Skip to content
    All industries
    Industries

    Critical infrastructure

    Critical-infrastructure security is dominated by physical hardening, continuous monitoring, and a regulatory frame that has tightened sharply since NIS2 and the Critical Entities Resilience (CER) Directive. Operators need physical and cyber security read as a single programme, not two columns in a binder.

    Risk frame

    Risk is asymmetric: a low-probability, high-impact event (deliberate sabotage, drone-borne disruption, insider compromise) sits alongside the day-to-day risk of theft, vandalism, and contractor error. The regulatory frame now expects operators to demonstrate readiness against both.

    NIS2 brings cyber-physical scope; CER brings physical resilience requirements; Dutch national supervisors expect a programme that is auditable end-to-end. Suppliers without a documented programme are an audit liability.

    Service fit

    • Site hardening and continuous monitoring. Physical-security review, perimeter design, alarm and SOC integration, and documented response protocols for site-level incidents.
    • Drone counter-measures. Drone detection and counter-measure integration for sites where airborne threat or unauthorised reconnaissance is a documented concern.
    • NIS2 and CER programme support. Programme-level engagement combining physical-security work with the cyber and governance requirements of NIS2 and the CER Directive.

    Example case patterns

    • Substation hardening — regional grid. A regional grid operator commissioned a hardening review across substations, integrated alarm and SOC coverage, and documented response timing. Subsequent regulator review closed without findings on physical controls.
    • Drone-incident integration. A water-treatment operator integrated drone-detection at perimeter following two unauthorised overflights. Subsequent overflights were detected and reported within minutes; regulatory disclosure timelines were comfortably met.

    Talk to a specialist about your sector

    We will respond within one business day. Initial conversations are confidential and without obligation.

    Knowledge Library

    Guides, compliance explainers, city pages, industry briefings, and FAQs — written for buyers and indexed for AI search.

    Browse all resources
    Guides