NIS2 Directive
Directive (EU) 2022/2555 on measures for a high common level of cybersecurity across the Union, covering essential and important entities.
Framework summaries on this platform are AI-assisted interpretations for educational and compliance planning purposes. They do not reproduce or replace the official standards. Refer to the authoritative source for the definitive text. Framework names and trademarks belong to their respective organisations.
Framework Domains (8)
Enforcement
| Code | Title |
|---|---|
| NIS2D-7 | Penalties, Enforcement, and Article 32-34 Supervision |
Governance
| Code | Title |
|---|---|
| NIS2D-4 | Management Body Accountability and Training - Articles 20 and 26 |
Incident Reporting
| Code | Title |
|---|---|
| NIS2D-3 | Incident Reporting Obligations - Articles 23 and 30 |
International Cooperation
| Code | Title |
|---|---|
| NIS2D-8 | Cross-Border Coordination, ENISA, CSIRTs Network, and CER Coordination |
Risk Management
| Code | Title |
|---|---|
| NIS2D-2 | Cybersecurity Risk Management Measures - Article 21 |
Scope and Applicability
| Code | Title |
|---|---|
| NIS2D-1 | NIS2 Scope, Essential and Important Entities, Sectoral Coverage |
Supply Chain
| Code | Title |
|---|---|
| NIS2D-5 | Supply Chain Security - Article 21(2)(d) and 22 |
Vulnerability Management
| Code | Title |
|---|---|
| NIS2D-6 | Vulnerability Disclosure and CVD Programme - Article 12 and 21 |
Your Compliance Coverage
If you comply with NIS2 Directive, you already cover:
API 1164
75%
6 controls mapped
Compare →IEC 62443
75%
6 controls mapped
Compare →ISO 27019
75%
6 controls mapped
Compare →+ 144 more: ISO/IEC 27010:2015 (75%), Protective Security Policy Framework (PSPF) Release 2024 (63%)
See all 147 mapped frameworks ↓Maps to 147 other frameworks
Frequently Asked Questions
What is NIS2 Directive?
NIS2 Directive is a compliance framework from European Union with 8 domains and 8 controls. Directive (EU) 2022/2555 on measures for a high common level of cybersecurity across the Union, covering essential and important entities. It is used by organisations to establish and maintain compliance with industry standards and regulatory requirements.
How many controls does NIS2 Directive have?
NIS2 Directive has 8 controls organised across 8 domains. The largest domains are Enforcement (1 controls), Governance (1 controls), Incident Reporting (1 controls). Each control defines specific requirements that organisations must implement to achieve compliance.
What frameworks does NIS2 Directive map to?
NIS2 Directive maps to 147 other compliance frameworks. The top mapping partners are API 1164 (75% coverage), IEC 62443 (75% coverage), ISO 27019 (75% coverage). Use our comparison tool to explore control-level mappings between frameworks.
How do I get started with NIS2 Directive compliance?
Start your NIS2 Directive compliance journey by running a self-assessment on our platform to identify your current compliance posture. Our AI advisory can answer specific questions about NIS2 Directive requirements, and cross-framework mapping helps you leverage existing controls from other frameworks you may already comply with. Create a free account to access all 8 controls and track your progress.
Start Your Compliance Journey
Create a free account to run self-assessments, get AI advisory, and track your compliance progress across 718 frameworks.
Get Started Free →Free forever — no credit card required