Skip to content
Compliance & Legal

NIS2

The European directive that sets cybersecurity requirements for essential and important entities.

Full definition

NIS2 (EU Directive 2022/2555) is the European directive on the security of network and information systems, which replaces and expands the original NIS. It comes into force in Portugal via national transposition, with reinforced obligations for operators of essential services (energy, transport, health, banking, digital infrastructure) and important ones (food, chemical, component manufacturing).

The NIS2 obligations cover: documented risk analysis, incident management with notification to the national authority within 24h, business continuity, supply-chain security, training and awareness, access policies, encryption, security in acquisition and development. Fines can reach 2% of global annual turnover.

INFOS helps customers align their infrastructure with NIS2 — maturity audit, implementation of missing controls, auditable documentation, team training. Customers in essential sectors (for example, food or component manufacturing) find in NIS2 a regulatory requirement that justifies investment in cybersecurity that would otherwise be deferred.

Talk to a specialist

Let's talk.
We'll come back within 24h with next steps.

No complicated forms. One email or call, a team that knows your sector, and a concrete path forward — whether MULTI, MAXIRETAIL, KORA, PPLPORTAL or infrastructure.

Talk to a specialist

Book a demo

Leave your details and we'll get back to you within one business day with next steps.