PUBLIC SECTOR & GOVERNMENT CYBERSECURITY

Independent cybersecurity audits and compliance reviews against National Cyber Security Law (NKDL) and Cabinet Regulations for government institutions.

Best suited forMinistries, state agencies, and public administration institutions
Primary outcomeFormal cybersecurity audit report suitable for oversight bodies
ScopeCompliance with National Cyber Security Law (NKDL) and Cabinet Regulations No. 442
Typical timingConfirmed after the scoping call

Is this right for you?

When to choose this service

Ministries, state agencies, and public administration institutionsMunicipalities, local government agencies, and public utility companiesState information system (VIS) operators and public service providers

What we assess

  • Compliance with National Cyber Security Law (NKDL) and Cabinet Regulations No. 442
  • State information system (VIS) security classification levels and protection controls
  • Incident reporting workflows and coordination protocols with CERT.LV
  • Access governance, audit logging compliance, and data integrity verification

What you receive

  • Formal cybersecurity audit report suitable for oversight bodies
  • NKDL and Cabinet Regulations compliance GAP mapping and remediation plan
  • Actionable security governance and operational policy recommendations

Delivery flow

From scope to a verified result

  1. Public sector IT system regulatory scope agreement

  2. E-government services, portals, and database security audits

  3. National Cyber Security Law and NIS2 compliance assessment

  4. Certified audit attestation and remediation roadmap delivery

Before we start

Frequently asked questions

How do BR²SEC audits help prepare for government oversight reviews?

Our audits identify all technical and policy gaps prior to formal regulatory inspections, providing step-by-step remediation instructions.

What is the relation between Cabinet Regulations No. 442 and the National Cyber Security Law (NKDL)?

NKDL transposes EU NIS2 directive requirements into Latvian national law, expanding covered entities and enforcing stricter executive governance and incident reporting timelines.

How are State Information Systems (VIS) audited for compliance?

We audit State Information System (VIS) architecture, access control policies, audit logging compliance, and penetration tests matched to security classification tiers.

Do you audit municipal IT networks and local government utility providers?

Yes. Municipal IT infrastructure and local public utility providers are critical to regional resilience; we deliver tailored assessments structured for local government requirements.

Related next steps