Cinthia Trevisoli

Cinthia Trevisoli

Dec 8, 2023   •  1 min read

Legal Remedies against Classification under the NIS2 directive

Legal remedies against classification under the NIS2 Directive

If your business has been classified under the NIS2 directive, you may be wondering if and how you can take action. Here I explain a general approach that can help you understand your options and take action accordingly. It's important to stay informed and seek guidance from experts in cybersecurity and legal matters to navigate the process effectively. Additionally, collaborating with industry peers and regulatory authorities can provide valuable support in addressing NIS2 classification challenges. Remember, proactive action is key to ensuring compliance and cybersecurity resilience. Steps against the classification

1. Check the basis of the classification
First, understand the basis on which your company was ranked. This requires a close examination of the supervisory authority's criteria and justifications.

2. Internal review
Conduct an internal assessment to determine whether the classification is based on error.

3. Obtain legal advice
Consultation with a specialist lawyer is essential to understand your legal options.

4. Objection procedure
Find out about the formal appeals process in your country and use it accordingly.

5. File an appeal
Formally object and support your argument with evidence.

6. Alternative solutions
Consider alternative solutions that might allow for an exception to the policy.

7. Appeal options
Explore additional remedies if your appeal is denied.

8. Documentation
Carefully record all relevant communications and documents.

Conclusion

Navigating NIS2 classification can be complex, but there are defined steps you can take. It is crucial that you inform yourself about the specific rules and procedures in your EU member state and act proactively. This may involve seeking guidance from cybersecurity experts and legal advisors to ensure comprehensive understanding and compliance. Additionally, collaborating with industry peers and regulatory authorities can provide valuable insights and support throughout the process. Remember, staying informed and proactive is essential in effectively addressing NIS2 classification challenges.

Effective cybersecurity reporting: Tips for creation, documentation, and forwarding

Effective cybersecurity reporting: Tips for creation, documentation, and forwarding

The creation, documentation, and forwarding of cybersecurity reports are essential tasks to keep an eye on a company's security posture and communicate transparently. Below are the key steps to establish an efficient process for cybersecurity reports. It is not only about technical documentation but also about organizing information flows and ...

CCNet

CCNet

Apr 11, 2025   •  3 min read

Compliance register: a central tool for effective compliance monitoring

Compliance register: a central tool for effective compliance monitoring

## Compliance Register: A Central Tool for Effective Compliance Monitoring   A compliance register is an essential component of robust compliance management. It enables the systematic recording and monitoring of all legal and regulatory requirements, internal policies, and contractual obligations. Regular updates of this register ensure that companies consistently meet the latest ...

CCNet

CCNet

Apr 9, 2025   •  3 min read

Monitoring and documentation of legal and regulatory requirements related to cybersecurity

Monitoring and documentation of legal and regulatory requirements related to cybersecurity

Monitoring and Documentation of Legal and Regulatory Requirements in Cybersecurity The goal of this process is to ensure continuous compliance with all legal and regulatory requirements in the field of cybersecurity. A clear overview of laws, regulations, and standards contributes to ensuring compliance and protects the company's IT security. Process ...

CCNet

CCNet

Apr 7, 2025   •  2 min read