Translations:Network and Information Security Directive (NIS2-RL)/146/en
Aus RI Wiki
- Both regulations require reporting of incidents affecting confidentiality, integrity, or availability.
- If both IT systems and personal data are involved, dual reporting may be required—to the data protection authority (GDPR) and the cybersecurity authority (NIS2).
- Operators of essential services handling personal data may be subject to both regimes and must report both the data breach and the cybersecurity incident.