Skip to content

NIS2 Implementation: Only 34 Percent of Companies Meet Requirements

Bottom line: Two-thirds of companies fail to meet NIS2 requirements and risk fines and regulatory sanctions.

A current survey shows that only 34 percent of affected companies comply with the requirements of the NIS2 Directive. The majority of organizations are lagging behind in the necessary transformation of security management.

According to available data, currently only 34 percent of the surveyed firms are on track with implementing the new NIS2 requirements. The Directive requires significant organizational and technical changes in the management of security risks and incident response.

For CISOs, this figure represents considerable risk: companies that fail to meet requirements face fines and regulatory consequences. At the same time, the figure of 66 percent non-compliant organizations signals that compliance deficits are widespread in the industry — both in resource allocation and in the strategic prioritization of security.

Typical obstacles include missing governance structures, insufficient budgets for technical measures, and poor coordination between IT and business units. CISOs should conduct a gap analysis, establish remediation roadmaps with clear milestones, and keep senior management continuously informed about compliance status and risks in order to create pressure and resources for implementation.


Source: news.google.com · Published 29 July 2026
Lumi AI News — AI-assisted curation pursuant to Article 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.

Share on: