Articol GMB
NIS2 Directive – Strengthening Cybersecurity Across the EU
The NIS2 Directive (EU 2022/2555) represents a major upgrade to EU cybersecurity law — expanding the scope of regulated entities, tightening security requirements, and significantly increasing penalties for non-compliance.
The NIS2 Directive (Directive (EU) 2022/2555) is the European Union’s updated cybersecurity framework, replacing the original NIS Directive. It entered into force in January 2023 and required transposition by member states by October 2024. NIS2 substantially expands the range of sectors and entities subject to cybersecurity obligations, covering medium and large organizations in 18 critical sectors including energy, transport, health, digital infrastructure, and public administration.
Key requirements under NIS2 include risk management measures, supply chain security, incident reporting within 24 hours of discovery, business continuity planning, and executive accountability for cybersecurity governance. Penalties for non-compliance can reach €10 million or 2% of global annual turnover.
GMB Computers offers NIS2 readiness assessments, gap analysis, and remediation support. Our experts help you understand your obligations and build a compliant security program. Contact us today.
