B2B cybersecurity · Belgium

XpandIT

NIS2 transition and compliance, delivered clearly — with evidence. Concrete cyber governance for Belgian organisations: gaps, roadmap, controls, hardware.

NIS2 illustration — shield and cyber governance

XpandIT helps Belgian organisations move from regulatory obligation to concrete cyber governance — evidence, risk prioritisation, and decisions your leadership can follow.

Why XpandIT

Human-scale clarity with the rigour of a cyber practice.

Like an SME that stands by its commitments, we favour transparency, useful advice and simple contact.

Method

From diagnostic to evidence. Every recommendation links to a control, an owner and evidence usable in an audit or inspection.

Field

Over 25 years in IT infrastructure, security and training. We speak to boards and technical teams alike — without drowning the topic.

Independence

Advice before catalogue. We can supply security hardware, but we never force a brand — your choice comes first. Architecture follows risk and real budget.

Services

Concrete commercial offers, sized for Belgian SMEs.

Six levers to strengthen your posture: NIS2 compliance, ISO framework, testing, operational resilience, equipment, and AI & agents integration.

Pillar

NIS2 transition

Applicability mapping, gaps, 90/180-day plan, governance and evidence pack.

From 4 900 € excl. VAT — flash diagnostic

Offer details
Framework

ISO 27001

Proportionate ISMS: scope, risks, SoA, living policies and certification coaching.

From 7 500 € excl. VAT — ISMS scoping

Offer details
Testing

PenTest / intrusion

Web, infra and targeted scenarios, with retest and business-exploitability prioritisation.

From 3 800 € excl. VAT — external audit

Offer details
Resilience

DR / BCP exercises

Tabletops, technical simulations and recovery plans that are tested — not only written.

From 2 900 € excl. VAT — tabletop exercise

Offer details
Equipment

IT security hardware

Firewalls, endpoints, MFA, network appliances: advice, supply and commissioning without whimsical vendor lock-in.

On quote — SME pack or project

Offer details
Interconnected AI agents
IA

AI & agents integration

Practical creation and/or integration of AI tools and agents into your business processes, with governance, data security and clear accountability.

From 3 900 € excl. VAT — opportunity scoping

Offer details
Next step

A 30-minute conversation

We clarify your NIS2 status, priorities and realistic effort — with no commitment.

Schedule a call
Approach

Four stages, zero theatre.

We structure your programme to stand up to demanding auditors and leadership that wants clear trade-offs.

01

Understand — Applicability, critical assets, threats and budget constraints.

02

Prioritise — Gaps ranked by risk and effort — a realistic roadmap.

03

Implement — Governance, controls, hardware, tests and targeted training.

04

Prove — Evidence, indicators and exercises to demonstrate control.

Our full method

What you get

Actionable deliverables, not documentary theatre.

Exposure

A clear reading of your NIS2 / ISO exposure

Plan

A budgeted, sequenced action plan

Artefacts

Reusable deliverables (policies, registers, evidence)

Hardware

Justified hardware recommendations, not a catalogue

Contact

A single reachable contact — FR / EN / NL

Trust

They trusted us

Public, financial, industrial and non-profit organisations — references from the historic xpandit.be site.

Technofutur TIC
Degroof
BNP Paribas Fortis
ETNIC
SDRB
Techspace Aero
Proximus
Telindus
Atos
Tractebel Engie
SPF Finances
SPF Économie
See all references
Engineer

Our engineer’s CV

Grégory Murer — Business Continuity & Disaster Recovery Testing Manager at BNP Paribas Fortis; GRC & CISO expert, 27+ years in resilience and cybersecurity.

BCP/DR Testing Manager · GRC & CISO

BCP/DR testing, governance, risk & compliance (NIS2, ISO 27001, DORA), CISO deputy and CISO-as-a-Service — for Belgian organisations and critical infrastructure.

  • 27+ ans years of IT, security and training experience
  • Dual expertise strategic governance and technical (cloud, IAM, SOC)
  • Certifications ISO 27001 LI, CEH, CySA+, (ISC)² CC…

See the full CV

Ready to frame your NIS2 transition?

Tell us your context (sector, size, deadline). We come back with a precise diagnostic plan.

Contact XpandIT