Die NIS2-Umsetzung kommt näher!

Ein neuer Referentenentwurf zum NIS2-Umsetzungsgesetz macht Schlag­zeilen. Offensichtlich geht es in dem Gesetzgebungsprozess nun wieder weiter. Auch wenn die Änderungen zum Beispiel im Risiko­manage­ment-Bereich gering sind, sollte dies ein klarer Weckruf sein: Die Umsetzung kommt, Abwarten ist für Unternehmen der falsche Weg. Wir geben einen Überblick.

Security-Insider
Consult the European Vulnerability Database to enhance your digital security! | ENISA

ENISA is the EU agency dedicated to enhancing cybersecurity in Europe. They offer guidance, tools, and resources to safeguard citizens and businesses from cyber threats.

In case you haven't noticed #nis2directive is in effect in Finland now:

"Finnish Parliament has passed the government proposal for a national #Cybersecurity Act to implement the EU Cybersecurity Directive (NIS 2 Directive). As regards public administration, the relevant requirements included in the Directive are laid down in the Act on Information Management in Public Administration."

Interestingly this also increases the duties and responsibilities of The Finnish Transport and Communications Agency Traficom:

"The Cybersecurity Act also entails new supervisory duties for Traficom compared to the old NIS Directive. In future, Traficom will be the competent authority supervising cybersecurity issues also in the following sectors: postal and courier services, space, public administration, managed service providers, managed security service providers, research, and the manufacture of vehicles and other transport equipment."

ref: https://traficom.fi/en/news/cybersecurity-act-passed-parliament-obligations-under-nis-2-directive-enter-force-8-april-2025

Cybersecurity Act passed by Parliament, obligations under the NIS 2 Directive enter into force 8 April 2025 | Traficom

The Cybersecurity Act entails new risk management and reporting obligations for many sectors. One of the first steps is registering for a list of entities.

Traficom

❓Interested in a NIS2 Readiness Assessment❓

EU has released NIS2 to all countries within the European Union. In 2024 NIS will be adopted to local law enforcement and become relevant for a large amount of companies. Check Point can help you preparing your company for NIS2 and assist you in improving your security standards and procedures.

A team of senior Check Point consultants will analyze your business for compliance with the NIS2 directive. The assessment is typically done on site but can also be performed remotely on request. We will summarize the findings in a report and provide a recommended action plan to increase compliance with the NIS2 directive.

Benefits:

✅ Determine what areas of your cyber landscape are impacted
✅ Get an overview of the necessary technical requirements
✅ Present the processes needed for full compliance
✅ Risk management
✅ Asset management
✅ Business continuity management
✅ Vulnerability management
✅ Supply chain management
✅ Incident response procedures
✅ Current security architecture and controls review
✅ Obtain details to help train your security team

https://www.checkpoint.com/services/infinity-global/nis2-readiness-assessment/

#NIS2 #nis2directive #riskassessment #vulnerabilitymanagement #supplychain #incidentresponse

NIS2 Readiness Assessment - Check Point Software

Check Point Software

🎺 NIS2 & Data Governance - The Dynamic Duo You Need To Put Some Music In Your Cybersecurity! Read all about the link between #NIS2 and #DataGovernance, and how they work together to enhance #Cybersecurity and #DataManagement practices. 👉https://www.datalumen.eu/nis2_datagovernance_duo_rock_cybersecurity/

#Compliance #Regulation #GRC #DataSecurity #DataStrategy #CybersecurityStrategy #NIS2Directive #NetworkandInformationSecurityDirective2 #Directive2022_2555

NIS2 & DATA GOVERNANCE: THE DYNAMIC DUO TO PUT SOME MUSIC IN YOUR CYBERSECURITY

Explore the link between NIS2 and data governance, how they work together to enhance cybersecurity and data management practices.

Datalumen

De Rijksinspectie Digital Infrastructuur heeft een tool gepubliceerd waarmee organisaties kunnen beoordelen of ze onder het toepassingsbereik van NIS2 zullen vallen. Nuttig werk, gezien de vrij grote uitbreiding van het toepassingsgebied van NIS1 naar NIS2! Ben benieuwd of het alle gevallen dekt/kan dekken.

https://regelhulpenvoorbedrijven.nl/NIS-2-NL/

#NIS2 #nis2directive

NIS 2 Zelfevaluatie NL

Learn how Article 28 of the #NIS2 directive is playing a crucial role in the future of #DNS security. Thomas Rickert explains how this directive is paving the way for the #CyberSecurity industry: https://circleid.com/posts/20231221-article-28-of-the-nis2-directive-and-the-dns-industry
#DNSSecurity #NIS2Directive
Article 28 of the NIS2 Directive and the DNS Industry

At a workshop on the implications of Article 28 for the DNS industry organized by eco -- Association of the Internet Industry in October 2023, stakeholders from the DNS industry, the European Commission, national governments, and the ICANN community convened to discuss the challenges facing the DNS industry and to work together on avoiding fragmentation as much as possible.

Confused by the wave of new EU cybersecurity regulations impacting the telecom sector?

Can't distinguish the obligations of the NIS2 Directive from those of NIS1? The Cyber Resilience Act (CRA) from the Critical Entity Resilience Act (CER)? And whatever happened to the European Electronic Communications Code (EECC)?

Telecom operators in the EU have to comply with all of these but the NIS2 Directive is the central one now. It ushers in by far the most substantial changes in telco cybersecurity strategy and day to day cybersecurity operations. Read more in this new HardenStance White Paper:
https://www.hardenstance.com/wp-content/uploads/2023/11/Telco-Takeaways-from-the-NIS2-Directive-FINAL.pdf

#nis2directive #incidentreporting #vulnerabilitydisclosure #threatintelligence

Join me, @Nokia's Nils Ahrlich and Cyber Threat Alliance's President Michael Daniel as we discuss the opportunities and pitfalls for EU-based telcos and ISPs preparing to align with the new #NIS2Directive. 

Register for this HardenStance webinar on November 8th right here:
https://events.hardenstance.com/nis2directive-webinar/
Aligning with the NIS2 Directive – Cybersecurity Guidelines Panel Discussion | HardenStance Events

The deadline for implementation of the EU Network and Information Systems Security #NIS2 directive is set for 17 October 2024.

Which steps do #NRENs need to follow to implement it and minimise its impact on their organisations?

GÉANT worked with Stratix to produce a report to help NRENs and their stakeholders in the preparation and decision process 👉 https://connect.geant.org/2023/07/19/network-and-information-systems-security-nis2-recommendations-for-nrens

#CyberSecurity #NIS2directive #Security #EU #Network #Information #compliance #CyberSec #regulation #EUdirective

Network and Information Systems Security (NIS2): recommendations for NRENs | GÉANT CONNECT Online

The EU Network and Information Systems Security directive (NIS2), which earlier on this year replaced the NIS1 directive, broadens its scope to include more entities, it applies to a larger range of sectors and brings an additional series of obligations previously not covered by NIS1. The deadline for the implementation of this directive is 17

GÉANT CONNECT Online | The leading collaboration on e-infrastructure and services for research and education