At a glance: Only 39 percent of enterprises have fulfilled their NIS2 notification obligation by July 31, with the majority remaining behind on late registrations.
According to a survey, only 39 percent of covered enterprises have fulfilled their NIS2 notification obligation by the registration deadline of July 31. This points to significant delays in the implementation of the EU Directive.
The NIS2 Directive requires enterprises in critical infrastructure and the digital sector to register their cybersecurity measures with national authorities. The July 31 deadline was a central compliance date for this requirement in the European Union.
With a compliance rate of 39 percent of registered enterprises, the majority of affected organizations fall short of expected levels. This presents regulators and the affected sectors with significant challenges: enterprises must catch up on their registration, while authorities must prepare follow-up inspections and, where appropriate, enforcement proceedings.
The rate indicates implementation barriers that may involve both technical complexity and a lack of resources or legal certainty in interpreting the requirements. For CISOs, this continues to mean pressure on the compliance roadmap and potential escalation due to lapses in relation to management.
Source: news.google.com · Published July 14, 2026
Lumi AI News — AI-assisted curation pursuant to Article 50 EU AI Act. Paraphrase and classification via Lumi News Pipeline v1.7.3.