Definition
NIS2 is a European Union directive establishing Cybersecurity requirements for essential and important entities and strengthening Member States' digital resilience.
Human Explanation
It defines organisational duties concerning Risk Management, safeguards and security incident reporting.
Why it Matters
NIS2 raises the common level of Cybersecurity across the EU and increases organisational accountability for protected services.
Conceptual Boundary
NIS2 is neither a technical standard nor a list of specific Controls. It establishes legal requirements while leaving implementation choices to organisations and national law.
Practical Perspective
Meeting NIS2 requirements involves both management and specialists responsible for security and Business Continuity.