The national implementation law (NISG) 2026 anchors the EU NIS2 Directive in Austrian law and expands cybersecurity and reporting requirements for critical infrastructures and important entities.
CISA has cataloged a critical, actively exploited RCE vulnerability in PTC Windchill/FlexPLM, triggering immediate patching and forensic action for CISOs in critical infrastructure organizations.
First NIS2 compliance reviews conclude on 30 June, revealing widespread implementation gaps among critical infrastructure providers and large enterprises.
Zero-Trust in OT succeeds better through concrete functional principles than abstract architecture models, and through focused measures at IT-OT interfaces such as jump hosts and remote access paths.
Following a rail radio outage, security politicians are calling for a statutory ban on Chinese components in critical infrastructure to prevent sabotage and espionage.
Employees unknowingly enter sensitive data into unauthorized AI services; traditional DLP solutions fail to capture these new data paths and require context-based risk analysis instead of blanket blocks.
With the expiration of the NIS2 implementation deadline, penalty provisions enter into force that impose multi-million euro fines for non-compliant companies.