NIS2 · Article 21

Cybersecurity risk-management measures

Summary

Entities must take appropriate and proportionate technical, operational and organisational measures to manage risks, based on an all-hazards approach.

risk managementall hazardssupply chainincident handlingbusiness continuitycryptographymfa

Read the full official text: https://eur-lex.europa.eu/eli/dir/2022/2555/oj

Track NIS2 article 21 as evidence

eurocompliant maps this obligation to a checklist task and the evidence that satisfies it, alongside every other framework you follow.

Start free trial