In brief: Approximately 29,500 European companies must register under the NIS2 Directive by July 31st.
The EU’s NIS2 Directive obligates around 29,500 companies to complete registration by July 31st. CISOs must ensure their organizations meet this deadline to avoid legal consequences.
The EU NIS2 Directive (Network and Information Security) establishes a binding registration deadline for critical infrastructure and services. According to current information, approximately 29,500 companies are obligated to complete their registration by July 31st. This quota affects in particular operators of essential entities and critical infrastructure in the sectors of energy, transport, banking, healthcare and communications.
For CISOs, this entails concrete action steps: Registration requires documentation of security measures, designation of a contact person for security incidents, and evidence of compliance with minimum cybersecurity standards. The deadline allows no room for delay, as non-compliance will result in supervisory action and potential sanctions.
CISOs should immediately check whether their organization falls under NIS2 obligations, compile the required documentation, and initiate registration with the competent national authorities. Late registration can result in regulatory consequences and jeopardize operating licenses.
Source: news.google.com · Published July 15, 2026
Lumi AI News — AI-assisted curation pursuant to Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.