Cinthia Trevisoli

Cinthia Trevisoli

Dec 8, 2023   •  1 min read

Legal Remedies against Classification under the NIS2 directive

Legal remedies against classification under the NIS2 Directive

If your business has been classified under the NIS2 directive, you may be wondering if and how you can take action. Here I explain a general approach that can help you understand your options and take action accordingly. It's important to stay informed and seek guidance from experts in cybersecurity and legal matters to navigate the process effectively. Additionally, collaborating with industry peers and regulatory authorities can provide valuable support in addressing NIS2 classification challenges. Remember, proactive action is key to ensuring compliance and cybersecurity resilience. Steps against the classification

1. Check the basis of the classification
First, understand the basis on which your company was ranked. This requires a close examination of the supervisory authority's criteria and justifications.

2. Internal review
Conduct an internal assessment to determine whether the classification is based on error.

3. Obtain legal advice
Consultation with a specialist lawyer is essential to understand your legal options.

4. Objection procedure
Find out about the formal appeals process in your country and use it accordingly.

5. File an appeal
Formally object and support your argument with evidence.

6. Alternative solutions
Consider alternative solutions that might allow for an exception to the policy.

7. Appeal options
Explore additional remedies if your appeal is denied.

8. Documentation
Carefully record all relevant communications and documents.

Conclusion

Navigating NIS2 classification can be complex, but there are defined steps you can take. It is crucial that you inform yourself about the specific rules and procedures in your EU member state and act proactively. This may involve seeking guidance from cybersecurity experts and legal advisors to ensure comprehensive understanding and compliance. Additionally, collaborating with industry peers and regulatory authorities can provide valuable insights and support throughout the process. Remember, staying informed and proactive is essential in effectively addressing NIS2 classification challenges.

Detailed NIS2 process description: Business operations during a cyberattack

Detailed NIS2 process description: Business operations during a cyberattack

The goal of this process is to ensure that the company can continue business operations even in the event of a cyberattack. The implementation and regular updating of a Business Continuity Plan (BCP) play a decisive role here. This plan defines emergency measures and alternative operating procedures to ensure that ...

CCNet

CCNet

Mar 5, 2025   •  3 min read

Template analysis for effective investigation of security incidents

Template analysis for effective investigation of security incidents

NIS2 Template: Standard Analysis for Effective Investigation of Security Incidents Purpose of the Analysis The method serves to conduct a structured investigation of security incidents, aiming to uncover causes, document the course of the incident, and derive preventive measures to prevent future incidents. Scope This analysis method is used for ...

CCNet

CCNet

Mar 3, 2025   •  2 min read

NIS2-Analysis: Detailed incident response report for precise evaluation of IT security incidents

NIS2-Analysis: Detailed incident response report for precise evaluation of IT security incidents

NIS2 Analysis: Detailed Incident Response Report for Accurate Evaluation of IT Security Incidents On September 15, 2024, at 14:35, suspicious network traffic was detected by our SIEM system, indicating a potential ransomware infection. This required immediate responses. Unusual activity, such as high CPU usage and file encryption, was quickly ...

CCNet

CCNet

Jan 31, 2025   •  2 min read