+31 (0)73 - 220 2000 | info@brandcompliance.com
English
  • Dutch
  • English
  • Français
  • België
  • Dutch
  • English
  • Français
  • België
Brand Compliance
  • Certify
    • ISO 9001
    • ISO 22301 (BCM)
    • ISO 19770-1 (IT-assets)
    • ISO 27001
    • ISO 27017 and ISO 27018
    • BIO
    • ISO 27701 (Privacy)
    • NEN 7510
  • IT Assurance
    • SOC 2
  • Vacancies
  • Knowledge base
  • BC Academy
Talk to an expert
  • Information security
    • ISO 19770-1
    • ISO 27001
    • ISO 27017 and ISO 27018
    • ISO 27799
    • BIO
    • NEN 7510
    • SOC 2
    • ISAE 3402
  • Privacy
    • Whitepaper BC 5701
    • GDPR standard BC 5701:2024 EN
    • BC 5701
    • ISO 27701
  • Quality
    • ISO 9001
    • ISO 14001
    • ISO 22301
  • Knowledge base
  • News
  • Academy
    • NIS2 training course
    • ISO 27001 training courses
    • BC 5701 training courses
  • About us
    • Start your certification journey
    • Accreditations
    • Compliment, complaint or tip
    • Privacy Statement
    • Vacancies
    • Contact

Certification process

10
  • The ultimate checklist certification
  • Do you have your first audit soon?
  • How long does ISO certification take?
  • What is a certification cycle?
  • The certification process step by step
  • Initial audit Stage 1
  • Initial audit Stage 2
  • Nonconformities within the management system
  • What should you know about certificate suspension or revocation?
  • Transfer of certification

General

10
  • Whitepaper management system audits
  • Quality Management: best practices for success
  • The Traffic Light Protocol (TLP): what does it mean for you?
  • The Brand Compliance glossary
  • What is a management system?
  • Internal or external audit?
  • Find out more about internal audits
  • Tips to describe a proper scope
  • Accreditation versus certification
  • The use of certification logos

Audits information security

2
  • Excelling in information security: best practices
  • Operational Capabilities: The Backbone of Information Security

NEN 7510

4
  • Transition to NEN 7510-1:2024
  • NEN 7510 without healthcare institution?
  • How to expand with NEN 7510
  • The differences between ISO 27001 and NEN 7510

NIS2 Directive

3
  • Self-assessment & CyFun verification: best chance of success
  • NIS2 liability for board members
  • CyberFundamentals Framework in Belgium: what is the relationship with NIS2?

Assurance audits

1
  • ISAE 3402 vs SOC 2: what is the difference?

Audits privacy

8
  • Checklist for your BC 5701 certification
  • Transition to ISO/IEC 27701:2025
  • Whitepaper GDPR Certification Standard and Criteria BC 5701
  • BC 5701 certification: where do you start?
  • Data breach: What is it and how do you prevent it?
  • Your record of processing activities and the GDPR
  • Your Data Protection Officer and the GDPR
View Categories

CyberFundamentals Framework in Belgium: what is the relationship with NIS2?

1 min read

Have you ever heard of the CyberFundamentals Framework? In this article, we explain what the framework involves and how it relates to NIS2, the European directive aimed at improving cybersecurity. This helps you assess whether the framework may be relevant for your organization.

cyberfundamentalsNIS2

Given recent developments in cybersecurity, the implementation of NIS2 is important for organizations operating in the 17 designated sectors. The directive places a stronger emphasis on cybersecurity risk management and management accountability. Organizations are expected to take their responsibilities seriously and carry out a thorough assessment of their risk level.

NIS2 has applied since October 18, 2024. This makes it important for organizations to take proactive measures and strengthen their cybersecurity approach

What does this mean for my organization?

Would you like to know whether NIS2 applies to your organization? Via this link, you can find more detailed information and assess whether your organization falls within scope.

CyberFundamentals Framework

The CyberFundamentals Framework is closely related to NIS2 and was developed in Belgium. It contains concrete cybersecurity measures intended to help organizations improve data protection, reduce the risk of cyberattacks, and strengthen their overall cyber resilience. The Centre for Cybersecurity Belgium invites Belgian private and public organizations established in or active in Belgium to use the framework.

Four levels

These measures are divided into four different levels:

  • SMALL
  • BASIC
  • IMPORTANT
  • ESSENTIAL

Each level includes more measures than the previous one. The aim of the Centre for Cybersecurity Belgium is for every organization in Belgium to eventually meet the BASIC level.

Five core functions

The CCB CyberFundamentals Framework is built around five core functions:

  • identify
  • protect
  • detect
  • respond
  • recover

These functions support communication about cybersecurity between technical professionals and stakeholders. They also help organizations embed cyber-related risks into their broader risk management strategy and strengthen resilience in the event of a cyberattack.

Verification and certification 

A presumption of conformity may be obtained through CyberFundamentals verification at BASIC or IMPORTANT level, through CyberFundamentals certification at ESSENTIAL level, or through ISO 27001 certification, provided that the scope and the Statement of Applicability are considered acceptable by the CCB.

Verification or certification of the CyberFundamentals Framework is carried out by an accredited and recognized certification body.

Brand Compliance & CyberFundamentals

Brand Compliance België obtained BELAC accreditation on September 4, 2025 to perform CyFun verification. This means Brand Compliance can support organizations in demonstrating presumed compliance in the context of NIS2 through CyFun verification.

Would you like to know what this could mean for your organization? Please contact us.

Need training on NIS2? BC Academy offers training courses on this topic.

Share This Article :

  • Facebook
  • X
  • LinkedIn
Updated on 27 March 2026
NIS2 liability for board membersSelf-assessment & CyFun verification: best chance of success

Accreditation

RvA C548Brand Compliance B.V. has accreditation (C548) to certify ISO 27001, ISO 27701 NEN 7510 and ISO 9001 technical area 33 information technology and 35 other services.

Brand Compliance B.V.

Hambakenwetering 8D2
5231 DC ‘s-Hertogenbosch

+31 (0)73 220 2000
info@brandcompliance.com

Chamber of Commerce nr.: 32101659
VAT nr.: NL8130.78.854.B01

Brand Compliance Belgie B.V.

Uitbreidingstraat 66
2600 Berchem (Antwerpen)

+32 (0)14 48 0730
be-info@brandcompliance.com

VAT nr.: BE0735.675.516

Brand Compliance Nordics AB

Vasagatan 16 2 TR
111 20 Stockholm

+31 (0)73 220 2015
info@brandcompliance.com

Org.nr: 559238-1387

© Copyright 2026 Brand Compliance
Thank you for your rating!
Thank you for your rating and comment!
This page was translated from: Dutch
Please rate this translation:
Your rating:
Change
Please give some examples of errors and how would you improve them: