NIS2: companiile trebuie să își verifice obligațiile
The implementation of the NIS2 Directive in Romania elevates cybersecurity responsibilities to company management, emphasizing that security is not solely an IT issue. Companies must understand risks, approve security measures, allocate resources, and oversee their implementation. NIS2 now covers 18 sectors, expanding its reach to essential and important entities, and potentially small businesses with significant roles. Suppliers may also need to demonstrate adequate security measures. The rise in cyber vulnerabilities and supply chain attacks heightens risks, with ransomware remaining a major threat. Companies must assess their compliance with NIS2, considering their activities and size. The National Cyber Security Directorate oversees adherence to the directive.