Cybersecurity according to the NIS2 directive

Since October 17, 2024, the "Network and Information Security 2" directive, better known as the NIS2 law, has been in effect in Belgium.

More information

It’s time to get informed and take the necessary steps to align your cybersecurity with this new NIS2 law.

What is NIS2?

NIS2 is a European regulation designed to enhance cybersecurity within companies across the European Union. It is a revision and extension of the previous NIS directive, targeting a wider range of organizations and sectors with strengthened requirements and responsibilities.

What does the NIS2 directive entail?

NIS2 requires companies to strengthen their cybersecurity. It targets critical sectors such as energy, transport, and healthcare, as well as essential service providers.

Why is NIS2 important?

The NIS2 directive imposes stricter cybersecurity requirements to minimize cyberattack risks and enhance the resilience of networks and information systems.

Do I need to comply with NIS2?

NIS2 applies to specific sectors deemed essential or important. Organizations operating in these sectors must comply with NIS2 requirements to ensure their cybersecurity:

I am not part of the affected sectors. Do I need to comply with NIS2?

If your organization is not part of the sectors covered by NIS2, you are not legally required to comply with the directive. However, it is important to consider your clients or partners. Many of them may be subject to NIS2, meaning they might expect you to adhere to certain security standards.

Supply chain security: This is a key element of NIS2. Your clients may require your organization to take measures to reduce their risks.

Competitive advantage or disadvantage: Not complying with NIS2 could put you at a disadvantage compared to your competitors, as clients might prefer suppliers who meet this directive. Investing in cybersecurity and aligning with NIS2 can build trust and open new business opportunities.

What are the NIS2 obligations?

The NIS2 directive imposes a number of obligations on organizations.

Sanctions and fines

Non-compliance with the NIS2 directive can result in significant fines—up to 10 million euros, depending on the severity of the violation and the size of your company. It is therefore crucial to take cybersecurity seriously and comply in time!

How to prepare for NIS2?

NIS2 Advisory

Looking for guidance to align your cybersecurity with NIS2?

Contact us