NIS2 obligates thousands of new companies to cybersecurity compliance; an ISMS structures implementation through risk-based, continuous information security management.
NIS2 requires executive officers to assume direct responsibility for cybersecurity governance and incident reporting, with violations potentially resulting in personal liability.
Official NIS2 compliance audits begin on June 30, 2024, and will verify the actual implementation of cybersecurity measures at critical infrastructures and important digital services.