At a glance: 29,500 German companies must register for NIS2 by 31 July 2024 to avoid sanctions and demonstrate compliance with the new cybersecurity directive.
Approximately 29,500 companies in Germany must meet a registration deadline under the NIS2 Directive by 31 July. For operators of critical infrastructure and certain digital service providers, this is a mandatory compliance requirement.
The National Authority for Cybersecurity and Critical Infrastructure (NKBI) has established a registration obligation for companies falling under the Network and Information Security Directive (NIS2). Of the approximately 29,500 affected companies, those that are operators of critical infrastructure or fall under the expanded regulation for digital service providers must disclose their identity and contact details by 31 July.
Registration serves as the foundation for continuous monitoring and oversight by supervisory authorities. CISOs must ensure that their organisation is registered on time and that all required information is accurate and complete. Late or inaccurate registrations can result in sanctions.
In parallel with registration, companies should already review and, if necessary, adjust their cybersecurity governance and technical safeguards in accordance with NIS2. The directive prescribes concrete requirements for network security, security measures in the supply chain, and the reporting of security incidents. Early asset inventory and risk analysis reduce the risk of compliance violations in subsequent audit cycles.
Source: news.google.com · Published 15 July 2026
Lumi AI News — AI-assisted curation pursuant to Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.