GMB Computers
News

Articol GMB

Over 10,000 Romanian Companies Must Comply with NIS2 Cybersecurity Requirements

An estimated 10,000 or more Romanian companies fall within the scope of the NIS2 Directive — facing mandatory cybersecurity risk management, incident reporting, and executive accountability requirements.

Romania’s transposition of the NIS2 Directive significantly expands the number of organizations subject to mandatory cybersecurity obligations. Estimates suggest that over 10,000 Romanian companies across 18 critical sectors — including energy, healthcare, water, transport, digital infrastructure, food production, and public administration — must now comply with the Directive’s requirements.

Affected organizations must implement formal risk management frameworks, adopt multi-factor authentication, encrypt sensitive communications, conduct regular security audits, and report significant cybersecurity incidents to the national authority (DNSC) within 24 hours. Executive management is personally accountable for compliance.

GMB Computers offers a structured NIS2 compliance program including gap analysis, policy development, technical controls implementation, and staff training. Contact us now to begin your compliance journey before regulatory deadlines.