EU Cybersecurity Regulations
Plain-language reference pages for the EU regulations that shape industrial cybersecurity practice. Each page is sourced from the official directive text and updated as the implementing landscape evolves.
NIS2 Directive
Directive (EU) 2022/2555 — the EU's baseline cybersecurity law for essential and important entities across 18 sectors. Transposition deadline was 17 October 2024.
Read the NIS2 reference →DORA · CER · Cyber Resilience Act
Up next: DORA (financial-sector digital resilience), the CER Directive (physical resilience of critical entities) and the Cyber Resilience Act (product security).
Coming soon