EU Network and Information Security (NIS) Directive: Parliament adopts new law to strengthen EU-wide resilience


Rules requiring EU countries to meet stricter supervisory and enforcement measures and harmonise their sanctions were approved by MEPs on Thursday. The legislation, already agreed between MEPs and the Council in May, will set tighter cybersecurity obligations for risk management, reporting obligations and information sharing.

The requirements cover incident response, supply chain security, encryption and vulnerability disclosure, among other provisions. More entities and sectors will have to take measures to protect themselves. “Essential sectors” such as the energy, transport, banking, health, digital infrastructure, public administration and space sectors will be covered by the new security provisions.

Read more…
Source: European Parliament


Sign up for our Newsletter


Related:

  • Ukraine: EU deploys cyber rapid-response team

    February 22, 2022

    A cyber rapid-response team (CRRT) is being deployed across Europe, after a call for help from Ukraine. The newly formed team of eight to 12 experts, from Lithuania, Croatia, Poland, Estonia, Romania, and the Netherlands, has committed to help defend Ukraine from cyber-attacks – remotely and on site in the country. An official warned attacks were likely. Read ...

  • Poland: Ruling party leader admits country has Pegasus hacking software

    January 7, 2022

    Jarosław Kaczyński, chairman of Poland’s ruling Law and Justice (PiS) party and the country’s de facto leader, confirmed that the government has the Pegasus hacking software system but denied it had been used against opposition politicians in the 2019 parliamentary election campaign. “It would be bad if the Polish services did not have this type of ...

  • Inside the criminal groups using disinformation to sell fake COVID passes

    December 8, 2021

    “For all those who do not wish to be vaccinated, here is an alternative.” This is how fake or fraudulent EU COVID certificates are being advertised online by criminal groups. Sky News has found evidence of these passes, which could be used as proof of vaccination to enter the UK, being advertised in at least nine European ...

  • Railway Cybersecurity – Good Practices in Cyber Risk Management

    November 27, 2021

    This report aims to be a reference point for current good practices for cyber risk management approaches that are applicable to the railway sector. It offers a guide for railway undertakings and infrastructure managers to select, combine or adjust cyber risk management methods to the needs of their organisation. It builds upon the 2020 ENISA ...

  • Step Towards Foresight on Emerging Cybersecurity Challenges

    November 22, 2021

    ENISA kicks off a new area of work in line with its Strategy objective “Foresight on Emerging and Future Cybersecurity Challenges”. As a key element of ENISA’s strategy, foresight increases knowledge and understanding of emerging and future challenges, thus providing a path to find solutions that address those challenges and bolster EU resilience to cybersecurity threats. What ...

  • Cyprus: Surveillance firm pays $1 million fine after ‘spy van’ scandal

    November 13, 2021

    The Office of the Commissioner for Personal Data Protection in Cyprus has collected a $1 million fine from intelligence company WiSpear for gathering mobile data from various individuals arriving at the airport in Larnaca. While this is just an administrative fine under the European Union’s General Data Protection Regulation (GDPR), it is related to a scandal ...