NIS2 compliance platform for QM10 & QM20 certification
Your 'licence-to-operate' through smart automation and integrations with direct insight into where you stand
Cybersecurity is no longer an
IT problem
It's a business risk that affects every level of your organisation.
Many organisations struggle when auditors ask for concrete evidence.
The NIS2 directive includes the "duty of care in the supply chain".
Henk Bijsterbosch
Digitally Safe Together
With Lupasafe, our platform can offer a complete package. SME businesses can demonstrate that they work safely, in accordance with the risks they face in the supply chain of the NIS2 client.
There are 3 QM levels
QM10 (Basic) – Basic cybersecurity level
QM20 (Substantial) – Medium risk level
QM30 (High) – Highest security level

For MSPs
Automated collection of compliance evidence
Sales support & competitive advantage
Scalable client onboarding

For organisations
Complete asset inventory and visibility
Proof of training and awareness
Automatic compliance reporting
Documentation for phishing campaigns
What Lupasafe does for MSPs
Lupasafe provides MSPs with automated tools to collect and present compliance evidence to their clients. This removes the need for manual data extraction from multiple systems and reduces support overhead costs.
The platform enables MSPs to quickly demonstrate their clients' security status and identify gaps (such as shadow IT devices), creating direct sales opportunities for additional services and managed devices.
MSPs can provide clients with access to self-service through the Lupasafe portal, allowing clients to independently generate reports and documentation. This reduces the MSP's operational costs whilst maintaining service quality.
Deliver NIS2 QM10/20 reporting and compliance evidence with Lupasafe.
Automatically detects and documents all IT assets, including managed workstations (Intune), user-owned devices and 'shadow IT' (routers, cameras, backup systems, old hardware), providing the comprehensive overview of all assets needed for QM10/20 audits.
Provides exportable evidence of all security awareness training activities, including curriculum planning, completion rates, results and individual employee participation - and automatically tracks new employees through Entry ID integrations.
Generates ready-to-use Excel exports for auditors, showing the compliance status of all QM10/20 controls, with visual indicators (green ticks) showing which requirements are met, eliminating weeks of manual documentation.
Consolidates all phishing simulation campaigns and results in one place, providing the evidence needed to demonstrate ongoing security testing and vulnerability analysis for employees, as required by NIS2 regulations.
Consolidates all phishing simulation campaigns and results in one place, providing the evidence needed to demonstrate ongoing security testing and vulnerability analysis for employees, as required by NIS2 regulations.
About Lupasafe
Lupasafe is a platform for SMEs and MSPs that provides cybersecurity, audit and compliance. Lupasafe's cyber risk dashboard continuously monitors and evaluates people, technology and processes. Users receive immediate insight to manage security vulnerabilities. IT and auditors are supported in accordance with Cyber Essentials, ISA315 and NIS2 compliance. Lupasafe supports a holistic view of security, from team cyber awareness, phishing training and dark web scanning to monitoring devices, networks and the cloud. Lupasafe gives SMEs and MSPs confidence in their cyber defence.Organisations using Lupasafe are safer within ten days. They reduce the risk of ransomware, act on insights into where hackers can attack and have an overview of all vulnerable software, workstations and servers.
Lupasafe is built on security by design. We regularly carry out an external penetration test to ensure our own security and our data is located in the EU.
Lupasafe is built on security by design. We regularly carry out an external penetration test to ensure our own security and our data is located in the EU.
About Digitally Safe Together
DST is the largest NIS2 platform in the Netherlands. It was founded by and for more than 100 collaborating industry organisations to support over 200,000 businesses and organisations with the implementation of this new legislation. Digitally Safe Together (DST) is the place where you as a business, regardless of your size, can find all the information you need about the impact of NIS2 legislation on your company. More information can be found at https://eur06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fsamendigitaalveilig.nl%2F&data=05%7C02%7Cwillemijn%40lupasafe.com%7C112136bce3134da7c99b08de3d7df4d9%7Cc9643382b1bd4336b439f4177926c922%7C0%7C0%7C639015808346267079%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&sdata=6A1zjnLsX2HmplyO2oea%2B1Ba05E3aLRTYE8ZQvFmYo0%3D&reserved=0
