CIO / CTO: Governance

NIS2: €10 million or 2% of turnover.

or 2% of global turnover. The maximum fine under NIS2, with management personally liable.

Source: EU NIS2 Directive, Greenberg Traurig (2025)

Lifecycle management makes device compliance provable, per serial number, per change, per employee.

Audit trail

LAPT-2284

verified

Issued

2025-03-12 09:14

Owner registered

2025-03-12 09:15

Audit events: 14

ongoing

Data wiping: Blancco

2026-04-02 16:08

Status: archived

2026-04-03 10:00

Provable per serial number

Sound familiar?

17% of data breaches come from lost or stolen devices

Yet only 7% of security decision-makers see it as a serious risk

Nearly 1 in 5 data breaches starts with an unmanaged device. Yet it barely registers on the radar. It is a blind spot you only see at an incident or audit.

Source: Forrester, State of Data Security (2023) / Bringme

89% of ex-employees retain access to company applications

36% of UK office workers know they still have access at a former employer

Osterman Research shows that nearly 9 in 10 leavers can still reach sensitive systems. At 63% of companies, ex-employees still have active access to company data.

Source: Osterman Research / IS Decisions / Wing Security

NIS2 is live in Belgium, Germany follows October 2026

30,000 German companies must comply. The Netherlands expects Q2 2026

Belgium was one of the first EU countries with NIS2 enforcement (October 2024). Germany affects 30,000 companies. The Netherlands is behind, but the Cybersecurity Act is coming. The European Commission already sent warnings to 19 member states.

Source: European Commission / ECSO NIS2 Tracker

53% of IT teams lack full visibility on assets

22% paid more than $5 million in audit costs over three years

The Flexera 2024 State of ITAM Report (503 respondents, incl. EU) shows more than half of IT teams have no full view of their devices. The cost of that blindness shows up at audits.

Source: Flexera, 2024 State of ITAM Report

How lifecycle management solves this

Order · Approval and registration
Configuration · Apply security baseline
Delivery · Owner recorded
In use · Compliance monitoring
Maintenance · Changes logged
Return · Revoke access
Second life · Data wiping certificate
Cycle repeats
1

Provable data wiping

Every device leaving the organisation is wiped with Blancco, including a certificate automatically linked to the device in the system. At an ISO 27001 audit, you have proof per serial number.

2

Complete audit trail

Who did what, when, with which device. Every change is logged: from issue to repair to theft reporting including registration. At audits you export the data instead of panicking.

3

Compliance scores per department

Set device policy per department or role group. See in one overview who complies and who doesn't: ageing devices, missing wipe certificates, policy deviations. Proactive instead of reactive.

4

Owner history per device

The platform records the full ownership history: who had the device, when it was issued, when returned, which configuration. At an audit or incident you can reconstruct the full story per serial number.

Compliance starts with good processes

An audit is not only about security. It is about demonstrability. That touches IT processes, HR offboarding and sustainability reporting.

1

Conversation

We discuss your situation, current challenges, and what lifecycle management can deliver.

2

Setup

The platform is configured for your organisation. Device policy, integrations, and processes.

3

Operational

From day 1, orders, returns, repairs and replacements are processed automatically.

Want to see what this looks like for your organisation?

We're happy to think along.

Do you already have an IT vendor? Ask them about lifecycle management. We support your vendor with the platform and the expertise to set this up for you.