D-Mark Criteria

Get your cybersecurity in order and earn the D-certification. We offer everything from comprehensive training programs to ongoing consulting on an hourly basis.
Purchase a preliminary analysis starting at 5,000 DKK
Illustration of the key elements of the D-label

The D-Mark certifies that your organization takes a structured approach to IT security and data protection. This builds trust among customers, business partners, and suppliers, and can be an advantage when it comes to customer requirements, supplier requirements, and tenders.

We help you gain a clear understanding of the requirements and prioritize the relevant measures. This way, your organization will not only achieve D-certification but also establish a stronger foundation for protecting data, reducing risks, and meeting increasing cybersecurity requirements.

The D-Badge Program: From Start to Finish

Step 1

Preliminary Analysis

The preliminary analysis provides a clear overview of your current level of IT security and the areas that need to be strengthened in order to obtain the D-mark. The process begins with an assessment using the D-mark tool, which serves as the basis for further work.

Based on this assessment, we conduct an analysis of the company’s IT security, processes, and workflows. The result is specific recommendations for the measures that should be prioritized to strengthen security and work toward achieving the D-mark.

Illustration of the key components of a preliminary analysis regarding the D-label

Step 2

Setup

We set up a complete Microsoft 365 configuration, focusing on the security settings that support the D-mark and strengthen the company’s IT security.

The setup includes, among other things, access control, multi-factor authentication, and other relevant security measures, providing you with a strong technical foundation and a better basis for protecting your company’s data and systems.

Illustration of the key components of the D-mark

Step 3

Creation of documentation   

We prepare the necessary documentation so that the company can take a structured approach to IT security and document its efforts to customers, business partners, and the D-Mark.

The documentation includes, among other things, the IT security policy, the contingency plan, and relevant guidelines and procedures for Microsoft 365, e-conomic, Danløn, NaviDoc, and other cloud services used in the company’s day-to-day operations.

Illustration of Management's Role and Responsibilities Regarding the Organization's Cybersecurity

Step 4

Supervision and Control 

We’ll help you prepare for the inspection and ensure that all the necessary documentation is in order. At the same time, we’ll assist with planning and coordination so that your company is well-prepared for the review.

Following approval, we help establish an annual cycle for maintaining documentation and security activities. This ensures that the company’s IT security is continuously monitored, documented, and further developed so that the D-mark can be maintained over time.

Illustration of an annual cycle in relation to the D-mark

Step 5

External Audit 

Prior to certification, the organization’s ISMS (“information security management system”) is reviewed by an external auditor. The purpose is to ensure that the company’s processes, documentation, and security measures meet the requirements of ISO 27001.

We ensure that the entire organization is equipped to handle the task and able to consistently use and update the documentation so that it becomes a natural and integral part of the organization’s day-to-day operations.

data-lazy-src="https://nespone.com/stg_20f24/wp-content/themes/bricks/assets/images/placeholder-image-800x600.jpg"

Get help with the D-badge

Would you like to strengthen your company's IT security and earn D-certification?

We’ll help you get a clear picture of the requirements and implement a concrete plan tailored to your organization, resources, and budget.

Illustration of a wheel of the year

Consulting

Practical and effective—on the organization’s terms 

Duration and Scope

Can be adapted to the size and maturity of the business

Contents

Survey of Current Security and Data Practices

IT Security Policies and Procedures

Risk Assessment and Organizational Security Measures

Governance and Management Alignment

Prepares documentation for the company

 Awareness training and workshops

Internal and External Compliance Checks

Expected output

Improved Management of Vulnerabilities and Incidents

Strengthened internal safety culture

Increased trust among customers and business partners

Business Resilience 

Start with a no-obligation consultation with one of our experts, or purchase a preliminary analysis starting at 5,000 DKK

The First Step Toward the D Badge

Send us an email to get a free 15-minute overview of the D-Mark from one of our cybersecurity experts. 

By submitting your email address, you agree to our privacy policy and consent to being contacted by nesp.ONE.

View upcoming courses and webinars

Learn how your company can strengthen cybersecurity and achieve compliance with standards such as ISO 27001, NIS2, and CRA.

NIS2 for management 

Copenhagen / August 26, 26

ISO 27001: Certificate Course

Copenhagen / September 2–3, 2026

NIS 2 in Practice

Odense / September 10–11, 2026

ISO 27001: Certificate Course

Copenhagen / Oct. 7–8, 2025