🔒 "In vista del 2026, è tempo per le aziende di prepararsi per NIS2. La sicurezza online non è più un'opzione, ma un obbligo. #cybersecurity #NIS2"
🔗 https://www.tomshw.it/business/nis2-cosa-devono-fare-le-aziende-entro-il-1-gennaio-2026
🔒 "In vista del 2026, è tempo per le aziende di prepararsi per NIS2. La sicurezza online non è più un'opzione, ma un obbligo. #cybersecurity #NIS2"
🔗 https://www.tomshw.it/business/nis2-cosa-devono-fare-le-aziende-entro-il-1-gennaio-2026
GRC rarely feels like “governance, risk, and compliance” and more like alphabet soup with lawyers attached.
I wrote up how I approach GRC as an Associate CCISO: one risk-based program mapped to HIPAA, PCI DSS, NIST CSF, FTC Safeguards, and NIS2 instead of five separate nightmares.
#GRC #CyberSecurity #InfoSec #Compliance #HIPAA #PCIDSS #NISTCSF #NIS2
While offensive security automation gives you data, accreditation gives you a good night’s sleep. 😴
Especially with #NIS2 reshaping the landscape.
Update: Pentest-Tools.com has been officially re-accredited by the DNSC (Romanian National Cyber Security Directorate) as a cybersecurity auditor through 2028.
We build the tech, and we’re certified to audit the results. 🛡️
Security isn’t about the PDF. It’s about the trust that goes into it.
NIS-2-Richtlinie
Seit dem 5. Dezember 2025 ist die NIS-2-Richtlinie in Deutschland in Kraft. Sie erweitert den Kreis der verpflichteten Unternehmen massiv und verschärft Registrierungs-, Melde- und Sicherheitsanforderungen.
Ich habe dazu einen kompakten Artikel verfasst, der erklärt:
➡️ wer jetzt betroffen ist,
➡️ welche Pflichten sofort gelten,
➡️ welche Fristen einzuhalten sind.
Für alle, die prüfen müssen, ob sie unter NIS-2 fallen: Ein schneller Blick lohnt sich.
🔗 https://www.secunis.de/nis-2/