Network & Information Security Directive announced 8th December by European Commission. Will impact, amongst others:-
- Energy
- Transport
- Banking, Insurance, Financial Services
- Healthcare
- Water
- Digital Infrastructure
- eCommerce
- PaaS, SaaS, BPOS
- Search Engines
To be phased in over two years with heavy fines for non-compliance so plan for it now! Then to add to the compliance burden there is the Data Privacy Law Reform based on two instruments:-
- General Data Reform
- Data Protection Directive
Again draconian penalties for non-compliance so plan now.
Network and Information Security Directive Draconian penalties will be imposed for non-compliance with up to 2% of global turn over On 8th December, the European Commission announced a new Network and Information Security Directive. Under the new directive, businesses in member states with an important role for society and the economy—referred to in the directive as “operators of essential services” —will have to take appropriate security measures and to notify serious incidents to the relevant national authority.
http://blog.willis.com/2015/12/two-of-the-most-important-pieces-of-cyber-legislation-ever/