Defining the reporting threshold for a cybersecurity incident under the NIS Directive and the NIS 2 Directive

被引:9
|
作者
Schmitz-Berndt, Sandra [1 ,2 ]
机构
[1] Univ Luxembourg, Fac Law Econ & Finance, L-2721 Luxembourg, Luxembourg
[2] 4 Rue Alphonse Weicker, L-2721 Luxembourg, Luxembourg
来源
JOURNAL OF CYBERSECURITY | 2023年 / 9卷 / 01期
关键词
NIS Directive; incident reporting; cybersecurity; NIS; 2; Directive;
D O I
10.1093/cybsec/tyad009
中图分类号
C [社会科学总论];
学科分类号
03 ; 0303 ;
摘要
The NIS Directive and sector-specific cybersecurity regulations require the reporting of (security) incidents to supervisory authorities. Following the risk-based approach adopted in the NIS Directive, the NIS 2 Directive enlists as a basic security element the reporting of significant incidents that (i) have caused or (ii) are capable to cause harm, as well as (iii) notifying the service recipients of cyber threats. Although during the interinstitutional negotiations between the European Commission, the European Parliament, and the Council of the European there was consensus that the NIS Directive's reporting framework needs to be reformed, views on the determination of what needs to be reported varied. This paper outlines and analyses the different concepts of a report-worthy significant incident that have been proposed during the legislative procedure for the NIS 2 Directive from a legal and policy perspective. Irrespective of further motives that may inhibit reporting, legal compliance is difficult to achieve where legal requirements are vague. In that regard, the difficulties to determine the reporting thresholds in the past and in the future are addressed. In consideration of the increased attack surface and threat scenario, it is argued that incidents where no harm has materialized should not be treated any different than incidents that have actually resulted in harm in order to acquire the envisaged full picture of the threat landscape and create value for business and society.
引用
收藏
页数:11
相关论文
共 50 条
  • [41] GROWTH OF NIS2 SINGLE-CRYSTALS BY SUBLIMATION UNDER CONTROLLED SULFUR PRESSURE
    TANAKA, U
    KOMORI, T
    ISHIZAWA, N
    MARUMO, F
    NODA, Y
    JOURNAL OF CRYSTAL GROWTH, 1993, 129 (3-4) : 683 - 685
  • [42] Clean realization of Hund's physics near the Mott transition: NiS2 under pressure
    Park, Ina
    Jang, Bo Gyu
    Kim, Dong Wook
    Shim, Ji Hoon
    Kotliar, Gabriel
    PHYSICAL REVIEW B, 2024, 109 (04)
  • [43] One step ahead: mapping the Italian and German cybersecurity laws against the proposal for a NIS2 directiveEinen Schritt voraus – Ein Abgleich der italienischen und deutschen Cybersicherheitsgesetze mit dem Vorschlag für eine NIS2-Richtlinie
    Sandra Schmitz-Berndt
    Pier Giorgio Chiara
    International Cybersecurity Law Review, 2022, 3 (2): : 289 - 311
  • [44] REFLECTANCE AND RAMAN-SPECTRA OF MS2FES2, NIS2 UNDER HIGH-PRESSURE
    TAKAHASHI, H
    JOURNAL OF MAGNETISM AND MAGNETIC MATERIALS, 1986, 54-7 : 1019 - 1020
  • [45] Retrieval of Chlorophyll a from Sentinel-2 MSI Data for the European Union Water Framework Directive Reporting Purposes
    Ansper, Ave
    Alikas, Krista
    REMOTE SENSING, 2019, 11 (01)
  • [46] Removal of trichlorophenol from wastewater using NiS/RGO/TiO2 composite as an efficient photocatalyst under sunlight
    Alenizi, M. A.
    Alseroury, F. A.
    Kumar, Rajeev
    Aslam, M.
    Barakat, M. A.
    DESALINATION AND WATER TREATMENT, 2020, 173 : 267 - 273
  • [47] Preparation of NiS/ZnIn2S4 as a superior photocatalyst for hydrogen evolution under visible light irradiation
    Wei, Liang
    Chen, Yongjuan
    Zhao, Jialin
    Li, Zhaohui
    BEILSTEIN JOURNAL OF NANOTECHNOLOGY, 2013, 4 : 949 - 955
  • [48] Perceived Risk as a Determinant of Propensity to Adopt Account Information Services under the EU Payment Services Directive 2
    Rosati, Pierangelo
    Fox, Grace
    Cummins, Mark
    Lynn, Theo
    JOURNAL OF THEORETICAL AND APPLIED ELECTRONIC COMMERCE RESEARCH, 2022, 17 (02): : 493 - 506
  • [49] NIS-Mediated Oxidative Lactonization of 2-Arylbenzoic Acids for the Synthesis of Dibenzopyranones under Metal-Free Conditions
    Gao, Peng
    Wei, Yunyang
    SYNTHESIS-STUTTGART, 2014, 46 (03): : 343 - 347
  • [50] Environmental quality standards for diclofenac derived under the European water framework directive: 2. Avian secondary poisoning
    Peters, A.
    Crane, M.
    Merrington, G.
    Ryan, Jim
    ENVIRONMENTAL SCIENCES EUROPE, 2022, 34 (01)