KAUFMANN (1)
SMILfonden-logo
kurhotel_skodsborg
nemlig.com
Molecule Consultancy
Novicell