Regulatory compliance continues to grow globally, with one of the latest (and largest) being the NIS2 Directive addressing cybersecurity across the EU. This is the first in a series of blogs from Forcepoint looking at this important directive and how organizations can be prepared to be compliant.
NIS1 was the first EU-wide cybersecurity legislation, going live in 2016. It was designed to boost overall levels of cybersecurity in the EU but it had a number of shortcomings that made it challenging to enforce and confusing for the targeted organizations to comply. The outcome was member states had little incentive to penalize organizations that violated NIS1.
On 16th January 2023, NIS2 was introduced to address these shortcomings. It has a broader scope – expanded to more entities and introduces more stringent security requirements. NIS2 details have already been released and “came into force in 2023” but the key deadline is October 2024 where national legislatures in the EU will need to have enforceable laws in place. Key changes from NIS1 include:
NIS2 will apply to any organization with more than 50 employees whose annual turnover exceeds €10 million, and any organization previously included in the original NIS Directive.
Forcepoint has been a leader in empowering organizations to secure their data and key to this is enabling companies to remain compliant with regulations globally. We have a range of products that specifically address the stringent security requirements of NIS2, specifically addressing risk management and incident detection and response.
This post is the beginning of a blog series we will be publishing weekly to address specifically how Forcepoint equips organizations to comply with the key areas outlined in NIS2. Watch for the next post that will tackle the topic of risk management.
Kevin serves as Senior Product Marketing Manager for Forcepoint’s Data Security products and solutions. He has over 20 years experience helping enterprises with their data and security initiatives with leadership positions at Dell EMC and IBM.
Forcepoint is the leading user and data protection cybersecurity company, entrusted to safeguard organizations while driving digital transformation and growth. Our solutions adapt in real-time to how people interact with data, providing secure access while enabling employees to create value.