In the past, we often had to emphasize security in client meetings. Today, that’s much less necessary: the topic comes up naturally. Clients ask whether we meet standards and requirements such as NIS 2 and ISO 27001, and how they can create added value by being compliant themselves.
Organizations that need to comply with a directive such as NIS 2 or a standard like ISO 27001 rarely do so simply because it’s mandatory. By focusing on compliance, you’re also positioning your company as a reliable partner. According to Wouter Goyes, Enterprise Solutions Consultant at Piros, this realization is increasingly gaining traction.
Every IT project we undertake is thoroughly reviewed by the client’s CISO team. Many clients therefore expect us to comply with standards such as NIS 2 and ISO 27001. More and more organizations are making adherence to those security standards a condition of working with us, particularly because their customers demand it of them.
And there is a good reason for this: compliance with a standard like NIS 2 or ISO 27001 reduces risk, builds trust, and ensures security is built into every project from the start.
How do you become NIS 2- and ISO-compliant?
Meeting a standard like NIS 2 or ISO 27001 doesn’t happen overnight. It involves much more than merely completing a few formalities. Over the past few months, we’ve invested significant time and energy in obtaining ISO 27001 certification.
To achieve compliance in the solutions we deliver for our clients, we first map the company’s existing processes and identify which of them fall under the relevant compliance requirements. Then we incorporate those requirements into the architectural design and the final delivery. Security and compliance are therefore not treated as afterthoughts: we build them into the design of every solution.
We applied the same approach when working towards our own ISO 27001certification. The company implemented numerous security measures, including container-scanning capabilities. This creates a compliant IT environment that allows us, in turn, to provide guaranteed compliant solutions to our customers.
However, this means that every partner we work with must also prioritize compliance. Only then can we ensure that we continue to meet our obligations to our customers. Ultimately, those customers benefit from safe, trustworthy solutions.
Essential today, even more important tomorrow
Compliance is an ongoing process, as standards and regulations are constantly evolving. That was certainly the case with ISO in the past. Now that the framework is more mature, major updates to the standard occur less frequently. Even so, you must keep evolving to remain compliant. For instance, we review the relevant policies at least annually, and sometimes every six months, to ensure that we continue to meet the requirements. This often involves a difficult balancing act between workability, flexibility, and security.
And then, of course, there’s the rapid development of AI. The challenge of keeping IT environments compliant with standards like NIS 2, while adequately shielding them against the new risks associated with the use of AI, will therefore become even greater in the future.
Do you want to achieve and maintain compliance with NIS 2 or ISO 27001 with confidence? Contact us.
Are you eager to know more about our services? Discover them here.


