NIS2 Directive: What Norwegian Businesses Need to Know in 2026
NIS2 sets stricter cybersecurity requirements for critical infrastructure. Here's what your organization needs to do to become compliant.
Blue team specialists with 16+ years of hands-on CERT/SOC experience. We build detections, respond to incidents, and harden infrastructure.
Three pillars of defense — built by operators who have done this for real.
Custom detection rules in Sigma, YARA, KQL, and SPL. SIEM tuning, threat hunting, and detection-as-code pipelines that catch real threats — not just noise.
Read more →From first alert to post-incident report. Disk and memory forensics, malware analysis, evidence preservation, and response retainers for when minutes matter.
Read more →Penetration testing, AD security reviews, cloud posture assessments, and systematic hardening. We find the gaps and help you close them.
Read more →Every industry has unique threat landscapes. We bring operator-level blue team expertise adapted to your sector.
Financial institutions face sophisticated threat actors targeting transactions and customer data.
Healthcare data is a prime target. We protect the systems clinicians depend on daily.
We built our expertise inside Norwegian public sector CERT/SOC — we know this domain.
Fast-moving tech companies need security that keeps pace with development.
“ForSec helped us build a detection capability from scratch — custom Sigma rules, SIEM tuning, and a threat hunting process that actually finds things. Our SOC went from reactive to proactive in three months.”
Anders M.
SOC Manager, financial sector
“When we got hit with ransomware at 3 AM, ForSec was on the phone within 15 minutes. They handled forensics, contained the threat, and gave us a recovery plan before sunrise. That is what real incident response looks like.”
Kristine L.
CISO, technology company
“Their purple team exercise exposed blind spots we did not know we had. ForSec ran realistic attack scenarios and helped our blue team build detections for every gap. Concrete, actionable, technical.”
Erik S.
IT Security Architect, healthcare
Strategic partnerships that strengthen our security capabilities
Enterprise-grade protection using Microsoft's cloud security ecosystem.
Direct connection to the global incident response community through FIRST.org membership.
Answers to what Norwegian businesses ask about cybersecurity and our services.
We start with a no-obligation conversation to understand your situation, challenges, and goals. Then we conduct an initial security assessment that provides a clear picture of your current risk level and actionable recommendations. The entire process typically takes 2–4 weeks from kickoff to final report.
We offer both fixed project pricing and ongoing advisory agreements. An initial security assessment typically starts from NOK 50,000, while ongoing monitoring and advisory services are priced based on scope. We always tailor the engagement to your needs and budget — contact us for a no-obligation estimate.
It's never too late to start with security. Many of our clients come to us precisely because they realize they need professional help. We meet you where you are and build a tailored security program step by step — without disrupting your daily operations.
We build custom detection rules (Sigma, YARA, KQL, SPL) tailored to your environment and threat landscape. This includes tuning your SIEM to reduce false positives, creating detection-as-code pipelines for version-controlled rules, and running threat hunting sessions to find threats your existing rules miss. The goal is detections that catch real attacks — not just noise.
Call us immediately at +47 99 22 06 77. With over 12 years of CERT/SOC operations experience, we can quickly assist with initial assessment, damage scope analysis, evidence collection, and recovery. Clients with ongoing agreements receive prioritized response times.
Our team spent 16+ years inside Norwegian public sector CERT/SOC environments — building detections, responding to incidents, and hardening infrastructure under real threat conditions. We are not consultants who deliver reports and leave. We write the Sigma rules, we analyze the malware, we sit with your team during incidents. That operational experience is what sets us apart.
NIS2 sets stricter cybersecurity requirements for critical infrastructure. Here's what your organization needs to do to become compliant.
Ransomware attacks on Norwegian businesses are increasing. Learn about the latest trends and concrete measures to protect your organization.
An incident response plan is worthless if nobody knows how to use it. Here's a practical guide to building a plan that works under pressure.
Let's discuss how we can help secure your organization.