Rules requiring EU countries to meet stricter supervisory and enforcement measures and harmonise their sanctions were approved by MEPs on Thursday. The legislation, already agreed between MEPs and the Council in May, will set tighter cybersecurity obligations for risk management, reporting obligations and information sharing.
The requirements cover incident response, supply chain security, encryption and vulnerability disclosure, among other provisions. More entities and sectors will have to take measures to protect themselves. “Essential sectors” such as the energy, transport, banking, health, digital infrastructure, public administration and space sectors will be covered by the new security provisions.
Read more…
Source: European Parliament
Related:
- Europe moves closer to stricter cybersecurity standards, reporting regs
May 17, 2022
Europe has moved closer toward new cybersecurity standards and reporting rules following a provisional network and information systems agreement dubbed NIS2 by the European Council and Parliament. Once approved, NIS2 will replace the current Directive on Security of Network and Information Systems, aka NIS, which was adopted in 2016. The new directive sets more stringent requirements ...
- EU to unveil landmark law to force Big Tech to police illegal content
April 21, 2022
The EU is poised to unveil a landmark law on Friday that will force Big Tech to police their platforms more aggressively over illegal content, marking the latest move by regulators to curb the power of large technology groups. The controversial practice of targeting users online based on their religion, gender or sexual preferences will be ...
- Coordinated Vulnerability Disclosure policies in the EU
April 13, 2022
Vulnerability disclosure has become the focus of attention of cybersecurity experts engaged in strengthening the cybersecurity resilience of the European Union. The valid source of concern comes from the cybersecurity threats looming behind vulnerabilities, as demonstrated by the impact of the Log4Shell vulnerability. Security researchers and ethical hackers constantly scrutinise ICT systems – both open source ...
- ENISA: Incidents Handling and Cybercrime Investigations
March 8, 2022
The European Union Agency for Cybersecurity (ENISA) explores how CSIRTs, law enforcement agencies and the judiciary cooperate and how they can train together to better tackle cyber incidents and respond to cybercrime. The report published today facilitates the cooperation between CSIRTs and law enforcement agencies (LEAs) and looks into their interaction with the judiciary (judges and ...
- Telegram bans Russian state media after pressure from Europe
March 4, 2022
Facebook, Twitter, YouTube and TikTok all scrubbed Russia’s RT — and its channels in English, Spanish, French and German — off their platforms after the European Union imposed sanctions on the Kremlin-backed media network. But these organizations, which are pushing Russian falsehoods and talking points about the war in Ukraine, are alive and kicking on Telegram, ...
- Building cyber secure Railway Infrastructure
February 28, 2022
The European Union Agency for Cybersecurity (ENISA) delivers a joint report with the European Rail Information Sharing and Analysis Center (ISAC) to support the sectorial implementation of the NIS Directive. The report released today is designed to give guidance on building cybersecurity zones and conduits for a railway system. The approach taken is based on the recently ...

