NIS2 mandates organisations in critical infrastructure and essential services to implement enhanced cybersecurity measures and establishes a binding compliance framework with enforcement mechanisms.
The NIS2 Directive mandates minimum cybersecurity standards for European organizations in critical sectors and imposes significant penalties for non-compliance.
AWS and Azure could be classified as gatekeepers under the DMA, entailing interoperability obligations and maximum penalties of up to 20 percent of global revenue.
30,000 German enterprises must align their IT security governance with EU-wide NIS2 requirements, which standardizes incident reporting, risk management, and supply chain security.
The EU Parliament anchors the ban on synthetic nude image generators in the AI Act, thereby clarifying the limits on the misuse potential of AI systems.
Germany’s NIS2 law becomes mandatory in December and obligates approximately 29,500 companies to implement standardized information security management, risk governance, and incident reporting.
The EU launches infringement proceedings against France and Spain for failing to transpose the NIS2 Directive into national law after the transposition deadline expired.
The NIS2 Directive significantly expands the scope of regulated companies and introduces new requirements for cybersecurity governance and risk management systems.