FOR UNIVERSITIES

Customized NIS2 and ISO 27001 compliance for your University

A platform that analyzes the University's existing documentation, adapts it to the institutional context, and guides the organization to NIS2 and ISO 27001 compliance, with the support of a dedicated Lead Auditor team.

Distributed by Ex Machina Italy

Already supporting 12 Universities Italian

Available on MEPA for the Public Administration

Why NIS2 affects your University today

The scope of the Directive has expanded: university institutions now fall under “important” or “essential” entities”

MULTITUDE OF ENTITIES

An archipelago of autonomies

Departments, research centers, administrative offices: each with its own habits and processes

DATA

A mosaic of sensitive data

From student career management systems to research archives, up to the personal data of thousands of people

SUPPLIERS

Too many suppliers to monitor

Cloud providers, scientific publishers, educational platforms — each a risk point

NOTIFICATIONS

Strict notification times

Regarding incidents, the Directive leaves no room for improvisation; timely notification is required

20 years

of activity in Ex Machina Italy the university sector: management systems, timelines, and procedures of public entities

Swiss AI

Virgil.ia was designed by Ex Machina's Swiss AI laboratory and validated with Ex Machina Italy before implementation

Support

A dedicated team accompanies the University even after the platform is activated, so the process is fully assisted

How Virgil.ia works and what it covers

Upload what you have

Regulations, policies, procedures: the AI reads and indexes them

A clear picture of the gaps

Here is what you have, here is what is missing to comply with NIS2

Plan with owners

Policies, risks, suppliers, incidents: each with an owner, deadline, and status

Audit with Lead Auditor

Packaged documents and evidence, ready for the accredited third-party body

Onboarding for departments

Guided census of the IT Area, Student Secretariat, Departments, and Research Centers

The source is always cited

Every suggestion comes with a declared source and confidence level

Critical university assets

Student career system, network infrastructure, research archives

Supplier monitoring

Security questionnaire for cloud providers, e-learning platforms, and scientific publishers

Continuous document support

We don't just support you at the beginning of the journey, we stand by you over time

Text proposals

For each policy, Virgil.ia proposes a text tailored to the University context, with the source indicated and the possibility to delve deeper

Time reduction

Review and approval of the proposed text, instead of drafting from scratch. This applies to every policy, control, and incident description

Updates

We provide continuous regulatory support. For every query, we respond by citing the updated NIS and ISO standards

We don't just sell you a license, but also support over time

Starter Kit as a single solution for NIS2 and ISO 27001, with a three-year contract, purchasable through the MEPA channel (Product Code “VIR03”). The conditions reserved for Universities joining in this first phase are guaranteed until October 30th.

5 days

of dedicated service included in the package, which can also be used to connect Virgil.ia to the University's management systems

Common requirements already inside the platform

Together with the group of Universities, we build the requirements that are useful to everyone just once, with no additional costs for the individual.

Beyond the audit: NIS2 and ISO 27001

The same platform remains in your hands after certification, to manage risks, suppliers, and documentation in the years to come

Frequently asked questions

The indicative timeline is 3–6 months, depending on the number of departments and research centers involved in the initial census

Through the MEPA channel, with a procedure designed for public entities (Product Code “VIR03”), or through direct negotiation with Ex Machina Italia

Yes. The first 5 days of service included in the package can be dedicated to integration with the systems already present in the University. Ex Machina Italia is our system integrator with years of experience working with Universities.

Yes. Documents remain visible only to the University team and the auditors assigned to the project, in compliance with data security and sovereignty requirements

Yes. Virgil.ia manages information security all-round, NIS2 and ISO 27001, and remains in use by the University even after the initial audit. Our proposal for universities includes both certifications.

Contact us

Contact Form Virgilia