NCSC Risk Management Measures (RMMs)
Ireland's National Cyber Security Centre has defined 16 Risk Management Measures that form the technical baseline for NIS2 implementation. Here's how Enginsight satisfies each.
Asset Management and Inventory
Maintain a complete inventory of all IT assets, software, and system configurations.
Maps to:
Article 21(2)(a) Risk AnalysisEnginsight Modules:
Vulnerability Management
Identify, assess, and remediate vulnerabilities in systems and software.
Enginsight Modules:
Patch Management
Apply security patches and updates to systems and software in a timely manner.
Enginsight Modules:
Configuration Management
Maintain secure baselines and monitor system configurations for compliance.
Maps to:
Article 21(2)(a) Risk AnalysisEnginsight Modules:
Access Control
Enforce least-privilege access and maintain role-based permissions.
Enginsight Modules:
Identity and Authentication
Implement multi-factor authentication and secure identity management.
Enginsight Modules:
Encryption and Cryptography
Use encryption to protect data in transit and at rest.
Enginsight Modules:
Monitoring and Logging
Implement comprehensive logging and real-time security monitoring.
Enginsight Modules:
Incident Detection and Response
Detect security incidents and respond within defined timelines.
Enginsight Modules:
Supply Chain Security
Manage cybersecurity risks from third-party suppliers and service providers.
Enginsight Modules:
Secure Development and Procurement
Embed security in software development and system acquisition.
Enginsight Modules:
Business Continuity and Backup
Maintain backup and recovery capabilities for critical systems.
Enginsight Modules:
Data Protection and Privacy
Implement controls to protect personal and sensitive data.
Enginsight Modules:
Personnel Security
Manage access control and personnel security responsibilities.
Enginsight Modules:
Security Awareness and Training
Provide cybersecurity training and awareness programs.
Maps to:
Article 21(2)(a) Risk AnalysisEnginsight Modules:
Supplier Management and Audits
Audit and monitor supplier compliance with security requirements.
Enginsight Modules:
Implement All 16 RMMs with Enginsight
A single Enginsight deployment covers all 16 NCSC Risk Management Measures and all 10 Article 21 requirements, with automated evidence generation.