RegulationsNIS2 Directive
NIS2 Directive
Cybersecurity risk management and incident reporting for essential and important entities.
Risk management
- Policies on asset inventory, access control, business continuity, and supply chain security.
- Management body accountability for approving and reviewing cyber measures.
Incident reporting
- Early warning within 24 hours where feasible, updates at 72 hours, and final report within one month.
- Cooperation with national CSIRTs and competent authorities.
What EUCRAB helps you evidence
- NIS2-aligned risk register and treatment plan with owners and review dates.
- Playbooks for detection, escalation, and regulator notification.
EUCRAB provides operational tooling and structured assessments. National transposition, sector-specific rules, and supervisory guidance may differ - confirm with qualified counsel where needed.
Open pillar checklist in workspaceRequires an active EUCRAB session (email gate). You will be redirected if not signed in.