+31 (0)73 - 220 2000 | info@brandcompliance.com
English
  • Dutch
  • English
  • Français
  • België
  • Dutch
  • English
  • Français
  • België
Brand Compliance
  • Certify
    • ISO 9001
    • ISO 22301 (BCM)
    • ISO 19770-1 (IT-assets)
    • ISO 27001
    • ISO 27017 and ISO 27018
    • BIO
    • ISO 27701 (Privacy)
    • NEN 7510
  • IT Assurance
    • SOC 2
  • Vacancies
  • Knowledge base
  • BC Academy
Talk to an expert
  • Information security
    • ISO 19770-1
    • ISO 27001
    • ISO 27017 and ISO 27018
    • ISO 27799
    • BIO
    • NEN 7510
    • SOC 2
    • ISAE 3402
  • Privacy
    • Whitepaper BC 5701
    • GDPR standard BC 5701:2024 EN
    • BC 5701
    • ISO 27701
  • Quality
    • ISO 9001
    • ISO 14001
    • ISO 22301
  • Knowledge base
  • News
  • Academy
    • NIS2 training course
    • ISO 27001 training courses
    • BC 5701 training courses
  • About us
    • Start your certification journey
    • Accreditations
    • Compliment, complaint or tip
    • Privacy Statement
    • Vacancies
    • Contact

Certification process

10
  • The ultimate checklist certification
  • Do you have your first audit soon?
  • How long does ISO certification take?
  • What is a certification cycle?
  • The certification process step by step
  • Initial audit Stage 1
  • Initial audit Stage 2
  • Nonconformities within the management system
  • What should you know about certificate suspension or revocation?
  • Transfer of certification

General

10
  • Whitepaper management system audits
  • Quality Management: best practices for success
  • The Traffic Light Protocol (TLP): what does it mean for you?
  • The Brand Compliance glossary
  • What is a management system?
  • Internal or external audit?
  • Find out more about internal audits
  • Tips to describe a proper scope
  • Accreditation versus certification
  • The use of certification logos

Audits information security

2
  • Excelling in information security: best practices
  • Operational Capabilities: The Backbone of Information Security

NEN 7510

4
  • Transition to NEN 7510-1:2024
  • NEN 7510 without healthcare institution?
  • How to expand with NEN 7510
  • The differences between ISO 27001 and NEN 7510

NIS2 Directive

4
  • ISO 27001 in a NIS2 context in Belgium
  • Self-assessment & CyFun verification: best chance of success
  • NIS2 liability for board members
  • CyberFundamentals Framework in Belgium: what is the relationship with NIS2?

Assurance audits

1
  • ISAE 3402 vs SOC 2: what is the difference?

Audits privacy

8
  • Checklist for your BC 5701 certification
  • Transition to ISO/IEC 27701:2025
  • Whitepaper GDPR Certification Standard and Criteria BC 5701
  • BC 5701 certification: where do you start?
  • Data breach: What is it and how do you prevent it?
  • Your record of processing activities and the GDPR
  • Your Data Protection Officer and the GDPR
View Categories

ISO 27001 in a NIS2 context in Belgium

2 min. leestijd

ISO 27001 in a NIS2 context in BelgiumAre you familiar with the possibility of certification for ISO 27001 in a NIS2 context in Belgium?

This article consists of the latest information from the Centre for Cybersecurity Belgium, regarding the applicable conditions that ISO 27001 certification must meet in this context.

Scope

The scope of the Information Security Management System should cover the entire organization. Limitation of the scope is only possible if IT and OT environments are demonstrably physically or technically separated and any exclusions:

  • are clearly documented;
  • do not affect the risks of the environment that falls within scope;
  • are explicitly defined.

Statement of Applicability (SoA)

The Statement of Applicability must demonstrate that your organization implements cybersecurity measures that are demonstrably equivalent to the measures from the CyFun® assurance levels Basic, Important or Essential.

The applicable assurance level is determined on the basis of your organization’s risk analysis. The CyFun® Selection Tool is used for this purpose. The established level is leading for the assessment within the ISO 27001 certification process.

Next steps

If you are interested, please take the steps below.

  1. Confirmation of scope
    Determine whether the scope of the certification meets the conditions, including the justification of any exclusions.
  2. Statement of Applicability (SoA)
    Assess the SoA against the applicable CyFun® measures and evaluate which CyFun® assurance level has been determined by the risk analysis, and whether the Statement of Applicability demonstrates that the measures implemented by your organization are demonstrably equivalent to the requirements of this level.
  3. Audit and assessment
    To confirm that your ISO 27001 certification aligns with the Belgian NIS2 context, we perform a special audit. During this audit, we verify that the necessary adjustments have been effectively implemented within your Information Security Management System. If not all employees, activities and locations fall within the current scope yet, this special audit can be directly combined with an extension of the scope of your certification.
  4. Outcome and confirmation
    After successful completion of the process, your ISO 27001 certification will be updated and demonstrably usable within the Belgian NIS2 context.

What does this mean for your organization?

Would you like to know what this means in practice for your organization and how your ISO 27001 certification can be used within the Belgian NIS2 context? Plan an introductory meeting!

Share This Article :

  • Facebook
  • X
  • LinkedIn
Updated on 2 April 2026
CyberFundamentals Framework in Belgium: what is the relationship with NIS2?Self-assessment & CyFun verification: best chance of success

Accreditation

RvA C548Brand Compliance B.V. has accreditation (C548) to certify ISO 27001, ISO 27701 NEN 7510 and ISO 9001 technical area 33 information technology and 35 other services.

Brand Compliance B.V.

Hambakenwetering 8D2
5231 DC ‘s-Hertogenbosch

+31 (0)73 220 2000
info@brandcompliance.com

Chamber of Commerce nr.: 32101659
VAT nr.: NL8130.78.854.B01

Brand Compliance Belgie B.V.

Uitbreidingstraat 66
2600 Berchem (Antwerpen)

+32 (0)14 48 0730
be-info@brandcompliance.com

VAT nr.: BE0735.675.516

Brand Compliance Nordics AB

Vasagatan 16 2 TR
111 20 Stockholm

+31 (0)73 220 2015
info@brandcompliance.com

Org.nr: 559238-1387

© Copyright 2026 Brand Compliance
Thank you for your rating!
Thank you for your rating and comment!
This page was translated from: Dutch
Please rate this translation:
Your rating:
Change
Please give some examples of errors and how would you improve them: