In a nutshell: Austria’s 29,500 affected companies must meet NIS2 requirements by 31 July, or face penalties and regulatory inspections.
Austria is implementing the National Security Strategy (NIS2): around 29,500 companies must have fulfilled their compliance requirements by 31 July. After this deadline, regulatory consequences will follow.
The deadline for implementing the NIS2 Directive for Austrian companies ends on 31 July. A total of 29,500 businesses are affected and must have aligned their cybersecurity and information security according to the Directive’s requirements.
NIS2 sets out concrete requirements for affected companies: documentation of cybersecurity measures, regular security assessments, incident reporting obligations, and the designation of points of contact for security matters. The aim of the Directive is to increase the level of cybersecurity protection in critical infrastructures and economically important sectors.
Companies that fail to meet the deadline must expect fines and regulatory measures. After 31 July, Austria’s regulatory authorities will begin compliance inspections.
Source: news.google.com · Published 20 July 2026
Lumi AI News — AI-assisted curation pursuant to Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.