Blog

nsign achieves certification under Spain’s National Security Framework

Written by Marketing | Sep 14, 2026, 8:45:00 AM

ENS certification at the Medium category covers the information systems supporting nsign’s digital signage SaaS services, providing independently verified assurance for public and private sector customers

Barcelona, September 14, 2026.- nsign, the digital signage SaaS platform built around its core principle of “Simplify Complexity,” announces that it has obtained certification of compliance with the National Security Scheme (ENS) in the MEDIA category for the information systems that support its services. This certification provides customers and partners with independent verification of compliance with ENS security requirements in the evaluated systems.

The scope includes the systems used to provide consulting and development services, as well as the marketing, maintenance, and support of the nsign platform. This certification, issued following an audit conducted by a certification body accredited by the National Accreditation Entity (ENAC), reinforces the company’s ability to participate in public sector projects that require this level of compliance and provides private companies with a verifiable benchmark when evaluating the security of their digital signage provider.

Behind a screen displaying information in a public building, a retail store, or a corporate headquarters lies a platform that receives, manages, and distributes content. Protecting that environment helps prevent unauthorized publications, preserve information, and maintain service continuity. Digital signage security, therefore, affects both the operation of the network and the trust of the people who view its messages.

“Our clients entrust us with a communication channel that is part of their daily operations,” says Mónica Fernández, managing director of nsign. “They need to know who can access it, how the information is protected, and what capabilities are in place to maintain the service. The ENS certification provides them with independent verification of how we manage that responsibility.”

The ENS, regulated by Royal Decree 311/2022, establishes the requirements for protecting information systems in the Spanish public sector and among private providers within its scope of application. It covers five dimensions: availability, integrity, confidentiality, authenticity, and traceability. In practical terms, this involves keeping services accessible, preventing unauthorized alterations, restricting access to information, verifying identities, and maintaining records of actions taken.

The MEDIA category requires an audit to certify compliance. Furthermore, compliance must be maintained over time through periodic reviews and audits.

“Security was already an integral part of how we design, deploy, and operate our platform. The challenge posed by the ENS has been to demonstrate this with evidence that an external auditor can verify. We have to be able to explain what we protect, how we do it, and who is responsible, and keep that information up to date on a day-to-day basis,” explains Fernández.

One of the project’s highlights has been the use of in-house developments to automate part of the compliance work. The company has automated the extraction of inventories, the mapping of technological assets to their corresponding controls, the generation of documentation on applicable measures, and the tracking of indicators.

“We approached certification as an engineering challenge. On a SaaS platform, the inventory is constantly changing: by the time you finish updating a spreadsheet, it may already be out of date. That’s why we developed tools that allow us to regenerate the documentation as the platform evolves. The most valuable aspect is that this work continues to function after the audit,” adds Fernández.

The controls implemented in the certified systems apply both to services intended for public agencies and to those used by private clients within that same environment. Having organized evidence also makes it easier to respond to security questionnaires and vendor evaluations from large organizations.

With this certification, nsign reinforces a management model based on defined responsibilities, documented procedures, and continuous monitoring. For its clients and partners, this provides a proven foundation on which to assess the security of the systems that support their digital communication projects.