Skip to content

NIS2 Directive

The NIS2 Directive (Network and Information Security Directive 2) expands the scope of EU cybersecurity regulation to cover more sectors and imposes stricter obligations on essential and important entities.

Key points

  • Broader scope than NIS1 — covers energy, transport, health, digital infrastructure, ICT service management, and more.
  • Risk management obligations including supply chain security.
  • Incident reporting within 24 hours (early warning) and 72 hours (full notification).
  • Significant fines for non-compliance.

How TrustSource helps