The Netherlands establishes an explicit liability regime for cybersecurity under NIS2 from August 2024, affecting 8,000 critical infrastructure operators.
The German administration is introducing centrally governed cybersecurity standards, including multi-factor authentication, regular vulnerability assessments, and enhanced monitoring of network activity.
Two-thirds of companies are currently failing to achieve NIS2 compliance and must carry out extensive measures within the remaining time to avoid fines.
The Federal Interior Ministry standardizes Cyberdome through requirements for “Cyberdome-ready” systems to secure real-time information exchange in national security monitoring.
The national implementation law (NISG) 2026 anchors the EU NIS2 Directive in Austrian law and expands cybersecurity and reporting requirements for critical infrastructures and important entities.