Nsign Secures Spanish ENS Medium Cybersecurity Certification
2026-09-17 · via invidis

Barcelona-based digital signage software provider Nsign has achieved Medium-level certification under Spain's National Security Framework, known as ENS. The certification matters to operators bidding on Spanish public-sector contracts, since government agencies and other public bodies can require suppliers to comply with ENS before awarding work.
The framework sets information security requirements for Spain's public sector and for private companies supplying it. Nsign's certification covers the information systems behind the consulting, development, sales, maintenance and support services tied to its digital signage platform. An external audit, carried out by a certification body accredited by ENAC, Spain's national accreditation organization, backs the claim.
ENS assesses five areas: availability, integrity, confidentiality, authenticity and traceability. Reaching Medium level required that external audit plus a commitment to ongoing reviews and periodic re-audits, according to Nsign.
What the certification covers
Nsign said the process involved documenting and independently demonstrating the security practices behind the design, deployment and operation of its SaaS platform. The company also built internal tools that automate asset inventories, map security controls to individual assets, generate compliance documentation and track performance indicators.
Mónica Fernández, managing director of Nsign, said the tooling was a response to how quickly a SaaS environment changes. "In a SaaS environment, the asset inventory changes constantly," she said. "By the time you finish updating a spreadsheet, it may already be out of date. We built tools that regenerate documentation as the platform evolves."
Why it matters for operators
For digital signage operators and integrators working with Spanish public administrations, an ENS-certified vendor removes one procurement hurdle: proof of compliance no longer has to be assembled case by case. Nsign says the certified controls apply to systems supporting both public- and private-sector customers, and that commercial customers and partners can use the certification as an independently assessed reference point when evaluating the security of its services.
The announcement does not specify which of Nsign's product lines or deployments fall outside the certified scope, nor does it name the certification body that conducted the audit. It also does not say how the Medium category compares with the framework's higher "High" tier, which is typically reserved for more sensitive government systems, or whether Nsign intends to pursue that level in future. For now, the certification gives Nsign a compliance credential that competitors bidding on Spanish public-sector signage contracts will need to match.
The announcement in full
Reproduced from invidis for reference. Digital Signage Magazine did not write the text below.
Barcelona-based digital signage software provider Nsign has achieved medium-level certification under Spain’s National Security Framework.
Nsign has achieved certification under Spain’s National Security Framework, known by its Spanish acronym ENS, at the Medium category.
The framework establishes information security requirements for Spain’s public sector and private suppliers working within its scope. Government agencies and other public bodies may require digital signage companies to comply with ENS when providing services.
The certification covers the information systems supporting the consulting, development, sales, maintenance and support services associated with Nsign’s digital signage platform. It follows an external audit conducted by a certification body accredited by ENAC, Spain’s national accreditation organization.
ENS evaluates five areas of information security: availability, integrity, confidentiality, authenticity and traceability. Medium-level certification requires an external audit, along with ongoing reviews and periodic audits to maintain compliance.
Nsign said the certification process included documenting and independently demonstrating the security practices used in the design, deployment and operation of its SaaS platform.
The company also developed tools that automate asset inventories, map security controls to individual assets, generate compliance documentation and track performance indicators, which helps address the frequent changes to assets within a cloud-based software environment.
“In a SaaS environment, the asset inventory changes constantly,” said Mónica Fernández, managing director of Nsign. “By the time you finish updating a spreadsheet, it may already be out of date. We built tools that regenerate documentation as the platform evolves.”
The certified controls apply to systems supporting services used by both public- and private-sector customers. According to Nsign, the certification also provides commercial customers and partners with an independently assessed basis for evaluating the security of its digital signage services.