Helping Norwegian businesses assess and strengthen their cybersecurity

Understanding where to prioritise cybersecurity improvements can be challenging, particularly for small and medium-sized businesses. A structured assessment provides a starting point for identifying gaps and planning appropriate action.

In 2022, DNV Cyber and Gjensidige developed an easy-to-use cybersecurity assessment tool to help Norwegian businesses evaluate their security practices. More than 10,000 companies have used the assessment.

Turning security principles into practical action

The assessment tool is based on the Norwegian National Security Authority's (NSM) basic principles for IT security and is organised in three assessment levels. The basic assessment is an evaluation of 15 fundamental technical security measures that NSM considers most urgent and that all organizations should have in place. These measures can prevent up to 80% of negative effects from cyber attacks. This approach helps businesses structure their review of existing safeguards and identify areas requiring further attention. It also provides a basis for internal discussions about cybersecurity priorities and improvement planning.

Building on the experience

DNV Cyber also supports organisations with cyber maturity assessments based on standards and frameworks such as NIST CSF 2.0, NIS2 and Norway’s Digital Security Act. Assessments can be tailored to individual organisations or sectors, with support for planning improvements around their needs.

Contact us to discuss your organisation’s cybersecurity assessment needs.

This project was delivered by Nixu, a DNV company. DNV, Applied Risk, and Nixu joined forces to form DNV Cyber in 2024, creating one of Europe’s fastest growing cybersecurity services businesses.