To support organizations, auditors and regulators in navigating NIS2/Cbw, the Central Government Audit Service (ADR), in collaboration with NOREA and commissioned by the Ministry of the Interior and Kingdom Relations (BZK), has developed the Cbw Control Framework. This practical framework leverages a maturity model to help organizations assess and improve their cybersecurity resilience across Cbw, Cbb, and relevant sectoral standards. In this session, we will present the control framework and demonstrate how it can assist organizations in understanding and preparing for the Cbw and Cbb requirements, moving beyond compliance toward real resilience.
Round Table: NIS2/Cbw control framework
Register nowSpeaker

Sandeep Gangaram Panday
Sandeep is the Co-founder and Security Advisor at Brightlyn. With a strong foundation in cybersecurity, IT auditing, and modern software delivery practices, he operates at the intersection of risk management and high-velocity technology.
He serves as Chair of both the NOREA DevOps Working Group and the NOREA DORA Taskforce. Sandeep is the (co-)author of several influential NOREA reports, including DevOps in Control, Ransomware in Control, and DORA in Control.
In addition to his advisory and authorship work, Sandeep is a regular guest lecturer at universities, where he shares insights on topics such as DevSecOps, ransomware readiness, and cybersecurity regulation. His sessions are known for bridging theory and practice, making complex topics accessible to both technical and non-technical audiences.


