The NIS2 Directive requires approximately 30,000 German businesses to implement uniform IT security standards and establishes binding notification requirements for security incidents.
From July 2025, companies must train all employees in cybersecurity and AI governance under NIS2 and the EU AI Act, with documented programs and penalty risks for non-compliance.
As hybrid work models and regulatory requirements make in-person training impractical, IT leaders are replacing traditional seminars with automated e-learning platforms.
71 percent of households see cyberattack risks in power grids; digital transformation is supported by the majority but must be coupled with high security and data protection standards.
A technical error in Bavarian judicial infrastructure caused a multi-hour outage of telephone and email services, underscoring the need for continuity plans for critical public services.
ACMP 6.10 addresses NIS2 Directive and EU Cyber Resilience Act requirements through automated data deletion, enhanced update management, and selective Intune integration.