Home / Information / NIS2 Directive is Europe’s Response to Cyber Threats

NIS2 Directive is Europe’s Response to Cyber Threats

Network and information systems have become the backbone of everyday life with rapid digital transformation and interconnectivity of society, including in cross-border exchanges. This development has led to an increase in cyber threats and thus new challenges that require tailored, coordinated, and innovative responses across all member states. Incidents are becoming more numerous, sophisticated, frequent, larger in scale and impact, and pose a significant threat to the functioning of network and information systems.

As a result, incidents can jeopardize the conduct of economic activities in the internal market, cause financial loss, undermine user trust, and inflict significant damage on the economy and society of the European Union. Preparedness and effectiveness in the field of cybersecurity are now more important than ever for the proper functioning of the internal market. Furthermore, cybersecurity is a crucial factor that enables numerous critical sectors to successfully adapt to digital transformation and fully leverage the economic, social, and sustainable benefits of digitization.

Higher Level of Security

NIS2 (Network and Information Systems 2) is the name for a series of European measures on cybersecurity. The directive aims to raise its level in the EU and applies to operators of essential services and providers of digital services. The EU Council has adopted legislative solutions for a high common level of cybersecurity across the Union to further enhance the resilience and incident response capacities of both the public and private sectors and the EU as a whole.

NIS2 replaces the first version of the NIS regulation, which was adopted in 2016 and came into force in all EU member states in 2018. The second version of the directive is a further step in strengthening the protection of critical information systems in the EU.

– The main goal of the NIS2 directive is to raise the level of cybersecurity across the EU and ensure that operators of essential services and providers of digital services meet minimum security requirements to avoid cyberattacks and protect critical information infrastructures. Critical information infrastructure includes key industries such as banking, finance, energy, telecommunications, transportation, and healthcare – explains Marko Jertec from Setcor.

How Setcor Can Help

Cloud services, as well as companies providing such services, fall under the category of digital service providers in terms of the NIS2 directive. As such, they must comply with certain security requirements to protect themselves from cyberattacks and ensure a high level of cybersecurity for clients using their services. The NIS2 directive stipulates that DSPs must adhere to a range of security measures to ensure the protection of critical information systems they use. This includes regular testing and risk assessments as well as the implementation of systems for detecting and responding to cyberattacks. Additionally, DSPs must implement the latest technical measures to ensure a high level of security and protection of client data.

Content created in collaboration with Setcor.

Tagged: