The NIS2 Directive covers approximately 30,000 additional companies that must align their cybersecurity governance and technical controls with EU-wide standards.
NIS2 requires enterprises to implement structured cybersecurity risk management and governance; identifying the scope of application is the first step.
The Cyber Resilience Act requires documented and timely update processes for IoT devices, forcing CISOs to implement systematic changes in software maintenance.
Europe’s new tech sovereignty package with four-tier certification for government IT remains vague in practical enforcement against US giants and depoliticizes the core problem of strategic dependency.
The European Parliament replaces Google with the French search engine Qwant as its default, signalling implementation of the EU’s strategy for technological sovereignty and data protection.
The Cyber Resilience Act establishes security requirements for connected devices and requires adjustments in development, operations, and tool selection.
The EU Commission is planning regulations for public procurement that favor European cloud providers and wants to massively expand semiconductor production in Europe.