{"id":10272,"date":"2026-07-08T17:16:27","date_gmt":"2026-07-08T15:16:27","guid":{"rendered":"https:\/\/gvision.be\/?p=10272"},"modified":"2026-07-14T00:06:17","modified_gmt":"2026-07-13T22:06:17","slug":"cyfun-basic-why-certification-becomes-your-best-sales-argument-in-2026","status":"publish","type":"post","link":"https:\/\/gvision.be\/en\/cyfun-basic-pourquoi-la-certification-devient-votre-meilleur-argument-commercial-en-2026\/","title":{"rendered":"CyFun Basic : pourquoi la certification devient votre meilleur argument commercial en 2026"},"content":{"rendered":"<div data-elementor-type=\"wp-post\" data-elementor-id=\"10272\" class=\"elementor elementor-10272\" data-elementor-post-type=\"post\">\n\t\t\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-2512204f elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"37252\" data-id=\"2512204f\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-2049e68d\" data-eae-slider=\"94557\" data-id=\"2049e68d\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-3f214f98 elementor-widget elementor-widget-html\" data-id=\"3f214f98\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><section class=\"gv-tldr\"><h2>En bref<\/h2><p>Certification <strong>CyberFundamentals (CyFun) Basic<\/strong> is not just an obligation related to NIS2. In 2026, it has become a <strong>Concrete commercial argument<\/strong> For Belgian SMEs: the Basic level is blocked <strong>82 % of actual cyberattacks<\/strong> with only 34 bars, it sets off at <strong>2 to 4 months<\/strong>, and reassures clients and employers who now require proof of security from their suppliers.<\/p><ul class=\"gv-keypoints\"><li>CyFun is the official repository of the Belgian Cybersecurity Centre (CCB), recognised as a valid path to NIS2 compliance.<\/li><li>The Basic level comprises 34 moves and covers 82 % of the most common attacks, according to the CCB.<\/li><li>The NIS2 directive is pushing large companies to demand proof of security from their entire supply chain, including SMEs outside its scope.<\/li><li>A CyFun label does not automatically guarantee full NIS2 compliance: incident notification procedures still need to be covered separately.<\/li><li>Key deadline: NIS2 entities were required to submit their CyFun self-assessment to the CCB by 18 April 2026.<\/li><\/ul><\/section><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-6c927275 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"90499\" data-id=\"6c927275\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-21183e24\" data-eae-slider=\"67622\" data-id=\"21183e24\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-b4d061a elementor-widget elementor-widget-html\" data-id=\"b4d061a\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><h2 class=\"gv-h2\">What is CyFun (CyberFundamentals)?<\/h2><p><strong>CyFun is the official cybersecurity repository of Belgium, developed by the Centre for Cybersecurity Belgium (CCB).<\/strong> It translates major international standards \u2014 NIST Cybersecurity Framework, ISO 27001\/27002, CIS Controls and IEC 62443 \u2014 into concrete, measurable requirements tailored to Belgian organisations.<\/p><p>Its unique feature is that the reference framework is fed by actual cyber incidents that have occurred in Belgium, to which the CCB has continuous access. The most effective measures against these incidents are listed as \u00abkey measures\u00bb. This is what makes CyFun particularly relevant to the Belgian threat landscape.<\/p><p>CyFun is recognised by the CCB as one of two valid paths to compliance with the NIS2 directive, the other being the ISO\/IEC 27001 standard. Both paths benefit from the same legal presumption of conformity.<\/p><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-1991ead1 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"69701\" data-id=\"1991ead1\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-74a7bfdc\" data-eae-slider=\"79445\" data-id=\"74a7bfdc\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-1301700b elementor-widget elementor-widget-html\" data-id=\"1301700b\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><h2 class=\"gv-h2\">The 4 levels of CyFun explained<\/h2><p>CyFun relies on a four-tier progressive model. Each tier contains all the measures of the previous tier, plus additional requirements.<\/p><div class=\"gv-table-wrap\"><table class=\"gv-table\"><thead><tr><th>Level<\/th><th>Measures<\/th><th>Coverage<\/th><th>For whom?<\/th><\/tr><\/thead><tbody><tr><td class=\"gv-lvl\">Small<\/td><td>~10 rules<\/td><td>Estimate<\/td><td>Micro-organisations, little technical knowledge<\/td><\/tr><tr><td class=\"gv-lvl\">Basic<\/td><td>34 bars<\/td><td class=\"gv-hl\">~82 %<\/td><td>SMEs and moderate security needs<\/td><\/tr><tr><td class=\"gv-lvl\">Important<\/td><td>117 measures<\/td><td>~94 %<\/td><td>Organisations managing sensitive data<\/td><\/tr><tr><td class=\"gv-lvl\">Essential<\/td><td>140 measures<\/td><td>up to 100 %<\/td><td>Large companies, critical infrastructure<\/td><\/tr><\/tbody><\/table><\/div><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-619f3e87 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"83036\" data-id=\"619f3e87\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-157e8c63\" data-eae-slider=\"73085\" data-id=\"157e8c63\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-35820f77 elementor-widget elementor-widget-html\" data-id=\"35820f77\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><div class=\"gv-chart\"><h4>Coverage of cyber-attacks by CyFun level<\/h4><p class=\"gv-chart-sub\">Share of actual attacks blocked, according to the CCB<\/p><div class=\"gv-bar-row\"><div class=\"gv-bar-label\">Basic<\/div><div class=\"gv-bar-track\"><div class=\"gv-bar-fill gv-highlight\" style=\"width:82%\">82 %<\/div><\/div><\/div><div class=\"gv-bar-row\"><div class=\"gv-bar-label\">Important<\/div><div class=\"gv-bar-track\"><div class=\"gv-bar-fill\" style=\"width:94%\">94 %<\/div><\/div><\/div><div class=\"gv-bar-row\"><div class=\"gv-bar-label\">Essential<\/div><div class=\"gv-bar-track\"><div class=\"gv-bar-fill gv-navy-fill\" style=\"width:100%\">100 %<\/div><\/div><\/div><p class=\"gv-chart-note\">The Basic level offers the best balance between effort and protection for an SME: 34 measures providing 82 % of cover.<\/p><\/div><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-fdd663f elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"87529\" data-id=\"fdd663f\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-5a038cf3\" data-eae-slider=\"63227\" data-id=\"5a038cf3\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-5cef16c3 elementor-widget elementor-widget-html\" data-id=\"5cef16c3\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><div class=\"gv-note\"><p><strong>Please note:<\/strong> A new version, CyFun 2025, was released in October 2025. It adds a sixth feature, <em>Govern<\/em> (governance), to the existing five (Identify, Protect, Detect, Respond, Recover). The 2023 and 2025 versions will coexist until 18 April 2027; each organisation will choose which one to apply.<\/p><\/div><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-3a87060d elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"18913\" data-id=\"3a87060d\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-5e15b843\" data-eae-slider=\"17199\" data-id=\"5e15b843\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-8ec5383 elementor-widget elementor-widget-html\" data-id=\"8ec5383\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><h2 class=\"gv-h2\">Why is the Basic level sufficient for most SMEs<\/h2><p><strong>For the majority of Belgian SMEs, the Basic level is the right target.<\/strong> It covers the fundamentals that block the overwhelming majority of real-world attacks \u2013 those that actually affect small organisations \u2013 without imposing the documentary burden of an Essential level.<\/p><p>The priorities identified by the CCB for this foundation can be summarised as a few concrete pillars:<\/p><div class=\"gv-cards\"><div class=\"gv-card\"><div class=\"gv-card__num\">1<\/div><h4>Multi-factor authentication<\/h4><p>Multi-factor authentication on sensitive accesses, the first barrier against credential theft.<\/p><\/div><div class=\"gv-card\"><div class=\"gv-card__num\">2<\/div><h4>Backups<\/h4><p>Reliable, tested, and restorable backups \u2014 platform-independent.<\/p><\/div><div class=\"gv-card\"><div class=\"gv-card__num\">3<\/div><h4>Endpoint protection<\/h4><p>An EDR solution to detect and block threats on endpoints.<\/p><\/div><div class=\"gv-card\"><div class=\"gv-card__num\">4<\/div><h4>Access &amp; Updates<\/h4><p>Access management and regular patch implementation.<\/p><\/div><div class=\"gv-card\"><div class=\"gv-card__num\">5<\/div><h4>Network segmentation<\/h4><p>Segment the network to limit the spread of an attack.<\/p><\/div><div class=\"gv-card\"><div class=\"gv-card__num\">6<\/div><h4>Phishing awareness<\/h4><p>Training employees, the first line of defence against phishing.<\/p><\/div><\/div><p>In terms of timeframe, reaching the Basic level generally represents a undertaking of <strong>2 to 4 months<\/strong> for an assisted SME \u2014 much lighter than a full ISO 27001 approach, while being recognised by the CCB as a valid path towards NIS2.<\/p><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-4f96fb59 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"8090\" data-id=\"4f96fb59\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-5aebe043\" data-eae-slider=\"82528\" data-id=\"5aebe043\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-237db82d elementor-widget elementor-widget-html\" data-id=\"237db82d\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><h2 class=\"gv-h2\">The business argument: your label becomes a differentiator<\/h2><p>Here's the crux of the matter, the one that most articles about NIS2 forget to address.<\/p><p>The NIS2 directive requires large organisations to manage cybersecurity risk on <strong>their entire supply chain<\/strong>. In concrete terms, a large company, a hospital, or an energy actor subject to NIS2 is now asking its suppliers and service providers to demonstrate their own level of security.<\/p><p><strong>Translation for your SME: even if it's outside the direct scope of NIS2, your clients who fall within it will ask you the question.<\/strong> And \u00abwe take security seriously\u00bb is no longer enough as a response.<\/p><p>Imagine the situation: a potential client subject to NIS2 has to choose between two IT providers. The offers are comparable, the prices are similar. One displays a CyFun Basic certification, the other does not. The choice is quickly made.<\/p><p>The CyFun label sends three strong signals to your market:<\/p><div class=\"gv-signal\"><div class=\"gv-signal__ic\">01<\/div><div><h4>You speak the language of your regulated clients<\/h4><p>Faced with a security questionnaire, you respond with recognised proof rather than promises. You accelerate the sales cycle and remove a barrier to purchase.<\/p><\/div><\/div><div class=\"gv-signal\"><div class=\"gv-signal__ic\">02<\/div><div><h4>You are turning an obligation into an advantage.<\/h4><p>Where GDPR was perceived as an imposed constraint, NIS2 is increasingly seen as an opportunity to stand out. A certified company positions itself at a higher level of quality.<\/p><\/div><\/div><div class=\"gv-signal\"><div class=\"gv-signal__ic\">03<\/div><div><h4>You inspire confidence<\/h4><p>A third-party verified label demonstrates a genuine commitment. It even facilitates access to cyber insurance, with insurers relying on the CyFun level to assess risk.<\/p><\/div><\/div><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-36e01ba6 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"44051\" data-id=\"36e01ba6\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-2993affb\" data-eae-slider=\"197\" data-id=\"2993affb\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-27574d7d elementor-widget elementor-widget-html\" data-id=\"27574d7d\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><h2 class=\"gv-h2\">Attention: A CyFun label does not automatically mean NIS2 compliance<\/h2><div class=\"gv-alert\"><h4>The misunderstanding to avoid<\/h4><p><strong>Holding a CyberFundamentals label does not, in itself, tick all the boxes for NIS2.<\/strong> Specific obligations \u2013 such as the strict incident notification deadlines to the CCB (24 hours, 72 hours, and then 30 days) \u2013 must be separately covered by your internal procedures.<\/p><\/div><p>The label is a solid foundation and a major component of your compliance, but it is part of a broader governance approach. This is where experienced support makes the difference between a \u00abtick-box\u00bb certification and a truly operational security posture.<\/p><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-29f81dbf elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"20131\" data-id=\"29f81dbf\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-4928f3c4\" data-eae-slider=\"20443\" data-id=\"4928f3c4\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-60a62eac elementor-widget elementor-widget-html\" data-id=\"60a62eac\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><h2 class=\"gv-h2\">How to get your CyFun Basic label<\/h2><p>The approach recommended by the CCB follows a four-step logic:<\/p><ol class=\"gv-steps\"><li><h4>Determine your target level<\/h4><p>Using the free CCB selection tool, based on a sector-specific risk assessment.<\/p><\/li><li><h4>Perform a self-assessment<\/h4><p>Measure by measure, documenting the evidence, via the official CCB Excel tool.<\/p><\/li><li><h4>Bridge the gaps<\/h4><p>Gap analysis, prioritising actions according to risk.<\/p><\/li><li><h4>To get checked or certified<\/h4><p>Official certification is carried out by a conformity assessment body (CAB) accredited by BELAC.<\/p><\/li><\/ol><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-519b9da8 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"97169\" data-id=\"519b9da8\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-2c72e18a\" data-eae-slider=\"50095\" data-id=\"2c72e18a\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-6d202e71 elementor-widget elementor-widget-html\" data-id=\"6d202e71\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><h2 class=\"gv-h2\">How GVISION supports you<\/h2><p>At GVISION, we support Brussels and Belgian SMEs throughout the entire process: from the initial gap analysis to operational compliance, including the concrete deployment of expected technical measures (MFA, backups, EDR, segmentation, phishing awareness).<\/p><p>Our approach is that of a close partner, not a simple breakdown service: we translate the requirements of the standard into concrete actions, tailored to your size, your sector, and your budget. The aim is not just to obtain a badge, but to make your security a lasting asset \u2013 and an argument you can highlight to your clients.<\/p><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-1784e262 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"27075\" data-id=\"1784e262\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-29d12c43\" data-eae-slider=\"12078\" data-id=\"29d12c43\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-311f0800 elementor-widget elementor-widget-html\" data-id=\"311f0800\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><div class=\"gv-cta\"><h3>Is CyFun Basic relevant to your business?<\/h3><p>Take advantage of our free security audit: we'll assess your situation and provide a clear roadmap, free of jargon and obligation.<\/p><a href=\"https:\/\/gvision.be\/en\/it-audit\/\" class=\"gv-btn\">Request my free audit<\/a><a href=\"https:\/\/gvision.be\/en\/contacts\/\" class=\"gv-btn gv-btn--ghost\">Contact us<\/a><\/div><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-5d8a0b6c elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"62340\" data-id=\"5d8a0b6c\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-26cbd456\" data-eae-slider=\"8410\" data-id=\"26cbd456\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-6867ebe3 elementor-widget elementor-widget-html\" data-id=\"6867ebe3\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><h2 class=\"gv-h2\">FAQ \u2014 CyFun and certification<\/h2><div class=\"gv-faq\"><details><summary>Is CyFun mandatory in Belgium?<\/summary><div class=\"gv-faq-body\">CyFun is not mandatory in itself. However, organisations subject to the NIS2 directive must demonstrate their compliance, either via CyFun or via the ISO 27001 standard. For companies outside the scope of NIS2, CyFun remains strongly recommended and becomes a commercial asset.<\/div><\/details><details><summary>What is the difference between CyFun and ISO 27001?<\/summary><div class=\"gv-faq-body\">Both are recognised paths to NIS2 compliance with the same legal value. CyFun, developed by the CCB, is generally faster and more accessible for Belgian SMEs starting from scratch. ISO 27001 is a more extensive international standard, relevant if you are aiming for international recognition or already hold the certification.<\/div><\/details><details><summary>How long does it take to reach the Basic level?<\/summary><div class=\"gv-faq-body\">Allow approximately 2 to 4 months of work for an assisted SME, depending on your starting maturity level and the degree of consolidation of your security tools.<\/div><\/details><details><summary>Which CyFun level should I choose for my SME?<\/summary><div class=\"gv-faq-body\">Most SMEs aim for the Basic level, which covers 82 % of actual attacks. \u00abImportant\u00bb NIS2 entities fall under the Important level, and \u00abessential\u00bb entities under the Essential level. The CCB\u2019s selection tool helps you determine the appropriate level for your sector.<\/div><\/details><details><summary>Does a CyFun label automatically bring me into compliance with NIS2?<\/summary><div class=\"gv-faq-body\">No. The label covers most of the requirements, but certain NIS2 obligations, particularly incident notification deadlines, need to be separately incorporated into your internal procedures.<\/div><\/details><details><summary>How much does a CyFun Basic certification cost?<\/summary><div class=\"gv-faq-body\">The cost varies depending on the park's size, current maturity, and the use of external support. Self-assessment using the CCB tools is free; the main costs are internal time, potential external support, and for official certification, audit fees from an accredited body.<\/div><\/details><\/div><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<section class=\"has_eae_slider elementor-section elementor-top-section elementor-element elementor-element-65911132 elementor-section-boxed elementor-section-height-default elementor-section-height-default\" data-eae-slider=\"44472\" data-id=\"65911132\" data-element_type=\"section\" data-e-type=\"section\">\n\t\t\t\t\t\t<div class=\"elementor-container elementor-column-gap-default\">\n\t\t\t\t\t<div class=\"has_eae_slider elementor-column elementor-col-100 elementor-top-column elementor-element elementor-element-1316d3f6\" data-eae-slider=\"24140\" data-id=\"1316d3f6\" data-element_type=\"column\" data-e-type=\"column\">\n\t\t\t<div class=\"elementor-widget-wrap elementor-element-populated\">\n\t\t\t\t\t\t<div class=\"elementor-element elementor-element-5e03b803 elementor-widget elementor-widget-html\" data-id=\"5e03b803\" data-element_type=\"widget\" data-e-type=\"widget\" data-widget_type=\"html.default\">\n\t\t\t\t<div class=\"elementor-widget-container\">\n\t\t\t\t\t<div class=\"gv-article\"><p class=\"gv-disclaimer\">This article deals with a regulatory subject whose deadlines and terms are evolving. The information reflects the state of the CyFun repositories and NIS2 regulation in 2026. Sources: Centre for Cybersecurity Belgium (CCB \/ Safeonweb), cyfun.eu. For any compliance decisions, validate your specific situation with the CCB or our experts.<\/p><\/div>\t\t\t\t<\/div>\n\t\t\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/div>\n\t\t\t\t\t<\/div>\n\t\t<\/section>\n\t\t\t\t<\/div>","protected":false},"excerpt":{"rendered":"<p>The CyberFundamentals (CyFun) Basic certification is not just a requirement under NIS2: by 2026, it will be a tangible selling point for Belgian SMEs. 34 measures, 82 % attacks blocked, 2 to 4 months to implement.<\/p>","protected":false},"author":4,"featured_media":10284,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_price":"","_stock":"","_tribe_ticket_header":"","_tribe_default_ticket_provider":"","_tribe_ticket_capacity":"0","_ticket_start_date":"","_ticket_end_date":"","_tribe_ticket_show_description":"","_tribe_ticket_show_not_going":false,"_tribe_ticket_use_global_stock":"","_tribe_ticket_global_stock_level":"","_global_stock_mode":"","_global_stock_cap":"","_tribe_rsvp_for_event":"","_tribe_ticket_going_count":"","_tribe_ticket_not_going_count":"","_tribe_tickets_list":"[]","_tribe_ticket_has_attendee_info_fields":false,"footnotes":""},"categories":[18,96],"tags":[],"class_list":["post-10272","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","category-fr"],"_links":{"self":[{"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/posts\/10272","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/comments?post=10272"}],"version-history":[{"count":15,"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/posts\/10272\/revisions"}],"predecessor-version":[{"id":11670,"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/posts\/10272\/revisions\/11670"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/media\/10284"}],"wp:attachment":[{"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/media?parent=10272"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/categories?post=10272"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/gvision.be\/en\/wp-json\/wp\/v2\/tags?post=10272"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}