Translations:Network and Information Security Directive (NIS2-RL)/4/en: Unterschied zwischen den Versionen

Aus RI Wiki
Zur Navigation springenZur Suche springen
Die Seite wurde neu angelegt: „{| class="wikitable" !Goals !Scope !Content<ref>https://www.nis.gv.at/nis-2-richtlinie.html</ref> !Synergy !Consequences |- |Development of cybersecurity capabilities (Recital 1 NIS2) |Annex I (high-criticality sectors) |Obligation for all MS to adopt national cybersecurity strategies (Art 7 NIS2) |Data protection management system |Essential entities: fines of at least EUR 10 million or 2% of global annual turnover |- |Achieving a high common level of cy…“
 
Keine Bearbeitungszusammenfassung
 
Zeile 1: Zeile 1:
{| class="wikitable"
For both, the higher amount applies.  
!Goals
|-  
!Scope
| Containment of threats in key sectors (Recital 1 NIS2 Directive)  
!Content<ref>https://www.nis.gv.at/nis-2-richtlinie.html</ref>
| Must be implemented by Member States by 17 October 2024 (not yet done)  
!Synergy
| Obligations regarding cybersecurity risk management (Art. 20 et seq. NIS2 Directive) and reporting obligations (Art. 23 NIS2 Directive) for affected entities
!Consequences
| Confidentiality clauses  
|-
| Official instructions and orders. Suspension of operations can also be ordered (Art. 32 NIS2 Directive)  
|Development of cybersecurity capabilities (Recital 1 NIS2)
|Annex I (high-criticality sectors)
|Obligation for all MS to adopt national cybersecurity strategies (Art 7 NIS2)
|Data protection management system
|Essential entities: fines of at least EUR 10 million or 2% of global annual turnover
|-
|Achieving a high common level of cybersecurity (Art 1 NIS2)
|Annex II (other critical sectors) if thresholds in Art 2(1) of the Annex to Recommendation 2003/361/EC are exceeded
|Obligation for MS to define various responsibilities and enforcement duties (Art 31 et seq. NIS2)
|Security of processing (Art 32 GDPR)
|Important entities: maximum fine of at least EUR 7 million or 1.4% of global annual turnover, whichever is higher
|-
|Mitigating threats in key sectors (Recital 1 NIS2)
|To be transposed by MS by 17 October 2024 (not yet done)
|Obligations regarding cybersecurity risk management (Art 20 et seq. NIS2) and reporting (Art 23 NIS2)
|Confidentiality clauses
|Administrative orders and instructions. Suspension of activity also possible (Art 32 NIS2)
|-
|-
|  
|  
|  
|  
|Provisions and obligations on sharing cybersecurity information (Art 29 et seq. NIS2)
| Rules and obligations on the exchange of cybersecurity information (Art. 29 et seq. NIS2 Directive)  
|  
|  
|Management bodies can be held personally liable (Art 20 NIS2)
| Management bodies may be held personally liable (Art. 20 NIS2 Directive)  
|}
|}

Aktuelle Version vom 3. Juni 2025, 12:53 Uhr

Information zur Nachricht (bearbeiten)
Zu dieser Nachricht ist keine Dokumentation vorhanden. Sofern du weißt, wo und in welchem Zusammenhang sie genutzt wird, kannst du anderen Übersetzern bei ihrer Arbeit helfen, indem du eine Dokumentation hinzufügst.
Nachricht im Original (Network and Information Security Directive (NIS2-RL))
Für beide gilt der jeweils höhere Betrag.
|-
|Eindämmung von Bedrohungen in Schlüsselsektoren (ErwGr 1 NIS2-RL)
|Ist von den MS bis zum 17. Oktober 2024 umzusetzen (nicht erfolgt)
|Pflichten in Bezug auf das Cybersicherheitsrisikomanagement (<abbr>Art</abbr> 20 ff NIS2-RL) sowie Berichtspflichten (<abbr>Art</abbr> 23 NIS2-RL) für betroffene Einrichtungen
|Verschwiegenheitsklauseln
|Behördliche Anweisungen und Anordnungen. Auch Anordnung der Aussetzung der Tätigkeit ist möglich. (Art 32 NIS2-RL)
|-
|
|
|Vorschriften und Pflichten zum Austausch von Cybersicherheitsinformationen (<abbr>Art</abbr> 29 ff NIS2-RL)
|
|Leitungsorgane können persönlich haften (Art 20 NIS2-RL)
|}

For both, the higher amount applies. |- | Containment of threats in key sectors (Recital 1 NIS2 Directive) | Must be implemented by Member States by 17 October 2024 (not yet done) | Obligations regarding cybersecurity risk management (Art. 20 et seq. NIS2 Directive) and reporting obligations (Art. 23 NIS2 Directive) for affected entities | Confidentiality clauses | Official instructions and orders. Suspension of operations can also be ordered (Art. 32 NIS2 Directive) |- | | | Rules and obligations on the exchange of cybersecurity information (Art. 29 et seq. NIS2 Directive) | | Management bodies may be held personally liable (Art. 20 NIS2 Directive) |}