{"id":4944,"date":"2024-05-08T13:15:36","date_gmt":"2024-05-08T11:15:36","guid":{"rendered":"https:\/\/rock-the-prototype.com\/unkategorisiert\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/"},"modified":"2024-05-08T13:18:51","modified_gmt":"2024-05-08T11:18:51","slug":"nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us","status":"publish","type":"post","link":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/","title":{"rendered":"NIS2: Europe&#8217;s cyber defense update &#8211; What the NIS2 directive means for us"},"content":{"rendered":"<p><\/p><div class=\"fusion-fullwidth fullwidth-box fusion-builder-row-1 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling\" style=\"--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-flex-wrap:wrap;\"><div class=\"fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap\" style=\"max-width:1144px;margin-left: calc(-4% \/ 2 );margin-right: calc(-4% \/ 2 );\"><div class=\"fusion-layout-column fusion_builder_column fusion-builder-column-0 fusion_builder_column_1_1 1_1 fusion-flex-column\" style=\"--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:1.92%;--awb-margin-bottom-large:0px;--awb-spacing-left-large:1.92%;--awb-width-medium:100%;--awb-spacing-right-medium:1.92%;--awb-spacing-left-medium:1.92%;--awb-width-small:100%;--awb-spacing-right-small:1.92%;--awb-spacing-left-small:1.92%;\"><div class=\"fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column\"><div class=\"fusion-text fusion-text-1\"><div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Inhaltsverzeichnis<\/p>\n<span class=\"ez-toc-title-toggle\"><a href=\"#\" class=\"ez-toc-pull-right ez-toc-btn ez-toc-btn-xs ez-toc-btn-default ez-toc-toggle\" aria-label=\"Toggle Table of Content\"><span class=\"ez-toc-js-icon-con\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #ffffff;color:#ffffff\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #ffffff;color:#ffffff\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/span><\/a><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Who_is_affected_The_extended_scope_of_NIS2\" >Who is affected? The extended scope of NIS2<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Enter_NIS2_A_tightening_an_expansion_a_necessary_evolution\" >Enter NIS2: A tightening, an expansion, a necessary evolution!<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#The_current_status_of_the_NIS_Directive_key_objectives_and_challenges\" >The current status of the NIS Directive: key objectives and challenges<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#NIS2_Stronger_security_greater_range_%E2%80%93_details_at_a_glance\" >NIS2: Stronger security, greater range &#8211; details at a glance:<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Main_objectives_of_NIS2\" >Main objectives of NIS2<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Scope_of_application_of_NIS2\" >Scope of application of NIS2<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Extended_reporting_obligations_and_new_safety_requirements\" >Extended reporting obligations and new safety requirements<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Importance_and_benefits_of_NIS2_A_legally_binding_framework_for_a_cyber_shield\" >Importance and benefits of NIS2: A legally binding framework for a cyber shield<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#1_strengthening_IT_security_through_NIS2\" >1. strengthening IT security through NIS2<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-10\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#2_expected_benefits_for_various_stakeholders\" >2. expected benefits for various stakeholders<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-11\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Implementation_status_in_Germany_The_path_to_compliance_with_the_NIS2_Directive\" >Implementation status in Germany: The path to compliance with the NIS2 Directive<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-12\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Current_status_Draft_bill_of_the_Federal_Ministry_of_the_Interior\" >Current status: Draft bill of the Federal Ministry of the Interior<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-13\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#Next_Steps\" >Next Steps<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-14\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#And_now\" >And now?<\/a><\/li><\/ul><\/nav><\/div>\n<h3 id=\"ember395\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Who_is_affected_The_extended_scope_of_NIS2\"><\/span>Who is affected? The extended scope of NIS2<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember396\" class=\"ember-view reader-content-blocks__paragraph\">Everyone knows, or should know: The Internet is by no means a harmless playing field. In many areas, it has become a real battleground on which cyber criminals attack states, companies and organizations. Their aim: data theft, influencing democratic processes and cyber extortion.<\/p>\n<p id=\"ember397\" class=\"ember-view reader-content-blocks__paragraph\">This is the prelude <strong>to <\/strong>our preliminary story on the <strong>need for legal regulations on cyber security<\/strong>.<\/p>\n<p id=\"ember398\" class=\"ember-view reader-content-blocks__paragraph\">In Europe, we responded back in 2016 with the NIS Directive &ndash; a first cautious step to protect the digital Achilles&rsquo; heel of our networked society.<\/p>\n<p id=\"ember399\" class=\"ember-view reader-content-blocks__paragraph\">The original NIS Directive aimed to secure the network and information systems of critical infrastructure operators and providers of essential services. But cyber threats are evolving rapidly, and what seemed sufficient yesterday has largely proved ineffective or at least inadequate.<\/p>\n\n<\/div><div class=\"fusion-text fusion-text-2\"><h2 id=\"ember400\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Enter_NIS2_A_tightening_an_expansion_a_necessary_evolution\"><\/span>Enter NIS2: A tightening, an expansion, a necessary evolution!<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p id=\"ember401\" class=\"ember-view reader-content-blocks__paragraph\">The new NIS2 Directive extends the scope, tightens security and reporting obligations and aims to increase Europe&rsquo;s resilience to cyber attacks. From energy suppliers to digital platforms and public administrations &ndash; almost no organization is exempt.<\/p>\n<p id=\"ember402\" class=\"ember-view reader-content-blocks__paragraph\">The transformation from NIS to NIS2 is therefore not just a change of form, but is intended to be a decisive step in the expansion of our digital fortress.<\/p>\n<p id=\"ember403\" class=\"ember-view reader-content-blocks__paragraph\">Anyone who does not transform their organization now and establish cyber security in their organization<\/p>\n<p id=\"ember404\" class=\"ember-view reader-content-blocks__paragraph\">Prevention, robust protection of IT infrastructures and fast response times make a decisive difference between security and chaos.<\/p>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Spotify - Folge 14 - Identita&#776;tsmanagement und Vertrauensmodelle in digitalen Infrastrukturen Rock the Prototype - Softwareentwicklung &amp; Prototyping\" href=\"#\"><iframe class=\"lazyload\" style=\"border-radius: 12px;\" src=\"data:image\/svg+xml,%3Csvg%20xmlns%3D%27http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%27%20width%3D%27100%27%20height%3D%27352%27%20viewBox%3D%270%200%20100%20352%27%3E%3Crect%20width%3D%27100%27%20height%3D%27352%27%20fill-opacity%3D%220%22%2F%3E%3C%2Fsvg%3E\" data-orig-src=\"https:\/\/open.spotify.com\/embed\/episode\/1N1OVljhLqoduGkoLTAdFW?utm_source=generator\" width=\"100%\" height=\"352\" frameborder=\"0\" allowfullscreen=\"allowfullscreen\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-3\"><h3 id=\"ember405\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"The_current_status_of_the_NIS_Directive_key_objectives_and_challenges\"><\/span>The current status of the NIS Directive: key objectives and challenges<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember406\" class=\"ember-view reader-content-blocks__paragraph\">The NIS Directive, Europe&rsquo;s first comprehensive attempt to create a uniform level of network and information security, pursued the clear goal of strengthening the resilience of critical infrastructures against cyber attacks. The main components included the <strong>establishment of national cybersecurity requirements<\/strong>, the creation of <strong>cooperation groups at EU level<\/strong>and the <strong>introduction of stricter reporting obligations for security incidents<\/strong>.<\/p>\n<p id=\"ember407\" class=\"ember-view reader-content-blocks__paragraph\"><strong>Challenges in implementation and the goal of harmonization<\/strong><\/p>\n<p id=\"ember408\" class=\"ember-view reader-content-blocks__paragraph\">Despite the ambitious goals, the implementation of the directive faced significant challenges. One of the points of criticism was the <strong>inconsistent application of the directive across different member states<\/strong>, which led to a <strong>fragmentation of the cybersecurity landscape in the EU<\/strong>. This lack of uniformity weakened the effectiveness of the directive, as not all member states introduced the same strict standards.<\/p>\n<p id=\"ember409\" class=\"ember-view reader-content-blocks__paragraph\">Another weakness was the <strong>limited scope of the NIS Directive<\/strong>, which was <strong>mainly<\/strong> <strong>restricted<\/strong> <strong>to operators of critical infrastructure and providers of essential services<\/strong>. Many companies offering increasingly digitized services did not fall under these categories, meaning that large parts of the European economy remained unprotected.<\/p>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Apple Podcast - Folge 14 - Identita&#776;tsmanagement und Vertrauensmodelle in digitalen Infrastrukturen - Rock the Prototype - Softwareentwicklung &amp; Prototyping\" href=\"#\"><iframe style=\"width: 100%; max-width: 660px; overflow: hidden; border-radius: 10px;\" src=\"https:\/\/embed.podcasts.apple.com\/us\/podcast\/folge-14-identita-tsmanagement-und-vertrauensmodelle\/id1684107786?i=1000643616542\" height=\"175\" frameborder=\"0\" sandbox=\"allow-forms allow-popups allow-same-origin allow-scripts allow-storage-access-by-user-activation allow-top-navigation-by-user-activation\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-4\"><p id=\"ember410\" class=\"ember-view reader-content-blocks__paragraph\">Listen now:<\/p>\n<p id=\"ember411\" class=\"ember-view reader-content-blocks__paragraph\">Listen on Spotify: <a class=\"app-aware-link \" href=\"https:\/\/bit.ly\/49gizXS\" target=\"_self\" rel=\"noopener\" data-test-app-aware-link=\"\">https:\/\/bit.ly\/49gizXS<\/a><\/p>\n<p id=\"ember412\" class=\"ember-view reader-content-blocks__paragraph\">Enjoy on Apple Podcasts: <a class=\"app-aware-link \" href=\"https:\/\/apple.co\/42lNbVB\" target=\"_self\" rel=\"noopener\" data-test-app-aware-link=\"\">https:\/\/apple.co\/42lNbVB<\/a><\/p>\n<p id=\"ember413\" class=\"ember-view reader-content-blocks__paragraph\">In addition, <strong>the reporting obligations proved to be inadequate<\/strong>, as many incidents were <strong>either reported too late or not at all<\/strong>, partly for fear of reputational damage or legal consequences. These delays in communication prevented an effective and timely response to security threats.<\/p>\n<p id=\"ember414\" class=\"ember-view reader-content-blocks__paragraph\">The NIS Directive was an important first step, but global crises and conflicts show that the dynamic evolution of cybersecurity threats in Europe requires a continuous and adapted response.<\/p>\n<p id=\"ember415\" class=\"ember-view reader-content-blocks__paragraph\">Cyber threats are developing as rapidly as our technological development and make it urgently necessary to strengthen these regulations. This is where the NIS2 directive comes in, with the aim of closing the gaps that have been discovered and creating a more robust security network across Europe.<\/p>\n<\/div><div class=\"fusion-text fusion-text-5\"><h2 id=\"ember638\" class=\"ember-view\">NIS2: Stronger security, greater range &ndash; details at a glance:<\/h2>\n<h3 id=\"ember639\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Main_objectives_of_NIS2\"><\/span>Main objectives of NIS2<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember640\" class=\"ember-view reader-content-blocks__paragraph\">The NIS2 Directive aims to create a high common level of cybersecurity across the European Union. The main objectives of the revised directive are<\/p>\n<ol>\n<li><strong>Strengthening the security and resilience<\/strong> of network and information systems, which are crucial for the functioning of the economy and society.<\/li>\n<li><strong>Extend the scope<\/strong> to include more sectors and companies that are considered important for the EU&rsquo;s infrastructure and economy.<\/li>\n<li><strong>Improve cooperation<\/strong> between Member States to improve the ability to respond to incidents and crises.<\/li>\n<li><strong>Harmonization of safety requirements<\/strong> and reporting procedures to ensure that the same minimum standards apply throughout the EU.<\/li>\n<\/ol>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Podcast Folge 12 - SolarWinds Hack: Der unsichtbare Cyberdiebstahl - Rock the Prototype Podcast\" href=\"#\"><iframe class=\"lazyload\" style=\"border-radius: 12px;\" src=\"data:image\/svg+xml,%3Csvg%20xmlns%3D%27http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%27%20width%3D%27100%27%20height%3D%27352%27%20viewBox%3D%270%200%20100%20352%27%3E%3Crect%20width%3D%27100%27%20height%3D%27352%27%20fill-opacity%3D%220%22%2F%3E%3C%2Fsvg%3E\" data-orig-src=\"https:\/\/open.spotify.com\/embed\/episode\/0qoHMUV1ZFCj5z4odFvsum?utm_source=generator\" width=\"100%\" height=\"352\" frameborder=\"0\" allowfullscreen=\"allowfullscreen\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-6\"><h3 id=\"ember642\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Scope_of_application_of_NIS2\"><\/span>Scope of application of NIS2<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember643\" class=\"ember-view reader-content-blocks__paragraph\">NIS2 significantly extends the range of sectors and companies affected compared to the original NIS Directive. The most important sectors now covered by the directive include:<\/p>\n<ul>\n<li><strong>Energy<\/strong>: electricity, oil, gas<\/li>\n<li><strong>Transportation<\/strong>: air, rail, water, road<\/li>\n<li><strong>Banking<\/strong> and financial market infrastructures<\/li>\n<li><strong>Healthcare<\/strong>: Hospitals and medical facilities<\/li>\n<li><strong>Drinking water supply<\/strong> and wastewater disposal<\/li>\n<li><strong>Digital infrastructure<\/strong>: data centers, <a href=\"https:\/\/rock-the-prototype.com\/en\/cloud-computing-cloud-technology\/cloud\/\" target=\"_blank\" title=\"What is cloud? Cloud or cloud computing moves data and programs from desktop PCs or servers in a company to remote cloud servers. Cloud storage therefore consists of a standard server network in a cloud data center or distributed across several cloud server locations.\" class=\"encyclopedia\">cloud<\/a> services, trust services<\/li>\n<li><strong>Public administration<\/strong> and digital services<\/li>\n<li><strong>Aerospace<\/strong>, defense industry, and manufacturing sector (especially manufacturers of critical products)<\/li>\n<\/ul>\n<p id=\"ember645\" class=\"ember-view reader-content-blocks__paragraph\">In addition, important digital platforms such as social networks, online marketplaces and search engines are now also included.<\/p>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Podcast Folge 12 - SolarWinds Hack: Der unsichtbare Cyberdiebstahl - Rock the Prototype Podcast\" href=\"#\"><iframe style=\"width: 100%; max-width: 660px; overflow: hidden; border-radius: 10px;\" src=\"https:\/\/embed.podcasts.apple.com\/us\/podcast\/folge-12-solarwinds-hack-der-unsichtbare-cyberdiebstahl\/id1684107786?i=1000634096900\" height=\"175\" frameborder=\"0\" sandbox=\"allow-forms allow-popups allow-same-origin allow-scripts allow-storage-access-by-user-activation allow-top-navigation-by-user-activation\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-7\"><h3 id=\"ember646\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Extended_reporting_obligations_and_new_safety_requirements\"><\/span>Extended reporting obligations and new safety requirements<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember647\" class=\"ember-view reader-content-blocks__paragraph\">The NIS2 Directive significantly tightens the reporting obligations:<\/p>\n<ol>\n<li><strong>Shorter reporting deadlines<\/strong>: Organizations must now report security incidents more quickly, often within 24 hours of discovering the incident.<\/li>\n<li><strong>More detailed reporting<\/strong>: Reports must be more comprehensive and contain detailed information about the nature of the incident, the data involved and the potential impact.<\/li>\n<li><strong>Regular reviews and reports<\/strong>: Companies must conduct regular reviews of their security systems and produce reports on their cybersecurity policies and practices.<\/li>\n<\/ol>\n<p id=\"ember649\" class=\"ember-view reader-content-blocks__paragraph\">The new safety requirements include:<\/p>\n<ul>\n<li><strong>Risk management<\/strong>: Introduction and maintenance of risk management practices that include both technical and organizational measures.<\/li>\n<li><strong>Security audits and tests<\/strong>: Regular security audits and tests are carried out by internal or external experts.<\/li>\n<li><strong>Incident response management<\/strong>: Establishing and maintaining effective incident response plans in order to be able to react quickly to security incidents.<\/li>\n<\/ul>\n<p id=\"ember651\" class=\"ember-view reader-content-blocks__paragraph\">These extended requirements and reporting obligations are intended to create a more robust security landscape across the EU and thus strengthen digital and economic resilience.<\/p>\n<\/div><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.IT-Security in Software Development - Rock the Prototype Podcast - Softwareentwicklung &amp; Prototyping\" href=\"#\"><iframe class=\"lazyload\" style=\"border-radius: 12px;\" src=\"data:image\/svg+xml,%3Csvg%20xmlns%3D%27http%3A%2F%2Fwww.w3.org%2F2000%2Fsvg%27%20width%3D%27100%27%20height%3D%27352%27%20viewBox%3D%270%200%20100%20352%27%3E%3Crect%20width%3D%27100%27%20height%3D%27352%27%20fill-opacity%3D%220%22%2F%3E%3C%2Fsvg%3E\" data-orig-src=\"https:\/\/open.spotify.com\/embed\/episode\/3Uis0uViBdKlYxYS2nm1XU?utm_source=generator\" width=\"100%\" height=\"352\" frameborder=\"0\" allowfullscreen=\"allowfullscreen\"><\/iframe><\/a>\n<div class=\"fusion-text fusion-text-8\"><h2 id=\"ember652\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Importance_and_benefits_of_NIS2_A_legally_binding_framework_for_a_cyber_shield\"><\/span>Importance and benefits of NIS2: A legally binding framework for a cyber shield<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<h3 id=\"ember653\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"1_strengthening_IT_security_through_NIS2\"><\/span>1. strengthening IT security through NIS2<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember654\" class=\"ember-view reader-content-blocks__paragraph\">The NIS2 Directive is a key instrument for strengthening IT security in the European Union. By setting stricter security standards and introducing comprehensive reporting requirements, NIS2 helps to increase resilience against cyber attacks. The directive ensures better detection, prevention and response to IT security incidents. By harmonizing security requirements across all member states, NIS2 also creates a consistent security landscape that makes it possible to combat cross-border threats more effectively.<\/p>\n<h3 id=\"ember655\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"2_expected_benefits_for_various_stakeholders\"><\/span>2. expected benefits for various stakeholders<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember656\" class=\"ember-view reader-content-blocks__paragraph\"><strong>For companies:<\/strong><\/p>\n<ul>\n<li><strong>Increased cyber security:<\/strong> Stronger security standards and regular audits improve protection against cyber attacks.<\/li>\n<li><strong>Building trust:<\/strong> Compliance with NIS2 strengthens customer confidence in the security of company services.<\/li>\n<li><strong>Risk minimization:<\/strong> Reduces the risk of financial and reputational damage from data leaks or security breaches.<\/li>\n<\/ul>\n<p id=\"ember658\" class=\"ember-view reader-content-blocks__paragraph\"><strong>For public administrations:<\/strong><\/p>\n<ul>\n<li><strong>Critical infrastructure protection:<\/strong> Better security measures protect essential public services.<\/li>\n<li><strong>Efficient incident response:<\/strong> Clear guidelines improve the ability to respond to security incidents.<\/li>\n<li><strong>Improved cooperation:<\/strong> Facilitates the exchange of information and cooperation between EU states.<\/li>\n<\/ul>\n<p id=\"ember660\" class=\"ember-view reader-content-blocks__paragraph\"><strong>For end users:<\/strong><\/p>\n<ul>\n<li><strong>Data protection:<\/strong> Stronger regulations protect personal data better against unauthorized access.<\/li>\n<li><strong>Transparency:<\/strong> Extended reporting obligations ensure clear information on data protection practices.<\/li>\n<li><strong>Trust in digital services:<\/strong> More secure online environments strengthen trust in digital services.<\/li>\n<\/ul>\n<p id=\"ember662\" class=\"ember-view reader-content-blocks__paragraph\">NIS2 can effectively contribute to strengthening our digital ecosystem by providing a solid foundation for cybersecurity for all stakeholders &ndash; from large corporations to small and medium-sized enterprises, public institutions and end users. These comprehensive measures are crucial to securing the European digital infrastructure in an increasingly networked and digitalized world.<\/p>\n<\/div><div class=\"fusion-text fusion-text-9\"><h2 id=\"ember663\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Implementation_status_in_Germany_The_path_to_compliance_with_the_NIS2_Directive\"><\/span>Implementation status in Germany: The path to compliance with the NIS2 Directive<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p id=\"ember664\" class=\"ember-view reader-content-blocks__paragraph\"><strong>Current status of implementation of the NIS2 Directive in Germany<\/strong><\/p>\n<p id=\"ember665\" class=\"ember-view reader-content-blocks__paragraph\">Germany is actively working on the implementation of the NIS2 Directive, but is facing challenges that are causing delays in the process. It was originally planned that the NIS2 Directive would have to be transposed <strong>into<\/strong>national law by <strong>October 17, 2024<\/strong>. With the draft bill that has now been presented, it is likely that Germany, unlike other EU member states, will be able to meet this deadline.<\/p>\n<h3 id=\"ember666\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Current_status_Draft_bill_of_the_Federal_Ministry_of_the_Interior\"><\/span>Current status: Draft bill of the Federal Ministry of the Interior<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember667\" class=\"ember-view reader-content-blocks__paragraph\">The <a href=\"https:\/\/www.bmi.bund.de\/\" target=\"_blank\" rel=\"noopener\"><br>\n  <strong>Federal Ministry of the Interior and for Home Affairs<\/strong><br>\n<\/a> has submitted a <a href=\"https:\/\/www.bmi.bund.de\/SharedDocs\/gesetzgebungsverfahren\/DE\/Downloads\/referentenentwuerfe\/CI1\/NIS-2-RefE.pdf\" target=\"_blank\" rel=\"noopener\">draft bill<\/a> via the Federal CIO Markus Richter on May 7, 2024, which is intended to transpose the <strong>NIS2 Directive<\/strong> into German law.<\/p>\n<h3 id=\"ember669\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"Next_Steps\"><\/span>Next Steps<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p id=\"ember670\" class=\"ember-view reader-content-blocks__paragraph\">The next steps in the legislative process include consultation with associations and the federal states, followed by submission of the cabinet draft to the Bundestag and Bundesrat. It is expected that this process will be intensive and time-consuming, as the affected stakeholders are to be fully involved.<\/p>\n<p id=\"ember671\" class=\"ember-view reader-content-blocks__paragraph\">The implementation process in Germany is an example of how challenging it can be to transpose extensive and complex EU directives into national law. The goal is clear: to strengthen cyber security at national and European level in order to protect our digital infrastructures and our data more effectively.<\/p>\n<h2 id=\"ember672\" class=\"ember-view\"><span class=\"ez-toc-section\" id=\"And_now\"><\/span>And now?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p id=\"ember673\" class=\"ember-view reader-content-blocks__paragraph\">Your click, our common path: How your support shapes our digital future&hellip;<\/p>\n<p id=\"ember674\" class=\"ember-view reader-content-blocks__paragraph\">Stay tuned, my <strong>Rock the Prototype<\/strong> format provides you with free <strong>valuable knowledge<\/strong> on crucial <strong>tech topics<\/strong> in <strong>software development and<\/strong>their social impact.<\/p>\n<p id=\"ember675\" class=\"ember-view reader-content-blocks__paragraph\"><strong>Please support me<\/strong> by <strong>subscribing to<\/strong> my <strong>newsletter<\/strong>, <strong>podcast<\/strong> &amp; <strong>YouTube<\/strong> <strong>channel<\/strong>. Of course, I also appreciate <strong>your<\/strong> <strong>feedback<\/strong>, <strong>comments<\/strong> and <strong>likes<\/strong>!<\/p>\n<p id=\"ember676\" class=\"ember-view reader-content-blocks__paragraph\">As always, Mein provides you with relevant knowledge and offers a compact overview.<\/p>\n<p id=\"ember677\" class=\"ember-view reader-content-blocks__paragraph\">Linkedin : <a class=\"app-aware-link \" href=\"https:\/\/lnkd.in\/exv82i4M\" target=\"_self\" rel=\"noopener\" data-test-app-aware-link=\"\">https:\/\/lnkd.in\/exv82i4M<\/a> Compact information &ndash; easy to understand!<\/p>\n<p id=\"ember678\" class=\"ember-view reader-content-blocks__paragraph\">Until then, stay safe, creative and above all curious!<\/p>\n<p id=\"ember679\" class=\"ember-view reader-content-blocks__paragraph\">Your Sascha Block<\/p>\n<\/div><\/div><\/div><\/div><\/div><div class=\"fusion-fullwidth fullwidth-box fusion-builder-row-2 fusion-flex-container has-pattern-background has-mask-background nonhundred-percent-fullwidth non-hundred-percent-height-scrolling\" style=\"--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-flex-wrap:wrap;\"><div class=\"fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap\" style=\"max-width:1144px;margin-left: calc(-4% \/ 2 );margin-right: calc(-4% \/ 2 );\"><div class=\"fusion-layout-column fusion_builder_column fusion-builder-column-1 fusion_builder_column_1_1 1_1 fusion-flex-column\" style=\"--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:1.92%;--awb-margin-bottom-large:0px;--awb-spacing-left-large:1.92%;--awb-width-medium:100%;--awb-order-medium:0;--awb-spacing-right-medium:1.92%;--awb-spacing-left-medium:1.92%;--awb-width-small:100%;--awb-order-small:0;--awb-spacing-right-small:1.92%;--awb-spacing-left-small:1.92%;\"><div class=\"fusion-column-wrapper fusion-column-has-shadow fusion-flex-justify-content-flex-start fusion-content-layout-column\"><a class=\"fusion-modal-text-link\" data-toggle=\"modal\" data-target=\".fusion-modal.Rock the Prototype - Softwareentwicklung &amp; Prototyping Podcast iTunes\" href=\"#\"><iframe id=\"embedPlayer\" style=\"width: 100%; max-width: 990px; overflow: hidden; border-radius: 10px; transform: translateZ(0px); animation: 2s ease 0s 6 normal none running loading-indicator; background-color: #e4e4e4;\" src=\"https:\/\/embed.podcasts.apple.com\/de\/podcast\/rock-the-prototype-softwareentwicklung-prototyping\/id1684107786?itsct=podcast_box_player&amp;itscg=30200&amp;ls=1&amp;theme=dark\" height=\"450px\" frameborder=\"0\" sandbox=\"allow-forms allow-popups allow-same-origin allow-scripts allow-top-navigation-by-user-activation\"><\/iframe> <\/a><\/div><\/div><\/div><\/div>\n<div class=\"fusion-fullwidth fullwidth-box fusion-builder-row-3 fusion-flex-container has-pattern-background has-mask-background nonhundred-percent-fullwidth non-hundred-percent-height-scrolling\" style=\"--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-flex-wrap:wrap;\"><div class=\"fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap\" style=\"max-width:1144px;margin-left: calc(-4% \/ 2 );margin-right: calc(-4% \/ 2 );\"><div class=\"fusion-layout-column fusion_builder_column fusion-builder-column-2 fusion_builder_column_1_3 1_3 fusion-flex-column\" style=\"--awb-bg-size:cover;--awb-width-large:33.333333333333%;--awb-margin-top-large:0px;--awb-spacing-right-large:5.76%;--awb-margin-bottom-large:0px;--awb-spacing-left-large:5.76%;--awb-width-medium:100%;--awb-order-medium:0;--awb-spacing-right-medium:1.92%;--awb-spacing-left-medium:1.92%;--awb-width-small:100%;--awb-order-small:0;--awb-spacing-right-small:1.92%;--awb-spacing-left-small:1.92%;\"><div class=\"fusion-column-wrapper fusion-column-has-shadow fusion-flex-justify-content-flex-start fusion-content-layout-column\"><div class=\"fusion-title title fusion-title-1 fusion-sep-none fusion-title-text fusion-title-size-two\" style=\"--awb-margin-top-small:30px;--awb-margin-right-small:0px;--awb-margin-bottom-small:20px;--awb-margin-left-small:0px;\"><h2 class=\"fusion-title-heading title-heading-left fusion-responsive-typography-calculated\" style=\"margin:0;--fontSize:30;line-height:1.1;\">&Uuml;ber den Autor:<\/h2><\/div><div class=\"fusion-image-element\" style=\"--awb-caption-title-font-family:var(--h2_typography-font-family);--awb-caption-title-font-weight:var(--h2_typography-font-weight);--awb-caption-title-font-style:var(--h2_typography-font-style);--awb-caption-title-size:var(--h2_typography-font-size);--awb-caption-title-transform:var(--h2_typography-text-transform);--awb-caption-title-line-height:var(--h2_typography-line-height);--awb-caption-title-letter-spacing:var(--h2_typography-letter-spacing);\"><span class=\" fusion-imageframe imageframe-none imageframe-1 hover-type-none\"><img decoding=\"async\" width=\"1920\" height=\"1920\" title=\"Sascha Block &ndash; Rock the Prototype\" src=\"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2019\/09\/Sascha_Block.jpg\" alt class=\"img-responsive wp-image-3342\" srcset=\"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2019\/09\/Sascha_Block-200x200.jpg 200w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2019\/09\/Sascha_Block-400x400.jpg 400w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2019\/09\/Sascha_Block-600x600.jpg 600w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2019\/09\/Sascha_Block-800x800.jpg 800w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2019\/09\/Sascha_Block-1200x1200.jpg 1200w, https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2019\/09\/Sascha_Block.jpg 1920w\" sizes=\"(max-width: 1024px) 100vw, (max-width: 640px) 100vw, 400px\"><\/span><\/div><\/div><\/div><div class=\"fusion-layout-column fusion_builder_column fusion-builder-column-3 fusion_builder_column_2_3 2_3 fusion-flex-column\" style=\"--awb-bg-size:cover;--awb-width-large:66.666666666667%;--awb-margin-top-large:0px;--awb-spacing-right-large:2.88%;--awb-margin-bottom-large:0px;--awb-spacing-left-large:2.88%;--awb-width-medium:100%;--awb-order-medium:0;--awb-spacing-right-medium:1.92%;--awb-spacing-left-medium:1.92%;--awb-width-small:100%;--awb-order-small:0;--awb-spacing-right-small:1.92%;--awb-spacing-left-small:1.92%;\"><div class=\"fusion-column-wrapper fusion-column-has-shadow fusion-flex-justify-content-flex-start fusion-content-layout-column\"><div class=\"fusion-title title fusion-title-2 fusion-sep-none fusion-title-text fusion-title-size-three\" style=\"--awb-margin-top-small:30px;--awb-margin-right-small:0px;--awb-margin-bottom-small:20px;--awb-margin-left-small:0px;\"><h3 class=\"fusion-title-heading title-heading-left fusion-responsive-typography-calculated\" style=\"margin:0;--fontSize:26;line-height:1.2;\">Sascha Block<\/h3><\/div><div class=\"fusion-text fusion-text-10\"><p>Ich bin&nbsp;<a href=\"https:\/\/www.linkedin.com\/in\/sascha-block-5785b9126\/\">Sascha Block<\/a> &ndash; IT-Architekt in Hamburg und der Initiator von Rock the Prototype. Ich m&ouml;chte <a href=\"https:\/\/rock-the-prototype.com\/en\/prototyping-en\/prototyping\/\" target=\"_blank\" title=\"What is prototyping? Prototyping is both a process and a strategy for realizing ideas as quickly as possible.\" class=\"encyclopedia\">Prototyping<\/a> erlernbar und erfahrbar machen. Mit der Motivation Ideen prototypisch zu verwirklichen und Wissen rund um Software-Prototyping, Softwarearchitektur und Programmierung zu teilen, habe ich das Format und die Open-Source Initiative Rock the Prototype geschaffen.<\/p>\n<\/div><div><a class=\"fusion-button button-flat fusion-button-default-size button-custom fusion-button-default button-1 fusion-button-default-span fusion-button-default-type\" style=\"--button_accent_color:#ffffff;--button_accent_hover_color:#00ffff;--button_border_hover_color:#4ab4ff;--button_gradient_top_color:var(--awb-color3);--button_gradient_bottom_color:var(--awb-color3);--button_gradient_top_color_hover:var(--awb-color2);--button_gradient_bottom_color_hover:var(--awb-color2);\" target=\"_blank\" rel=\"noopener noreferrer\" href=\"https:\/\/rock-the-prototype.com\/kuenstliche-intelligenz-ki\/kuenstliche-intelligenz-wie-funktioniert-chat-gpt\/\"><span class=\"fusion-button-text awb-button__text awb-button__text--default\">Wie funktioniert ChatGPT? <\/span><\/a><\/div><div class=\"fusion-separator fusion-full-width-sep\" style=\"align-self: center;margin-left: auto;margin-right: auto;width:100%;\"><\/div><ul style=\"--awb-size:18px;--awb-line-height:30.6px;--awb-icon-width:30.6px;--awb-icon-height:30.6px;--awb-icon-margin:12.6px;--awb-content-margin:43.2px;\" class=\"fusion-checklist fusion-checklist-1 fusion-checklist-default type-icons\"><li class=\"fusion-li-item\" style=\"\"><span class=\"icon-wrapper circle-no\"><i class=\"fusion-li-icon fa-link fas\" aria-hidden=\"true\"><\/i><\/span><div class=\"fusion-li-item-content\">\n<p><a href=\"https:\/\/rock-the-prototype.com\/\">rock-the-prototype.com<\/a><\/p>\n<\/div><\/li><\/ul><\/div><\/div><\/div><\/div>\n\n","protected":false},"excerpt":{"rendered":"<p>Who is affected by the NIS regulations? The extended scope of the NIS2 Directive. Enter NIS2: A tightening, an expansion, a necessary evolution. The new NIS2 Directive extends the scope, tightens security and reporting obligations and aims to increase Europe&#8217;s resilience to cyber attacks. From energy suppliers to digital platforms and public administrations &#8211; almost no organization is exempt. The transformation from NIS to NIS2 is therefore not just a change of form, but is intended to be a decisive step in the expansion of our digital fortress.  <\/p>\n","protected":false},"author":1,"featured_media":4941,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_bbp_topic_count":0,"_bbp_reply_count":0,"_bbp_total_topic_count":0,"_bbp_total_reply_count":0,"_bbp_voice_count":0,"_bbp_anonymous_reply_count":0,"_bbp_topic_count_hidden":0,"_bbp_reply_count_hidden":0,"_bbp_forum_subforum_count":0,"footnotes":""},"categories":[1232],"tags":[2852,2890,2310,2279,2281,2863,2860,2859,2291,2408,2203,2533,1881,2604,2881,2864,2894,2885,2873,2869,2875,2277,2871,2457,2889,2574,2856,2874,2882,2884,2857,2868,2891,2888,2892,2893,2879,2886,2878,2650,2858,2855,2652,2887,1243,2853,2854,2872,2877,1349,2876,2861,2862,2866,2865,2867,2883,2651,1148,2880,2870,2282],"class_list":["post-4944","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-it-security","tag-bfdi-en","tag-bmg-en","tag-bmi-en","tag-bsi-en","tag-compliance-en","tag-corporate-security","tag-critical-infrastructures","tag-critis","tag-cyberattacks","tag-cybercrime-en-3","tag-cybersecurity-en","tag-cybersecurity-en-2","tag-data-security","tag-data-sovereignty","tag-dataprotection-en","tag-digital-protection","tag-digital-transformation-en-3","tag-digitaleu-en","tag-digitalsovereignty-en","tag-digitaltransformation-en","tag-digitalwallet-en","tag-digitization","tag-ehealth-en","tag-eidas-en","tag-eidas2-en","tag-eu-en","tag-eu-regulations","tag-eudi-en","tag-eudigital-en","tag-eugovernance-en","tag-eulaw-en","tag-future-technologies","tag-gematik-en","tag-govtech-en","tag-identification","tag-identity-management-en-4","tag-identity-management-en-3","tag-identityverification-en","tag-information-management","tag-it-architecture-en","tag-it-security-en-3","tag-itsec-en","tag-itsecurity-en","tag-legaltech-en","tag-network-security","tag-nis-en","tag-nis2-en","tag-ozg-en","tag-politics","tag-privacy","tag-privacybydesign-en","tag-public-administration","tag-publicsector-en","tag-reporting-obligations","tag-risk-protection","tag-safety-regulations","tag-smartid-en","tag-software-development-en-3","tag-software-development","tag-techcompetition-en","tag-techtrends-en","tag-trust-models"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>NIS2: Europe&#039;s cyber defense update - What the NIS2 directive means<\/title>\n<meta name=\"description\" content=\"NIS2 - Who is affected? \u2705 Extended scope of the NIS2 directive \u2705 Objectives &amp; challenges \u2705 Scope of application of the NIS2 regulations\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"NIS2: Europe&#039;s cyber defense update - What the NIS2 directive means\" \/>\n<meta property=\"og:description\" content=\"NIS2 - Who is affected? \u2705 Extended scope of the NIS2 directive \u2705 Objectives &amp; challenges \u2705 Scope of application of the NIS2 regulations\" \/>\n<meta property=\"og:url\" content=\"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/\" \/>\n<meta property=\"og:site_name\" content=\"Rock the Prototype - Softwareentwicklung &amp; Prototyping\" \/>\n<meta property=\"article:published_time\" content=\"2024-05-08T11:15:36+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-05-08T11:18:51+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2024\/05\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1456\" \/>\n\t<meta property=\"og:image:height\" content=\"816\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Sascha Block\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@rocktheprototyp\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Sascha Block\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"12 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/\"},\"author\":{\"name\":\"Sascha Block\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/#\\\/schema\\\/person\\\/fdb2f98edec62327712c2d26d981c081\"},\"headline\":\"NIS2: Europe&#8217;s cyber defense update &#8211; What the NIS2 directive means for us\",\"datePublished\":\"2024-05-08T11:15:36+00:00\",\"dateModified\":\"2024-05-08T11:18:51+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/\"},\"wordCount\":2392,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/rock-the-prototype.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg\",\"keywords\":[\"BfDI\",\"BMG\",\"BMI\",\"BSI\",\"Compliance\",\"Corporate security\",\"Critical infrastructures\",\"CRITIS\",\"Cyberattacks\",\"Cybercrime\",\"Cybersecurity\",\"Cybersecurity\",\"Data security\",\"Data sovereignty\",\"DataProtection\",\"Digital protection\",\"Digital transformation\",\"DigitalEU\",\"DigitalSovereignty\",\"DigitalTransformation\",\"DigitalWallet\",\"Digitization\",\"eHealth\",\"eIDAS\",\"eIDAS2\",\"EU\",\"EU regulations\",\"EUDI\",\"EUDigital\",\"EUGovernance\",\"EULaw\",\"Future technologies\",\"gematik\",\"GovTech\",\"Identification\",\"Identity management\",\"Identity management\",\"IdentityVerification\",\"Information management\",\"IT architecture\",\"IT security\",\"ITSec\",\"ITSecurity\",\"LegalTech\",\"Network Security\",\"NIS\",\"NIS2\",\"OZG\",\"Politics\",\"Privacy\",\"PrivacyByDesign\",\"Public administration\",\"PublicSector\",\"Reporting obligations\",\"Risk protection\",\"Safety regulations\",\"SmartID\",\"Software development\",\"Software development\",\"TechCompetition\",\"TechTrends\",\"Trust models\"],\"articleSection\":[\"IT Security\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/\",\"url\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/\",\"name\":\"NIS2: Europe's cyber defense update - What the NIS2 directive means\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/rock-the-prototype.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg\",\"datePublished\":\"2024-05-08T11:15:36+00:00\",\"dateModified\":\"2024-05-08T11:18:51+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/#\\\/schema\\\/person\\\/fdb2f98edec62327712c2d26d981c081\"},\"description\":\"NIS2 - Who is affected? \u2705 Extended scope of the NIS2 directive \u2705 Objectives & challenges \u2705 Scope of application of the NIS2 regulations\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/#primaryimage\",\"url\":\"https:\\\/\\\/rock-the-prototype.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg\",\"contentUrl\":\"https:\\\/\\\/rock-the-prototype.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg\",\"width\":1456,\"height\":816,\"caption\":\"NIS2: Europas Update zur Cyberabwehr - Was die NIS2-Richtlinie f\u00fcr uns bedeutet\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/it-security\\\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Startseite\",\"item\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/rock-the-prototype\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"NIS2: Europe&#8217;s cyber defense update &#8211; What the NIS2 directive means for us\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/\",\"name\":\"Rock the Prototype - Softwareentwicklung &amp; Prototyping\",\"description\":\"Prototyping: Software Prototypen, Software entwickeln &amp; Programmieren im Team\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/#\\\/schema\\\/person\\\/fdb2f98edec62327712c2d26d981c081\",\"name\":\"Sascha Block\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/967c419542686b085600443beafb2e55ad1ef6532a0ad9b96d244cb24fd8c117?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/967c419542686b085600443beafb2e55ad1ef6532a0ad9b96d244cb24fd8c117?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/967c419542686b085600443beafb2e55ad1ef6532a0ad9b96d244cb24fd8c117?s=96&d=mm&r=g\",\"caption\":\"Sascha Block\"},\"description\":\"Ich bin Sascha Block \u2013 IT-Architekt in Hamburg und der Initiator von Rock the Prototype. Ich m\u00f6chte Prototyping erlernbar und erfahrbar machen. Mit der Motivation Ideen prototypisch zu verwirklichen und Wissen rund um Software-Prototyping, Softwarearchitektur und Softwareentwicklung zu teilen, habe ich das Format und die Open-Source Initiative Rock the Prototype geschaffen.\",\"sameAs\":[\"https:\\\/\\\/rock-the-prototype.com\",\"https:\\\/\\\/www.instagram.com\\\/rock_the_prototype\\\/\",\"https:\\\/\\\/x.com\\\/rocktheprototyp\",\"https:\\\/\\\/www.youtube.com\\\/@Rock-the-Prototype\\\/\"],\"url\":\"https:\\\/\\\/rock-the-prototype.com\\\/en\\\/author\\\/administrator-2\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"NIS2: Europe's cyber defense update - What the NIS2 directive means","description":"NIS2 - Who is affected? \u2705 Extended scope of the NIS2 directive \u2705 Objectives & challenges \u2705 Scope of application of the NIS2 regulations","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/","og_locale":"en_US","og_type":"article","og_title":"NIS2: Europe's cyber defense update - What the NIS2 directive means","og_description":"NIS2 - Who is affected? \u2705 Extended scope of the NIS2 directive \u2705 Objectives & challenges \u2705 Scope of application of the NIS2 regulations","og_url":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/","og_site_name":"Rock the Prototype - Softwareentwicklung &amp; Prototyping","article_published_time":"2024-05-08T11:15:36+00:00","article_modified_time":"2024-05-08T11:18:51+00:00","og_image":[{"width":1456,"height":816,"url":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2024\/05\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg","type":"image\/jpeg"}],"author":"Sascha Block","twitter_card":"summary_large_image","twitter_creator":"@rocktheprototyp","twitter_misc":{"Written by":"Sascha Block","Est. reading time":"12 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#article","isPartOf":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/"},"author":{"name":"Sascha Block","@id":"https:\/\/rock-the-prototype.com\/en\/#\/schema\/person\/fdb2f98edec62327712c2d26d981c081"},"headline":"NIS2: Europe&#8217;s cyber defense update &#8211; What the NIS2 directive means for us","datePublished":"2024-05-08T11:15:36+00:00","dateModified":"2024-05-08T11:18:51+00:00","mainEntityOfPage":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/"},"wordCount":2392,"commentCount":0,"image":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#primaryimage"},"thumbnailUrl":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2024\/05\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg","keywords":["BfDI","BMG","BMI","BSI","Compliance","Corporate security","Critical infrastructures","CRITIS","Cyberattacks","Cybercrime","Cybersecurity","Cybersecurity","Data security","Data sovereignty","DataProtection","Digital protection","Digital transformation","DigitalEU","DigitalSovereignty","DigitalTransformation","DigitalWallet","Digitization","eHealth","eIDAS","eIDAS2","EU","EU regulations","EUDI","EUDigital","EUGovernance","EULaw","Future technologies","gematik","GovTech","Identification","Identity management","Identity management","IdentityVerification","Information management","IT architecture","IT security","ITSec","ITSecurity","LegalTech","Network Security","NIS","NIS2","OZG","Politics","Privacy","PrivacyByDesign","Public administration","PublicSector","Reporting obligations","Risk protection","Safety regulations","SmartID","Software development","Software development","TechCompetition","TechTrends","Trust models"],"articleSection":["IT Security"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/","url":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/","name":"NIS2: Europe's cyber defense update - What the NIS2 directive means","isPartOf":{"@id":"https:\/\/rock-the-prototype.com\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#primaryimage"},"image":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#primaryimage"},"thumbnailUrl":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2024\/05\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg","datePublished":"2024-05-08T11:15:36+00:00","dateModified":"2024-05-08T11:18:51+00:00","author":{"@id":"https:\/\/rock-the-prototype.com\/en\/#\/schema\/person\/fdb2f98edec62327712c2d26d981c081"},"description":"NIS2 - Who is affected? \u2705 Extended scope of the NIS2 directive \u2705 Objectives & challenges \u2705 Scope of application of the NIS2 regulations","breadcrumb":{"@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#primaryimage","url":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2024\/05\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg","contentUrl":"https:\/\/rock-the-prototype.com\/wp-content\/uploads\/2024\/05\/NIS2-Europas-Update-zur-Cyberabwehr-Was-die-NIS2-Richtlinie-fuer-uns-bedeutet.jpg","width":1456,"height":816,"caption":"NIS2: Europas Update zur Cyberabwehr - Was die NIS2-Richtlinie f\u00fcr uns bedeutet"},{"@type":"BreadcrumbList","@id":"https:\/\/rock-the-prototype.com\/en\/it-security\/nis2-europes-cyber-defense-update-what-the-nis2-directive-means-for-us\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Startseite","item":"https:\/\/rock-the-prototype.com\/en\/rock-the-prototype\/"},{"@type":"ListItem","position":2,"name":"NIS2: Europe&#8217;s cyber defense update &#8211; What the NIS2 directive means for us"}]},{"@type":"WebSite","@id":"https:\/\/rock-the-prototype.com\/en\/#website","url":"https:\/\/rock-the-prototype.com\/en\/","name":"Rock the Prototype - Softwareentwicklung &amp; Prototyping","description":"Prototyping: Software Prototypen, Software entwickeln &amp; Programmieren im Team","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/rock-the-prototype.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/rock-the-prototype.com\/en\/#\/schema\/person\/fdb2f98edec62327712c2d26d981c081","name":"Sascha Block","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/967c419542686b085600443beafb2e55ad1ef6532a0ad9b96d244cb24fd8c117?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/967c419542686b085600443beafb2e55ad1ef6532a0ad9b96d244cb24fd8c117?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/967c419542686b085600443beafb2e55ad1ef6532a0ad9b96d244cb24fd8c117?s=96&d=mm&r=g","caption":"Sascha Block"},"description":"Ich bin Sascha Block \u2013 IT-Architekt in Hamburg und der Initiator von Rock the Prototype. Ich m\u00f6chte Prototyping erlernbar und erfahrbar machen. Mit der Motivation Ideen prototypisch zu verwirklichen und Wissen rund um Software-Prototyping, Softwarearchitektur und Softwareentwicklung zu teilen, habe ich das Format und die Open-Source Initiative Rock the Prototype geschaffen.","sameAs":["https:\/\/rock-the-prototype.com","https:\/\/www.instagram.com\/rock_the_prototype\/","https:\/\/x.com\/rocktheprototyp","https:\/\/www.youtube.com\/@Rock-the-Prototype\/"],"url":"https:\/\/rock-the-prototype.com\/en\/author\/administrator-2\/"}]}},"_links":{"self":[{"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/posts\/4944","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/comments?post=4944"}],"version-history":[{"count":5,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/posts\/4944\/revisions"}],"predecessor-version":[{"id":4949,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/posts\/4944\/revisions\/4949"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/media\/4941"}],"wp:attachment":[{"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/media?parent=4944"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/categories?post=4944"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/rock-the-prototype.com\/en\/wp-json\/wp\/v2\/tags?post=4944"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}