Legal Regulations

    Stay compliant with the latest cybersecurity regulations and directives

    CER Directive (Critical Entities Resilience)

    New EU directive on the resilience of critical entities, replacing Directive 2008/114/EC.

    Key aspects

    • Identification of critical entities
    • Mandatory security measures
    • Risk assessment and planning
    • International cooperation
    • Monitoring and reporting

    Requirements

    • Risk assessment every 4 years
    • Operational resilience plan
    • Plan testing every 2 years
    • Incident reporting
    • Cooperation with national authorities

    NIS2 Self-Assessment

    Tool for self-assessment of NIS2 directive compliance, enabling identification of areas requiring improvement.

    Key aspects

      Assessment areas

        Machinery Directive

        New EU directive on machinery, introducing cybersecurity requirements for machines and machinery systems.

        Key aspects

        • Cybersecurity requirements for machinery
        • Cybersecurity risk assessment
        • Technical documentation
        • CE marking and declaration of conformity
        • Monitoring and reporting

        Requirements

        • Cybersecurity risk assessment
        • Implementation of security measures
        • Technical documentation
        • Compliance certification
        • Progress monitoring

        CRA (Cyber Resilience Act)

        New EU directive on cyber resilience of digital products, introducing security requirements for software and hardware.

        Key aspects

        • Security requirements for digital products
        • Cybersecurity risk assessment
        • Security documentation
        • Compliance certification
        • Monitoring and reporting

        Requirements

        • Cybersecurity risk assessment
        • Implementation of security measures
        • Security documentation
        • Compliance certification
        • Progress monitoring

        UKSC (National Cybersecurity System Act)

        Polish act implementing the NIS2 directive, regulating the national cybersecurity system and obligations of critical entities.

        Key aspects

        • Identification of critical entities
        • Mandatory security measures
        • Risk assessment and planning
        • Cooperation with national authorities
        • Monitoring and reporting

        Requirements

        • Risk assessment every 4 years
        • Operational resilience plan
        • Plan testing every 2 years
        • Incident reporting
        • Cooperation with CSIRT MON

        External Tools

        CyberDay.ai - NIS2 Assessment

        Free tool for self-assessment of NIS2 directive compliance

        • Free self-assessment
        • Detailed report
        • Recommendations
        • Progress monitoring
        Go to tool