肝化灶是什么意思| 胰岛素的作用是什么| 灰指甲是什么原因引起| 氨酶偏高是什么意思| 02年属什么的| 入职体检70元一般检查什么| 孤军奋战是什么意思| 梦见自己拉了好多屎是什么意思| 右眼跳是什么预兆| 肌酸激酶是什么| 清洁度lv是什么意思| 红细胞压积偏低是什么意思| des是什么意思| 肉碱是什么| 每天早上喝一杯蜂蜜水有什么好处| 唾液酸偏低意味什么| 睡觉开风扇有什么危害| 妖是什么意思| 小便不利是什么意思| 心脏长在什么位置| 免疫十一项都检查什么| 梦见假牙掉了是什么意思| 蜗牛的天敌是什么| 霍金得了什么病| 尿常规红细胞高是什么原因| 发烧怕冷是什么原因| 左心房扩大是什么意思| 什么专业就业前景好| 矬是什么意思| 港式按摩是什么意思| 吃炒黄豆有什么好处和坏处| 翰字五行属什么| 发际线高适合什么发型| 十二生肖分别是什么| 孕妇应该多吃什么水果| 肌酸激酶高吃什么药| 海是什么生肖| 甲状腺结节有什么症状| 一什么而什么的成语| 课程是什么| 手筋鼓起来是什么原因| 开塞露的成分是什么| 蟠桃为什么是扁的| 喜欢咬指甲是什么原因| 下午六点是什么时辰| 纤维增殖灶是什么意思| 灼热感是什么样的感觉| 专科和本科有什么区别| diff什么意思| 尿维生素c弱阳性是什么意思| 梦见性生活是什么意思| 国药准字是什么意思| 日久生情是什么意思| 男孩过生日送什么礼物好| 葡萄什么时候成熟| 无的放矢什么意思| 过敏性鼻炎吃什么食物好| 中指戴戒指代表什么| 历经是什么意思| 猪心炖什么适合孩子| 替班是什么意思| 麦芽糖是什么糖| 牙周炎用什么漱口水好| 霸王龙的后代是什么| 甲亢什么症状| 食指有痣代表什么意思| 中国第一个不平等条约是什么| 认知是什么意思| 60年属什么| 什么是斜率| 不凝血是什么原因| 142是什么意思| 白菜什么时候播种| 绒穿和羊穿有什么区别| 真露酒属于什么酒| 手机贴什么膜最好| 为什么没有西京| 什么叫体位性低血压| 喝红牛有什么好处和坏处| 嗜睡什么意思| 女生为什么会叫| 毛豆炒什么好吃| 什么球身上长毛| 吗啡是什么药| 农历十月份是什么星座| 狍子是什么动物| 射线是什么| 为什么身上一热就痒| 香薰是什么| qy是什么意思| 心脏舒张功能减低是什么意思| 尿潜血是什么原因| 什么是禅定| 乳房里面有硬块是什么原因| lauren是什么意思| 鼻子冒热气是什么原因| sars是什么病毒| 全自动洗衣机不排水是什么原因| 一岁宝宝口臭是什么原因引起的| 黄油可以做什么美食| 白血病是什么症状| 头孢有什么用| 唇周发黑是什么原因| 六月初六是什么节日| 什么的虫子| 什么叫烟雾病| 打强心针意味着什么| 禾末念什么| 钼靶是什么检查| 什么是丘疹| 望而生畏是什么意思| 夹生是什么意思| 三点水一个分读什么| 运字是什么结构| 女人吃芡实有什么好处| 危日是什么意思| 人授后吃什么容易着床| 冒菜和麻辣烫有什么区别| 过年为什么要吃饺子| 什么的哭声| 做什么菜适合放胡椒粉| dm是什么单位| 梦见很多蛇是什么征兆| canon是什么意思| 红萝卜什么时候种| thx是什么意思| 胎发什么时候剃最合适| 玻璃体混浊吃什么药好| 待我长发及腰时下一句是什么| 腿纹不对称有什么影响| 干燥症是什么症状| 女人为什么会患得患失| size是什么意思| 坎坷人生是什么生肖| 希爱力是什么药| 柠檬水有什么功效| 7月份什么星座| 鸡蛋价格为什么这么低| 蓝色妖姬适合送什么人| 发芽土豆含有什么毒素| 回南天什么意思| 做梦梦到掉牙齿是什么意思| 红薯是什么季节的| 低压低什么原因| 晚上六点是什么时辰| 孔雀女是什么意思| 眩晕是什么症状| 什么人每天靠运气赚钱| 健脾丸和归脾丸有什么区别| 男人吃韭菜有什么好处| 火拼是什么意思| 阴间到底是什么| 脑白质变性是什么病| 什么是什么意思| 睾酮低有什么影响| mv是什么意思| 俄罗斯信仰什么教| 心机血缺血吃什么药最好| 什么叫粳米| 12月23日是什么星座| 印度属于什么人种| 拔了尿管尿不出来有什么好办法| 铁树开花什么样| afp检查是什么意思| 指甲花学名叫什么| 知了有什么功效与作用| 生肖蛇五行属什么| 什么是丙肝| tki是什么意思| 为什么会得焦虑症| 睡觉背疼是什么原因| linen是什么面料成分| 哥哥的老婆叫什么| 台风是什么意思| 1997年出生属什么| 打胎后要注意什么| 伤口发炎吃什么消炎药| 骨刺挂什么科| 性质是什么| 过氧化氢是什么| 属马的女生和什么属相最配| 外阴裂口用什么药| 为什么老放屁| 三下乡是什么| 经辐照是什么意思| 来姨妈为什么是黑色的血| pioneer是什么牌子| 什么体质容易长肿瘤| 月柱金舆是什么意思| 蝴蝶什么意思| 古代四大发明是什么| 已所不欲勿施于人是什么意思| 牙齿为什么会痛| 什么是数字货币| 胆结石吃什么药可以化掉结石| 独家记忆是什么意思| 长期失眠挂什么科| 子宫肌瘤吃什么药| 肛门潮湿用什么药最好| 葛根有什么作用| 幽门螺旋杆菌感染有什么症状| 三点水一个条读什么| 秦始皇的名字叫什么| 鹅肉炖什么好吃又营养| 同房后出血什么原因| 1月10号是什么星座| 蹲不下去是什么原因| 为什么会长溃疡| 自卑是什么意思| chemical是什么意思| 一什么宝石| 男人右眉毛里有痣代表什么| 小腹胀是什么原因女性| 护理学是学什么的| 月经前腰疼是什么原因| 跑马什么意思| 玉米什么季节成熟| 颇有是什么意思| 脑干诱发电位检查是检查什么| 安全期什么时候| 大连属于什么省| 多吃菠萝有什么好处| 头孢不能和什么药一起吃| 尿道感染吃什么药好| 右手无名指戴戒指什么意思| 2月出生的是什么星座| 乙肝抗体阴性是什么意思| 防蓝光眼镜有什么好处| 奶奶的弟弟叫什么| 美国是什么洲| 怀孕两个星期有什么反应| 千米的字母是什么| 孩子生化了是什么意思| 浪荡闲游是什么生肖| 宝藏是什么意思| 胎盘早剥是什么意思| 治疗肝脏硬化要吃什么药好| 蛆长什么样| 梦寐以求是什么意思| 检查肝肾功能挂什么科| 呃逆什么意思| 鱼饼是什么做的| 晟怎么读音是什么| 桫椤是什么植物| 淋巴细胞绝对值偏高是什么意思| 十月份生日是什么星座| 青睐是什么意思| 得艾滋病有什么症状| 股骨头坏死什么症状| 肺部真菌感染用什么药最好| 核磁是什么| 玻璃水是干什么用的| 血小板减少吃什么药| 血压低吃什么水果| 未退化胸腺是什么意思| 痱子用什么药膏最有效| 便民门诊是做什么的| 茔是什么意思| 婴儿的腿为什么是弯弯的| 脉细是什么意思| 办身份证需要准备什么| ck什么意思| 夏至为什么吃馄饨| 月字五行属什么| 百度
Request demo

我国破解罕见病困局初现曙光

百度 从周一到3月24日,短短6天,全市共有15家楼盘集中领销许,房源多达3500套。

 

The Network and Information Security (NIS) directive has existed since 2016, when it was established as the first comprehensive cybersecurity directive of the European Union. Since its debut, there have been plenty of changes to the world of IT security — and NIS compliance needs to reflect the new challenges of today’s cybersecurity landscape.

To accommodate rapidly evolving cyber threats, the EU announced a NIS2 directive proposal in 2022. NIS2 aims to build on the requirements of NIS, broadening the scope of the original cybersecurity directive. By covering additional services, increasing reporting requirements, and strengthening other areas of cybersecurity, NIS2 is the EU’s answer to cybersecurity in post-COVID-19 Europe. 

Let’s take a closer look at the EU NIS2 directive — and how organizations can comply with the updated EU regulations.

Contents

What Is the NIS2?
Does the NIS2 Affect Your Organization?
Why Was NIS2 Developed?
What's Changing in NIS2?
Adoption Timeline for NIS2 And Next Steps
Meeting NIS 2.0 Head-On with Solutions from SSH Communications Security

What is the NIS2?

The NIS2 aims to make the cybersecurity of EU states stronger and more uniform, with requirements for compliance beginning in 2024. Under the new NIS2 directive proposal, a wide range of new organizations will now need to take steps to ensure compliance — expanding on the number of organizations that were subject to the requirements in the original NIS compliance directive of 2016.

According to the NIS2 directive proposal, any organizations that provide an “essential function” will require NIS2 compliance. This is because the primary objective of the NIS2 directive is to better protect organizations that are critical to economic and social development in the EU. By safeguarding themselves against cyber attacks, organizations (both businesses and non-profit institutions) can mitigate the risk of data compromise, which can threaten security, cost money, and damage trust.

Does the NIS2 Affect Your Organization?

Understanding the requirements of the NIS2 directive is important for any essential organization in the European Union — whether you’re a government organization or non-profit. Even certain businesses must comply with NIS2 guidelines. 

If your organization is a party to existing NIS compliance requirements, then it will continue to abide by NIS2 compliance. The original NIS directive established a significant range of organizations that were considered “essential”.  

These core industries are called ‘Sectors of high criticality’ and include: 

  • Banking (and other financial institutions)
  • Health and healthcare (including pharmaceuticals, medical devices and research)
  • Transportation 
    • Air
    • Rail
    • Water
    • Road
  • Energy 
    • Electricity
    • District heating and cooling
    • Oil
    • Gas
    • Hydrogen
  • Water suppliers 
    • Drinking water
    • Waste water
  • Digital service providers
    • Providers of online marketplaces
    • Providers of online search engines
    • Providers of social networking services platforms
  • ICT service management (business-to-business)
    • Managed service providers
    • Managed security service providers
  • Digital infrastructure 
    • Internet Exchange Point providers
    • DNS service providers, excluding operators of root name servers
    • TLD name registries
    • Cloud computing service providers
    • Data centre service providers
    • Content delivery network providers
    • Trust service providers
    • Providers of public electronic communications networks
    • Providers of publicly available electronic communications services
  • Public administration (central and regional)
  • Space

In addition to these original organizations, the NIS2 directive adds new organizations under its umbrella of “essential services”. These are called ‘other critical sectors’ and include, but are not limited to:

  • Production, processing and distribution of food
  • Manufacturers of critical products 
    • Manufacture of medical devices and in vitro diagnostic medical devices
    • Manufacture of computer, electronic and optical products
    • Manufacture of electrical equipment
    • Manufacture of machinery and equipment
    • Manufacture of motor vehicles, trailers and semi-trailers
    • Manufacture of transport equipment
    • pharmaceuticals and healthcare equipment)
  • Food manufacturers
  • Postal and courier services
  • Waste management
  • Public electronic communications providers
  • Social networking sites (and other data center services)
  • Research

Regardless of where in the EU an organization is located, the NIS2 directive requires security compliance to avoid retributive fees. It’s important to note that even some organizations outside the EU must comply with the NIS2 directive if they provide essential services for an EU member state. 

Whether your organization is already meeting the demands of the original NIS, or is brand new to NIS compliance, it’s important to understand how NIS2 works, why it was developed, and how to comply. 

New call-to-action


Why Was NIS2 Developed? 

Although NIS has been an effective tool in protecting EU critical infrastructure, several areas of weakness have become known in the past few years. For example, the COVID-19 pandemic has revealed that the EU needs to set stricter security standards in a work environment that is increasingly remote and digitalized. 

In short, the NIS2 was developed to reduce the risk of cyberattacks by addressing some of the gaps in the original NIS protocol. More specifically, the NIS2 was designed to:

  • Improve preparedness for collective cyber threats in the EU. When essential organizations operate with sufficient cybersecurity protections, everybody benefits. In an increasingly interconnected EU, NIS2 aims to increase joint situational awareness among essential organizations. With collective preparedness, organizations can quickly communicate with each other and identify threats before they can expand to other victims. Additionally, the NIS2 includes a joint response protocol in case of a major multi-faceted cyberattack. 
  • Increase resilience against cyberattacks. Resilience against cyber attacks is as important as defense. When a cyberattack occurs, the affected organization must resume essential services as quickly and securely as possible. The NIS2 directive outlines increased measures for resilience against cyberattacks, to minimize vulnerabilities and improve cyber defense. 
  • Establish streamlined resilience standards with stricter penalties. The third and final core objective of the NIS2 directive is to streamline resilience to cyberattacks. Regardless of the type of organization, every essential service must possess the same capabilities to defend itself against threats. The original NIS directive allowed for flexibility with many of its resilience requirements, which created vulnerabilities — especially in smaller businesses. The new NIS2 directive outlines stricter penalties and tougher security measures to reduce these inconsistencies. 

What’s Changing in NIS2? 

As the NIS2 becomes the new standard, it’s important for all essential organizations to understand what’s changing. Some of the most notable changes included in the NIS2 directive include: 

  • Expanding the range of essential services. With an expanded range of essential services, the NIS2 directive operates on a scale much larger than its predecessor. As organizations become increasingly interconnected, NIS2 essential services also operate across a wider range of industries. From food and water production to postal services and aerospace technology, previously underregulated organizations must now comply with NIS2. 
  • Essential entities are regularly assessed for their security posture, important entities most likely only after a significant threat or incident occurred
  • Staff headcount and financial ceilings determining enterprise categories. NIS2 appliest to medium-sized enterprises (SMEs) as well, in addition to those that are larger. A company is considered an SME if it employs more than 50 but fewer than 250 persons and it has an annual turnover exceeding EUR 10 million but not exceeding EUR 50 million, and/or an annual balance sheet total exceeding EUR 10 million but not exceeding EUR 43 million.
  • Subcontractors, the supply chain, consultants managed service (security) providers along with their software and libraries are now part of the scope
  • The end of OESes. An OES is a category of essential service unique to France. OESes are organizations that must be protected from cyber threats due to their significant impact on the functioning of France’s economy, society, or defense. With the NIS2 directive, OESes are eliminated as a category — instead, more uniform categories are announced. Across EU countries, essential entities (EEs) will be distinguished from important entities (IEs) to establish their level of security requirements.
  • Greater incident response obligations. With the NIS2 directive, managers for essential organizations are given more responsibility in complying with NIS2 requirements. Instead of delegating all responsibility to an IT team, senior management must proactively oversee compliance with NIS2 regulations. The NIS2 has also changed other details of its incident response protocol — including a shortened window for notifying the necessary parties of disruptions and greater transparency in alerting users to cyber threats. 
  • Stricter fines and penalties. Cybersecurity is of vital importance to the functioning of a cohesive EU economy. To increase compliance with these critical directives, NIS2 outlines stricter fines and penalties for noncompliance. More severe fines for high-level management offer an evidence-based way to improve compliance and resilience. 
  • Encouragement to share threat and vulnerability intelligence and use knowledge and experience to enhance capabilities to assess, monitor, defend and respond to cyber threats between organizations.

Adoption Timeline for NIS2 and Next Steps

For organizations currently under NIS compliance, security spending is projected to increase under NIS2. For organizations that aren’t currently under the supervision of NIS, the percentage of security spending is expected to increase even more.

Implementation of NIS2 is not yet official in the European Union. In early 2022, the provisional text of the NIS2 directive was written and agreed upon by EU member states. On November 15, 2022, the NIS2 directive was adopted by the European Parliament and the European Council. It is unlikely that EU states will adopt NIS2 into law until 2024. This gives organizations some control over their adoption timeline — and allows them to budget for increased cybersecurity spending. 

However, given the changes that need to be made in many organizations to meet these new NIS2 requirements, it is crucial that you begin the transition toward compliance sooner rather than later.

 

Meeting NIS 2.0 Head-On with Solutions from SSH Communications Security 

With the expansion of industries that need to adhere to NIS2, we at SSH are here to lend our long-standing expertise in secure communications and access management.

  • For industries in manufacturing, transportation, energy, waste management and water supply, we have PrivX OT that is a digital gatekeeper of secure access to remote maintenance and sites. 
  • For Managed Service Providers, we have PrivX MSP that handles access to customer environments under management for MSPs.
  • For finance, banking and insurance we offer our Zero Trust Suite, a complete access management solution to critical IT environments that allows companies to migrate to passwordless and keyless secrets management.
  • For securing human-to-human business communication, we offer the Deltagon Suite that allows encrypted emails, document signing, information collecting using forms and secure workspaces for sensitive information.

You can also get in touch with us for more information.

作灶什么意思 金线莲有什么功效 大眼角痒用什么眼药水 小孩为什么会流鼻血 肌张力高是什么意思
肌红蛋白高是什么意思 弘字五行属什么 师奶是什么意思 12月12是什么星座 五光十色是什么生肖
半夜尿多是什么原因 不完全性右束支阻滞是什么意思 尿酸高什么水果不能吃 止咳化痰吃什么药 元帅相当于现在什么官
子宫什么样子图片 绿意盎然是什么意思 脚底疼痛是什么原因 螃蟹代表什么生肖 频发室性早搏是什么意思
喜欢白色的人是什么性格luyiluode.com 翡翠和玉石有什么区别hcv8jop3ns4r.cn 颠是什么意思xinmaowt.com 僵尸为什么怕糯米hcv7jop9ns6r.cn 老火汤是什么意思hcv8jop2ns2r.cn
发冷是什么原因hcv8jop0ns8r.cn 惟妙惟肖是什么意思hcv8jop4ns3r.cn 梦见老板是什么意思hcv7jop6ns8r.cn 十二年是什么婚hcv7jop9ns9r.cn 大水牛是什么意思xinmaowt.com
农历6月20日是什么星座hcv9jop5ns0r.cn 蔻驰手表属于什么档次hcv8jop1ns4r.cn 大器晚成是什么意思hcv9jop1ns9r.cn 成语一什么不什么hcv8jop6ns8r.cn 弯弯是什么意思hcv8jop9ns7r.cn
湿气重看中医挂什么科hcv8jop9ns2r.cn 喜丧是什么意思hcv7jop6ns8r.cn 手心发热什么原因hcv8jop4ns7r.cn 月经不调吃什么药调理hcv8jop5ns5r.cn 梦见种花生是什么意思bfb118.com
百度