Industries

Every industry has different risks.
BCMLogic Next adapts to yours.

A power plant, a hospital, a telecom operator and a ministry are all subject to the same NIS2 Directive, but they protect completely different systems and answer to different regulations.
BCMLogic Next is one GRC platform that we configure to the requirements of your sector – from NIS2 and the Polish KSC Act to CER, GDPR, ISO standards and sector-specific rules.

Sectors

One directive, seven different realities

Choose a sector to see the obligations, deadlines, typical risk scenarios and how BCMLogic Next supports compliance in practice. For each industry, we list the regulations that most often need to be aligned with NIS2.
Energy
IT, OT/SCADA and continuity of energy, heat and fuel supply.
NIS2/KSCCERISO 27001ISO 22301

See more →

Transport and logistics
Rail, airports, ports, roads and traffic control systems.
NIS2/KSCCERISO 22301

See more →

Healthcare
HIS, PACS, LIS and continuity of patient care.
NIS2/KSCGDPRCERISO 22301

See more →

Digital infrastructure
Telecommunications, DNS, cloud, data centres and trust services.
NIS2/KSCElectronic Communications LawCERISO 27001

See more →

ICT service providers
MSPs, MSSPs and access to client environments.
NIS2/KSCDORA (financial clients)ISO 27001

See more →

Industrial manufacturing
Production lines, automation and supply chain.
NIS2/KSCISO 27001ISO 22301

See more →

Public sector
Ministries, central offices, ZUS, KRUS, NFZ.
NIS2/KSCKRI (Interoperability)GDPR

See more →

Don’t see your industry?
NIS2 also covers finance, water, waste and food, among others. Check your organisation’s status.

NIS2 Qualifier →

Why your industry matters

Same law, completely different practice

NIS2 describes what must be achieved, but not how to do it in a specific organisation. A one-size-fits-all template quickly drifts away from reality – which is why we start with the specifics of your sector.
Different systems
What needs protecting looks different
In energy it is OT/SCADA, in a hospital HIS and medical equipment, in a public office public registers, at an ICT provider access to client environments. A risk assessment has to start with what actually runs in the organisation.
Different regulations
NIS2 is rarely the only regulation
Alongside KSC, there are often sector-specific rules, CER, GDPR, KRI, requirements from financial sector clients or ISO standards. Many of them ask about the same things: risk, continuity, incidents and suppliers.
Different impacts
An outage costs something different in every industry
A heating outage in winter, suspended emergency admissions, halted rail traffic, an unavailable benefits register. Continuity plans must address the real scenarios of each sector.
How we adapt

One platform, many regulations

Instead of a separate project for each regulation – one shared model of risks, processes, assets and suppliers, to which we attach the requirements relevant to your industry.
1
We start with your sector and regulations
We establish which laws and standards actually apply to your organisation and configure requirements, templates and wizards accordingly.
2
We migrate what you already have
Your existing risk assessment, ISMS, BCP or supplier register is moved into the system – by us, your team or the partner who prepared it.
3
One action, many requirements
A risk, a continuity plan test or a supplier assessment is recorded once and linked to every requirement that applies to that area.
4
You stay compliant every day
Reviews, deadlines, owners and change history are all in one place, and reports for the auditor or supervisory authority are built from current data.
Next step
We’ll show you BCMLogic Next using your industry as the example
Explore the platform online or book a 30-minute meeting – we will prepare a scenario for your sector and the regulations that apply to you.