Emtract Ingest
API
EN
EN
DE
Dashboard
Regulations
Crawlers
Attributes
Topics
Home
/
Regulations
/
NIS2
/
Edit measure
Edit measure
Title (English)
Title (German)
Obligations
Have the management body approve the cybersecurity risk-management measures and supervise their implementation
Train the management body and offer cybersecurity training to staff
Take appropriate and proportionate cybersecurity risk-management measures
Submit an early warning of a significant incident within 24 hours
Submit the incident notification within 72 hours
Submit the final report on the significant incident within one month
Inform the recipients of the services about significant incidents and significant cyber threats
Submit the entity's particulars to the competent authority and notify changes within two weeks
As a digital service provider, submit registration data and notify changes within three months
Collect and maintain domain name registration data and make it available to legitimate access seekers
Use certified ICT products, services and processes where national law so requires
Notify participation in cybersecurity information-sharing arrangements and cooperate with supervision
Designate a representative in the Union where the entity has no establishment there
Description (English)
The entity establishes a single process that records the moment of becoming aware of an incident, assesses significance against Article 23(3), and produces the early warning, the notification and the final report within their respective deadlines, including the intermediate and progress reports.
Description (German)
Die Einrichtung richtet einen einheitlichen Prozess ein, der den Zeitpunkt der Kenntnisnahme festhält, die Erheblichkeit anhand des Artikels 23 Absatz 3 bewertet und Frühwarnung, Meldung und Abschlussbericht jeweils fristgerecht erzeugt, einschließlich Zwischen- und Fortschrittsbericht.
Due date
Cancel
Delete this measure