FOR UNIVERSITIES
Customized NIS2 and ISO 27001 compliance for your University
A platform that analyzes the University's existing documentation, adapts it to the institutional context, and guides the organization to NIS2 and ISO 27001 compliance, with the support of a dedicated Lead Auditor team.
Distributed by Ex Machina Italy
Already supporting 12 Universities Italian
Available on MEPA for the Public Administration
Why NIS2 affects your University today
The scope of the Directive has expanded: university institutions now fall under “important” or “essential” entities”
MULTITUDE OF ENTITIES
An archipelago of autonomies
Departments, research centers, administrative offices: each with its own habits and processes
DATA
A mosaic of sensitive data
From student career management systems to research archives, up to the personal data of thousands of people
SUPPLIERS
Too many suppliers to monitor
Cloud providers, scientific publishers, educational platforms — each a risk point
NOTIFICATIONS
Strict notification times
Regarding incidents, the Directive leaves no room for improvisation; timely notification is required
20 years
of activity in Ex Machina Italy the university sector: management systems, timelines, and procedures of public entities
Swiss AI
Virgil.ia was designed by Ex Machina's Swiss AI laboratory and validated with Ex Machina Italy before implementation
Support
A dedicated team accompanies the University even after the platform is activated, so the process is fully assisted
How Virgil.ia works and what it covers
Upload what you have
Regulations, policies, procedures: the AI reads and indexes them
A clear picture of the gaps
Here is what you have, here is what is missing to comply with NIS2
Plan with owners
Policies, risks, suppliers, incidents: each with an owner, deadline, and status
Audit with Lead Auditor
Packaged documents and evidence, ready for the accredited third-party body
Onboarding for departments
Guided census of the IT Area, Student Secretariat, Departments, and Research Centers
The source is always cited
Every suggestion comes with a declared source and confidence level
Critical university assets
Student career system, network infrastructure, research archives
Supplier monitoring
Security questionnaire for cloud providers, e-learning platforms, and scientific publishers
Continuous document support
We don't just support you at the beginning of the journey, we stand by you over time

Text proposals
For each policy, Virgil.ia proposes a text tailored to the University context, with the source indicated and the possibility to delve deeper

Time reduction
Review and approval of the proposed text, instead of drafting from scratch. This applies to every policy, control, and incident description

Updates
We provide continuous regulatory support. For every query, we respond by citing the updated NIS and ISO standards
We don't just sell you a license, but also support over time
Starter Kit as a single solution for NIS2 and ISO 27001, with a three-year contract, purchasable through the MEPA channel (Product Code “VIR03”). The conditions reserved for Universities joining in this first phase are guaranteed until October 30th.
5 days
of dedicated service included in the package, which can also be used to connect Virgil.ia to the University's management systems
Common requirements already inside the platform
Together with the group of Universities, we build the requirements that are useful to everyone just once, with no additional costs for the individual.
Beyond the audit: NIS2 and ISO 27001
The same platform remains in your hands after certification, to manage risks, suppliers, and documentation in the years to come
Frequently asked questions
The indicative timeline is 3–6 months, depending on the number of departments and research centers involved in the initial census
Through the MEPA channel, with a procedure designed for public entities (Product Code “VIR03”), or through direct negotiation with Ex Machina Italia
Yes. The first 5 days of service included in the package can be dedicated to integration with the systems already present in the University. Ex Machina Italia is our system integrator with years of experience working with Universities.
Yes. Documents remain visible only to the University team and the auditors assigned to the project, in compliance with data security and sovereignty requirements
Yes. Virgil.ia manages information security all-round, NIS2 and ISO 27001, and remains in use by the University even after the initial audit. Our proposal for universities includes both certifications.
Contact us
