Status
Consultation
Explore our comprehensive guide on the NIS2 Directive, which aims to enhance cybersecurity across the European Union. This guide provides detailed information on the status of the directive in all EU countries, including national implementation acts, and registration and reporting portals. Please contact the authors to ensure compliance with the latest cybersecurity measures.
How to Use: You can use the tools below to create bespoke reports for the jurisdiction(s) and topic(s) covered. Click into single jurisdiction for one location or use the compare tool to compare multiple jurisdictions. Select the jurisdictions and topics of interest to create your unique report. You also have the option to print or download using the ellipsis button in the top right corner.
Consultation
Network and Information Systems Security Act 2026
The NISG 2026 will apply from October 1, 2026. It was passed by the National Council on December 12, 2025. Until then, the NISG 2018 will remain in force.
This will make binding security measures and reporting obligations for security incidents mandatory for around 4,000 medium-sized and larger companies and institutions from 18 specific socially relevant sectors. The security of the supply chain must also be guaranteed, so that service providers and suppliers of affected institutions are also contractually obliged to implement risk management measures.
Not yet available
Not yet available
Disclaimer: This guide contains summaries of general principles of law. It is not a substitute for specific legal advice and should not be relied upon in relation to the application of the law or subject matter covered.