Nationaal Cyber Security Centrum
NCSC is the Dutch government's national cybersecurity agency and CSIRT under the Ministry of Justice and Security, providing free threat intelligence, incident response, vulnerability advisories, and resilience tools to 2.4 million Dutch businesses and organizations.
- Company typePrivate
- Founded2018
- HeadquartersThe Hague, Netherlands
- Headcount11–50
- GTM typeB2B
- OfferingServices
What Nationaal Cyber Security Centrum does
Nationaal Cyber Security Centrum (NCSC) is the Dutch national and sectoral Computer Security Incident Response Team (CSIRT), operating as a government agency under the Ministry of Justice and Security (Ministerie van Justitie en Veiligheid). Established through the Wet beveiliging netwerk- en informatiesystemen (Wbni), which came into effect on 9 November 2018, it is charged with strengthening the digital resilience of Dutch organizations. Its stated operating scope covers 2.4 million businesses and organizations in the Netherlands, with primary regulated constituencies being essential service providers (vitale aanbieders), digital service providers, and central government organizations, alongside broader outreach to SMEs, self-employed entrepreneurs, and ICS/OT operators.
Functionally, NCSC delivers threat intelligence, coordinated vulnerability disclosure, incident response coordination, and cyber resilience services. Its product surface spans core services (Security Advisories, CTI-reports, Cyberbeeld, target and victim notifications, CSIRT services, 24-hour emergency assistance, forensics, and the ISIDOOR national cyber exercise) and self-service interactive tools (CyberVeilig Check, Basisscan Cyberweerbaarheid, Risicoklassenindeling Digitale Veiligheid, and Security Check Procesautomatisering). Underlying technical infrastructure includes the MijnNCSC registration and incident-reporting portal, the Nationaal Detectie Netwerk (NDN), the Cyclotron threat-information sharing platform, the Cyberweerbaarheidsnetwerk (CWN) intermediary model routed through OKTT organizations, and an Anti-Phishing Shield piloted with ISPs and banking associations that maintains a denial blacklist of roughly 160,000 malicious domains refreshed every 15 minutes.
NCSC does not operate on a commercial revenue model. As a public-sector entity, it is funded through the Ministry of Justice and Security and provides all services, tools, and threat intelligence free of charge to Dutch organizations as part of a statutory mandate. Go-to-market is entirely digital and self-serve via ncsc.nl, tools.ncsc.nl, MijnNCSC, and community channels, with no reseller, direct-sales, or subscription mechanics. Its authority and constituent obligations (including mandatory incident reporting) derive from Dutch law and the EU NIS2 Directive rather than contractual commercial relationships.
Nationaal Cyber Security Centrum firmographics
Firmographics- Name
- Nationaal Cyber Security Centrum
- Legal name
- Nationaal Cyber Security Centrum
- Website
- https://ncsc.nl
- Company type
- Private
- Founded year
- 2018
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- NCSC is the Dutch government's national cybersecurity agency and CSIRT under the Ministry of Justice and Security, providing free threat intelligence, incident response, vulnerability advisories, and resilience tools to 2.4 million Dutch businesses and organizations.
- Ownership category
- akta.pro rank
Nationaal Cyber Security Centrum industry classification
Industry- Product category
- National Cybersecurity Services
- NAICS
- National Security (928110), National Security and International Affairs (9281)
- akta.pro primary industry
- Cyber Defense & Information Security (National Security) (BPAIAHAE)
- akta.pro secondary industries
- Continuous Controls Monitoring (CCM) (HDADAHAE), Critical Infrastructure Protection (CIP) & NERC-CIP Compliance (HDADAJAC), Control System Cybersecurity for OT (ICS Security, Monitoring, Hardening) (IMAGABAL), Regulatory Change Management (RCM) (HDADAIAG)
Keywords
Where Nationaal Cyber Security Centrum is headquartered
LocationHeadquarters
- HQ city
- The Hague
- HQ country
- Netherlands
- HQ region
- Europe
Offices1 record
Markets served
Nationaal Cyber Security Centrum business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Technology or R&D, Operations, Infrastructure, Others
Revenue model
- Government Funding: NCSC is funded through the Dutch Ministry of Justice and Security (Ministerie van Justitie en Veiligheid). All services are provided free of charge to Dutch organizations as part of the government's mandate to strengthen national digital resilience.
Distribution channels5 records
Marketing channels9 records
Nationaal Cyber Security Centrum product offering
Product offeringCore offering
Nationaal Cyber Security Centrum (NCSC) is the Dutch national CSIRT operating under the Ministry of Justice and Security, delivering centralized cybersecurity advisory, threat intelligence, vulnerability disclosure handling, and incident response coordination to Dutch government organizations, essential service providers, and businesses. It operates collaborative platforms (Cyclotron, Nationaal Detectie Netwerk, MijnNCSC, Anti-Phishing Shield) and provides free interactive assessment tools (CyberVeilig Check, Basisscan Cyberweerbaarheid, Risicoklassenindeling Digitale Veiligheid, Security Check Procesautomatisering) supporting NIS2/Cyberbeveiligingswet compliance.
Product overview
Nationaal Cyber Security Centrum (NCSC) is the Dutch government's cybersecurity agency under the Ministry of Justice and Security. It provides a comprehensive portfolio of advisory services, threat intelligence products, and interactive tools. The core offerings include Security Advisories, CTI-reports, Cyberbeeld (real-time threat landscape insight), Doelwit- en slachtoffernotificaties (targeted threat notifications), Nationaal Detectie Netwerk (NDN), and CSIRT incident response services. The interactive tools portfolio includes CyberVeilig Check (for SMB/zzp), Basisscan Cyberweerbaarheid (25-statement self-assessment), Risicoklassenindeling Digitale Veiligheid (4-tier risk classifier), and Security Check Procesautomatisering (ICS/OT security scanner). NCSC also operates the 5 Basisprincipes framework for digital resilience and provides NIS2/Cyberbeveiligingswet compliance guidance. As of January 2026, the Digital Trust Center (DTC) merged into NCSC. Key collaborative platforms include Cyberweerbaarheidsnetwerk (CWN), Cyclotron, and NCSC Community.
Differentiator
Problem solved
Functional benefit
Brands
- MijnNCSC: Online portal for organizations to register, report incidents, and access NCSC services
- Basisscan Cyberweerbaarheid
- CyberVeilig Check
- Security Check Procesautomatisering
- Risicoklassenindeling Digitale Veiligheid
Products and services
- Security Advisories Published security advisories about specific vulnerabilities with technical details and remediation guidance, distributed to Dutch organizations via advisories.ncsc.nl.
- Doelwit- en slachtoffernotificaties Target and victim notifications alerting specific Dutch organizations to potential cyber threats targeting them, enabling preemptive defensive action.
- Nationaal Detectie Netwerk (NDN) National Detection Network enabling faster discovery of cyber threats through collaborative monitoring across participating organizations.
- MijnNCSC Portal for organizations to register for NIS2/Cyberbeveiligingswet compliance, report cyber incidents, and access automated data feeds with vulnerability information, threat intelligence, and Security Advisories.
- CTI-reports Cyber Threat Intelligence reports providing insights into current threats, threat actors, and preparing organizations for digital threats.
- Cyberbeeld Real-time insight into the cyber landscape providing situational awareness to Dutch organizations.
- Cyberweerbaarheidsnetwerk (CWN) Cyber resilience network enabling enhanced collaboration against cyber threats through OKTT (schakelorganisaties) organizations acting as intermediaries to constituent businesses.
- Cyclotron Platform enabling collaborative visibility into cyber threats between organizations through threat information sharing.
- Dreigingsanalyse Threat analysis services providing deep understanding of cyber risks and threat actors.
- Flash-reports Rapid insight reports into cyber incidents for quick situational awareness.
- CSIRT-dienstverlening Computer Security Incident Response Team (CSIRT) services providing technical support for incident handling and response coordination.
- 24-uurshulp 24-hour emergency assistance for urgent cyber incidents requiring immediate response from NCSC CSIRT.
- Forensics Forensic investigation services for analyzing cyber incidents and digital evidence.
- ISIDOOR National cyber exercise for testing and improving organizational cyber crisis response capabilities against the Landelijk Crisisplan Digitaal.
- Kwetsbaarheid melden (CVD)
Quantifiable outcome
- Blocked more than 2 million phishing attempts among approximately 200,000 users during Anti-Phishing Shield pilot
- +2 more outcomes
Companies that use Nationaal Cyber Security Centrum
Customer profileSegments6 records
Ideal customer profiles4 records
Nationaal Cyber Security Centrum technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
Feature5 records
Nationaal Cyber Security Centrum partnerships and signals
Strategic signalPartnerships
24 partnerships are on record, tiered core, major and minor.
- Digital Trust Center (DTC)coreSince January 1, 2026, the Digital Trust Center (DTC) has become part of NCSC. Much of the cybersecurity information formerly on the DTC website has been incorporated into the NCSC website. The DTC archive is available at digitaltrustcenter.nl.
- Dutch National PolicecoreCollaborated with NCSC to identify approximately 200 servers and seize infrastructure linked to ASOCKS, a Russia-based residential proxy provider. Together they dismantled a massive botnet controlling more than 17 million infected devices.
- CISA (Cybersecurity and Infrastructure Security Agency)coreJointly published 25-page guidance document on best practices for defending AI deployments in operational technology (OT) environments used in critical infrastructure.
- FBIcoreCo-authored joint guidance document on AI security in OT environments alongside CISA, NSA AI Security Center, and cyber agencies from Australia, Canada, Germany, Netherlands, New Zealand, and UK.
- NSA AI Security CentercoreParticipated in multi-agency collaboration to publish AI security guidance for OT environments used in critical infrastructure.
- Cyber Agencies from Australia, Canada, Germany, New Zealand, and UKcoreInternational partnership of cyber agencies from five countries joined CISA, FBI, NSA, and Netherlands (NCSC) in publishing AI security guidance for critical infrastructure OT environments.
- VNO-NCWmajorPartnered with VNO-NCW, MKB-Nederland, Verbond van Verzekeraars, Nationale Politie, Cyberveilig Nederland, NLdigital, CIO Platform Nederland, Online Trust Coalitie, and Ministry of EZK under leadership of Centrum voor Criminaliteitspreventie en Veiligheid to develop the Risicoklassenindeling Digitale Veiligheid tool.
- MKB-NederlandmajorCo-developed the Risicoklassenindeling Digitale Veiligheid risk classification model for SMEs in partnership with business associations and government bodies.
- Verbond van VerzekeraarsmajorParticipated in development of the Risicoklassenindeling Digitale Veiligheid risk classification model for Dutch SMEs.
- Nationale PolitiemajorPartnered in developing the Risicoklassenindeling Digitale Veiligheid risk classification tool for SMEs.
- Cyberveilig NederlandmajorParticipated in development of the Risicoklassenindeling Digitale Veiligheid tool for SME cybersecurity risk classification.
- NLdigitalmajorCo-developed the Risicoklassenindeling Digitale Veiligheid risk classification tool for Dutch SMEs.
- CIO Platform NederlandmajorPartnered in developing the Risicoklassenindeling Digitale Veiligheid risk classification model for Dutch businesses.
- Online Trust CoalitiemajorParticipated in development of the Risicoklassenindeling Digitale Veiligheid tool for SME risk classification.
- Centrum voor Criminaliteitspreventie en Veiligheid (CCV)majorLed the development of the Risicoklassenindeling Digitale Veiligheid risk classification model in partnership with business associations and cybersecurity organizations.
- Vereniging van Nederlandse GemeentenmajorPartnered with VNG and other organizations to develop the Security Check Procesautomatisering tool for ICS and OT security assessment.
- SiemensminorContributed to development of the Security Check Procesautomatisering tool for ICS/OT security assessment in 2021.
- ASMLminorParticipated in development of the Security Check Procesautomatisering ICS security tool in 2021.
- DeloitteminorContributed expertise to development of the Security Check Procesautomatisering tool for ICS/OT security assessment.
- Novel-TminorParticipated in development of the Security Check Procesautomatisering ICS security tool.
- AccentureminorContributed to development of the Security Check Procesautomatisering tool for industrial control systems security.
- Stark NarrativeminorParticipated in development of the Security Check Procesautomatisering ICS security tool.
- Cybersecurity AlliantieminorProvided support for development of the Security Check Procesautomatisering tool for ICS/OT security.
- Dutch ISPs and Banking AssociationscorePublic-private partnership involving government agencies, ISPs, and banking associations to pilot the Anti-Phishing Shield system that blocked more than 2 million phishing attempts among 200,000 users.
Scale indicators6 records
Recent moves7 records
Expansion highlights5 records
Nationaal Cyber Security Centrum competitors and assessment
Company assessmentDirect peers
- ACSC (Australian Cyber Security Centre): Australia's national cybersecurity hub within the Australian Signals Directorate. Comparable national-CSIRT and threat-intelligence mandate; listed as a co-author on the joint AI-in-OT guidance alongside NCSC NL.
- BSI (Bundesamt für Sicherheit in der Informationstechnik): Germany's federal cybersecurity authority. Performs the same portfolio as NCSC NL — national CSIRT, NIS2 implementation, CERT services, OT/critical-infrastructure oversight — and is named alongside NCSC in the AI-in-OT joint guidance.
- Canadian Centre for Cyber Security (Cyber Centre): Canada's unified national cybersecurity authority under the Communications Security Establishment. Peer in national CSIRT operations and in the international joint-guidance network referenced in NCSC NL's partnerships.
- NCSC NZ (National Cyber Security Centre, New Zealand): New Zealand's Computer Emergency Response Team (CERT NZ) and national cyber agency. Co-author on the AI-in-OT joint guidance; comparable national CSIRT and CISO-advisory role.
- CCB (Centre for Cyber Security Belgium): Belgium's national cybersecurity authority under the Prime Minister's Office. Performs the same national CSIRT, NIS2, and citizen/enterprise awareness functions and is a direct regional counterpart to NCSC NL.
- CISA (Cybersecurity and Infrastructure Security Agency): US federal civilian cybersecurity agency. Co-author with NCSC of the AI-in-OT joint guidance and the most prominent Five Eyes partner; comparable role as national coordinator of cyber defense and critical-infrastructure resilience.
- NCSC CH (Nationales Cyber-Zentrum / BACS Switzerland): Switzerland's national cybersecurity centre within the Federal Intelligence Service. Same federal CSIRT and NIS-equivalent coordination mandate as NCSC NL; co-author of the AI-in-OT joint guidance.
- NCSC UK (National Cyber Security Centre): UK's national cybersecurity authority within GCHQ. Direct peer in mission (government CSIRT, threat intelligence, incident response, NIS regulations) and explicitly listed in NCSC NL's international partnership network.
- ANSSI (Agence nationale de la sécurité des systèmes d'information): France's national cybersecurity agency under the Secrétariat général de la défense et de la sécurité nationale. The closest functional analogue to NCSC NL in scope (CSIRT, NIS2 coordination, threat intelligence for government and operators of essential services).
Broad incumbents
- ENISA (European Union Agency for Cybersecurity): EU-level cybersecurity agency that sets pan-European baseline standards and coordinates among member-state CSIRTs (including NCSC NL). Not a direct functional competitor but the supranational umbrella under which NCSC NL's NIS2 obligations are framed.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat4 records
Key risks6 records
Key highlights7 records
Customer concentration
Nationaal Cyber Security Centrum social profiles
Digital presenceNationaal Cyber Security Centrum compliance and trust
Trust signalCompliance5 records
Nationaal Cyber Security Centrum financial estimates
Financial estimateRevenue estimate
Valuation estimate
Nationaal Cyber Security Centrum leadership team
Management profileNumber of profiles
Nationaal Cyber Security Centrum subsidiaries and ownership
Company hierarchySubsidiaries1 record
Nationaal Cyber Security Centrum funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Nationaal Cyber Security Centrum M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Nationaal Cyber Security Centrum
What does Nationaal Cyber Security Centrum do?
Nationaal Cyber Security Centrum (NCSC) is the Dutch national CSIRT operating under the Ministry of Justice and Security, delivering centralized cybersecurity advisory, threat intelligence, vulnerability disclosure handling, and incident response coordination to Dutch government organizations, essential service providers, and businesses. It operates collaborative platforms (Cyclotron, Nationaal Detectie Netwerk, MijnNCSC, Anti-Phishing Shield) and provides free interactive assessment tools (CyberVeilig Check, Basisscan Cyberweerbaarheid, Risicoklassenindeling Digitale Veiligheid, Security Check Procesautomatisering) supporting NIS2/Cyberbeveiligingswet compliance.
Is Nationaal Cyber Security Centrum a public or private company?
Nationaal Cyber Security Centrum is a private company. It is classified as state government owned and is currently operating.
When was Nationaal Cyber Security Centrum founded?
Nationaal Cyber Security Centrum was founded in 2018. It employs 11 to 50 people.
Where is Nationaal Cyber Security Centrum based?
Nationaal Cyber Security Centrum is headquartered in The Hague, Netherlands, in the Europe region.
How does Nationaal Cyber Security Centrum make money?
One revenue line is on record: government Funding.
Who are Nationaal Cyber Security Centrum's main competitors?
Direct peers on record are ACSC (Australian Cyber Security Centre), BSI (Bundesamt für Sicherheit in der Informationstechnik), Canadian Centre for Cyber Security (Cyber Centre), NCSC NZ (National Cyber Security Centre, New Zealand), CCB (Centre for Cyber Security Belgium), CISA (Cybersecurity and Infrastructure Security Agency), NCSC CH (Nationales Cyber-Zentrum / BACS Switzerland), NCSC UK (National Cyber Security Centre) and ANSSI (Agence nationale de la sécurité des systèmes d'information). ENISA (European Union Agency for Cybersecurity) is listed as a broad incumbent.
Does Nationaal Cyber Security Centrum have an API?
No public API is recorded for Nationaal Cyber Security Centrum.
What industry is Nationaal Cyber Security Centrum in?
Nationaal Cyber Security Centrum's product category is National Cybersecurity Services. Its primary akta.pro industry code is BPAIAHAE, Cyber Defense & Information Security (National Security), with a secondary code of HDADAHAE, Continuous Controls Monitoring (CCM). Its NAICS code is 928110.