What is the NIS Directive?
The EU’s NIS Directive (Directive on security of network and information systems) is the first piece of EU-wide cyber security legislation. It aims to achieve a high common level of network and information system security across the EU’s critical infrastructure.
The Directive applies to operators of essential services and digital service providers. These include energy, transport, water and healthcare, online marketplaces, search engines and Cloud computing services.
The NIS Directive requires these operators to take appropriate security measures and report incidents that significantly impact the continuity of the services they provide. Digital service providers are also required to notify the authorities of incidents that significantly impact the availability of their services.
What are the NIS Regulations?
The NIS Directive was enacted in UK law as The Network and Information Systems Regulations 2018 – often referred to simply as the ‘NIS Regulations’ – on 10 May 2018.