InfoSec

NIS2 Directive: Europe's shield against cyber attacks

Imagine that the power is suddenly gone — a cyber attack has paralyzed the network. It is precisely such scenarios that the NIS2 Directive aims to prevent. It is Europe's answer to growing digital threats.

author
date
16.6.2025
Updated on
30.9.2025
NIS2 Directive: Europe's shield against cyber attacks

What is the NIS2 Policy?

NIS2 is the revised version of the first NIS Directive from 2016. The aim is to better protect critical infrastructures such as energy, transport or food supply and strengthen Europe's cyber resilience.

What's new? The most important changes:

  • More industries in focus: In addition to energy and health, food supply and public transport are now also covered. More companies need to protect themselves.
  • Stricter controls: Anyone who does not close security gaps must expect higher fines.
  • Better collaboration: EU member states are working more closely to identify and stop threats more quickly.

What does this mean for companies?

Companies must significantly increase their IT security: From regular risk analyses to clear reporting channels in the event of incidents to training for employees. Small and medium-sized businesses are also coming into greater focus, as many attacks target supposedly “weaker” links in the supply chain.

The Founder's Guide about NIS2: Prepare your company Now before

Protect your startup: Discover how NIS2 can impact your business and what you need to consider now. Read the free white paper now!

The Founder's Guide about NIS2: Prepare your company Now before

Protect your startup: Discover how NIS2 can impact your business and what you need to consider now. Read the free white paper now!

NIS2 Directive: Europe's shield against cyber attacks

New challenges and opportunities

Implementing the NIS2 Directive poses challenges — such as higher costs for security measures and more bureaucracy. At the same time, it opens up opportunities: Companies that invest in cybersecurity at an early stage strengthen their image and gain the trust of customers and partners.

Who controls compliance?

National authorities check whether companies are implementing the requirements. Violations may result in severe fines and even liability on the part of the management.

Why is that important?

Our digital future depends on how secure our networks are. NIS2 provides greater protection and strengthens trust in digital services — not just for large corporations, but for everyone who is part of the connected economy.

Conclusion

With the NIS2 Directive, Europe is taking an important step towards cybersecurity. Companies are now asked to take action — because cybersecurity is teamwork and affects us all. If you are prepared, you can not only minimize risks, but also take advantage of new opportunities.

Ready, your compliance to put on autopilot?
Dr. Kilian Schmidt

Dr. Kilian Schmidt

CEO & Co-Founder, Kertos GmbH

Dr. Kilian Schmidt developed a strong interest in legal processes early on. After studying law, he began his career as Senior Legal Counsel and Data Protection Officer at the Home24 Group. After working at Freshfields Bruckhaus Deringer, he moved to TIER Mobility, where, as General Counsel, he was significantly involved in expanding the legal and public policy department - and grew the company from one to 65 cities and from 50 to 800 employees. Motivated by limited technological advances in the legal sector and inspired by his consulting work at Gorillas Technologies, he co-founded Kertos to develop the next generation of European data protection technology.

About Kertos

Kertos is the modern backbone of the data protection and compliance activities of scaling companies. We enable our customers to implement integrated data protection and information security processes in accordance with GDPR, ISO 27001, TISAX®, SOC2 and many other standards quickly and cheaply through automation.

Ready for relief in GDPR matters?

CTA Image