NIS2 Introduction

This training introduces the key points of the EU’s NIS2 directive, which sets cybersecurity requirements for organisations delivering ‘essential’ and ‘important’ services across the EU. You will learn who the directive applies to, how organisations are classified, and how to find out if your organisation falls within its scope.

You will also gain a clear understanding of the core security requirements NIS2 demands, including risk assessments, supplier security, access control, and employee training. 

Finally, the training explains what the directive expects from top management and the consequences of non-compliance, including heavy fines and personal liability.

12.1 NIS2 Introduction (1)

Course Topics

Lesson 1) Who does NIS2 apply to?

NIS2 is a set of rules regarding the cybersecurity of critical infrastructure within the EU. It aims to strengthen the supply of essential goods and services in the EU against cyber threats. 

The directive aims to protect these organisations by raising the minimum cybersecurity standards in their sectors.

12.1 NIS2 Introduction (4)

Lesson 2) NIS2 Minimum Requirements

NIS2 requires your organisation to adequately address all IT security risks that could threaten the delivery of your goods and services to the end user.

Regardless of these specific risks, NIS2 requires all organisations to implement a set of mandatory security measures.

12.2 NIS2 Introduction (1)

Lesson 3) NIS2 Management Obligations

A distinctive aspect of NIS2 is its emphasis on requiring top management to take greater responsibility for cybersecurity. This includes strategic leaders like the CEO, CTO, and Board members.

12.3 NIS2 Introduction (1)

NIS2 Introduction

This training is for anyone working in or with critical infrastructure sectors who needs a clear introduction to NIS2.

NIS2 Assessment

Test your knowledge about the NIS2 directive in this assessment.

Related Courses

0.2 GDPR Introduction (2)

GDPR Introduction

This course gives the employee a simple and practical introduction to the General Data Protection Regulation.

The employee will learn what the GDPR is, why it was created, and who must follow its rules, using real-life examples that make the topic easier to understand.

Information Security - Introduction

Information Security

This training gives the employee a clear and practical introduction to information security, why it matters to the organisation, and how it impacts daily work.

10. Risk Assessment (featured image)

Risk Assessment

In this awareness training, your employees will learn how to perform a risk assessment to identify and evaluate potential threats to the personal data the organization handle daily.
 

Awareness trainings make you compliance-ready while also improving the security awareness in your organisation. To establish a security culture your organisation must work programmatically with technical and organisational elements.

Do You Have a Security Culture?

Security Culture Maturity

Free Trial

We will get back to you via email as soon as possible.