Training Cybersecurity Act (Directive (EU) 2555/2022 NIS 2)
0
days
0
hours
0
minutes
0
seconds
Date
02-02-2026.
Hour
09:00 ч. - 13:00 ч.
Place
Online event
EU Directive 2555/2022 (NIS 2) is the second version of the Network and Information Security (NIS) Directive, which aims to harmonise cybersecurity standards across EU Member States. Entering into force in January 2023, it replaces the previous NIS Directive from 2016, expanding its scope and introducing new requirements for organisations operating in key economic sectors. A key priority is to build cybersecurity and a cyber culture in critical and important sectors. EU Directive NIS2 2555/2022 is also transposed into the Cybersecurity Act.
The sectors covered by the directive are the following:
- Energy,
- Air, rail, road and water transport
- Banking/finance
- Healthcare
- Water resources management
- Digital infrastructure
- Public administration
- Postal and courier services
- Waste management
- Food - production, processing and distribution
- Chemical products – production and distribution
- Manufacturers – medical/diagnostic devices, computers, electronics, automobiles, optics, machinery, transportation equipment
- Digital service providers
- Research organizations
Sectors with high criticality:
- Energy
- Transport (Air, rail, road and water transport)
- Banking sector
- Financial market infrastructures
- Healthcare
- Drinking water
- Wastewater
- Water resources management
- Digital infrastructure
- ICT Service Management (Business-to-Business)
- Public administration
- Outer space
Other critical sectors:
- Postal and courier services
- Waste management
- Production, preparation and distribution of chemicals
- Food production, processing and distribution
- Manufacture of medical devices and in vitro diagnostic medical devices; computers, electronic and optical products; electrical equipment; motor vehicles, trailers and semi-trailers; machinery and equipment not elsewhere classified; other transport equipment
- Digital service providers
- Scientific research
The event is suitable for executives, IT managers and professionals who want to improve the protection of critical infrastructure in their organizations and implement the requirements of the MIS2 directive.
TOPICS:
1. Objectives and scope of the NIS-2 Directive
- Importance of NIS-2 for cybersecurity in the EU
- Expanded scope of NIS-2 and the main and important sectors included
- Key objectives for enhancing the security and resilience of cyberspace in the EU
2. Approaches to work, in accordance with NIS-2
- Approach to risk management and incident reporting
- Achieving the mandatory general level of security and resilience of information systems
- Working in synergy between management and IT departments
3. The technical requirements of the directive and the need for action for management and employees
- Comprehensive risk assessment and adoption of a shared responsibility model
- Requirements for regular training and integrated incident reporting
- Technological requirements: multi-factor authentication, access control, and encryption
4. Measures for effective risk management
- Basic risk management policies: risk analysis, information system security, "cyber hygiene"„
- Business continuity policies, including backups and disaster recovery
- Supply chain security and requirements for suppliers and partners
5. Responsibility of the managers of the given organization in NIS-2
- Changes in management responsibilities for approving and monitoring risk management measures
- Leadership commitment to cybersecurity as a core organizational value
- Possible legal consequences of non-compliance with NIS-2
6. Application of NIS-2 and penalties?
- Practical guidelines for implementing NIS-2 in your organization
- Steps for cross-frame management and coordination between departments
- Building an incident response planPossible fines and sanctions for non-compliance
- Potential consequences for the organization's reputation and operations
7. Preparing for the introduction of NIS-2?
- Preparation steps: from risk assessment to employee training
- Integrating cybersecurity into company culture and daily operations
- Proactive measures and long-term compliance strategies
8. Questions and answers
- Discussion and questions from participants, examples and good practices
Program:
09:00 – 09:30 – Login to the online platform and registration
09:30 – 11:00 – Objectives and scope of the NIS-2 Directive.
Approaches to work, in accordance with NIS-2. The technical requirements of the directive and the need for action for management and employees
11:00 – 11:20 – Short break
11:20 – 13:00 – Measures for effective risk management. Responsibility of those managing the organization. Application of NIS-2 and sanctions
Preparation for introduction.
1:00 PM – 1:30 PM – Questions and answers
250 BGN with VAT (127.82 EUR) 215 BGN including VAT (109.93 EUR) per participant upon registration by 16.01.2026.
Payment is made by bank transfer, based on a proforma invoice, which you will receive by e-mail after registration. The indicated price is final with VAT.
All participants will receive a PDF digitally certificate of completion of training on the topic „"The New Cybersecurity Law. NIS-2 Directive"“. The document will be sent by e-mail after the training.
For registration of more participants, please visit https://cybernational.eu or contact us at:
- Mobile: 0893 690280
- email: office@cybernational.eu
- https://cybernational.eu
Start your career transformation today
Are you ready to develop your IT skills and achieve your career goals? Enroll in our courses now and start learning from leading industry experts.
Start now