Data & Privacy
AI & Trust
Cybersecurity
Digital Services & Media
CHAPTER I
General provisionsArticles 1 — 4
CHAPTER II
ICT risk managementArticles 5 — 16
CHAPTER III
ICT-related incident management, classification and reportingArticles 17 — 23
CHAPTER IV
Digital operational resilience testingArticles 24 — 27
CHAPTER V
Managing of ICT third-party riskArticles 28 — 44
CHAPTER VI
Information-sharing arrangementsArticles 45 — 45
CHAPTER VII
Competent authoritiesArticles 46 — 56
CHAPTER VIII
Delegated actsArticles 57 — 57
CHAPTER IX
Transitional and final provisionsArticles 58 — 64
ARTICLE 5
Governance and organisation
ARTICLE 6
ICT risk management framework
ARTICLE 7
ICT systems, protocols and tools
ARTICLE 8
Identification
ARTICLE 9
Protection and prevention
ARTICLE 10
Detection
ARTICLE 11
Response and recovery
ARTICLE 12
Backup policies and procedures, restoration and recovery procedures and methods
ARTICLE 13
Learning and evolving
ARTICLE 14
Communication
ARTICLE 15
Further harmonisation of ICT risk management tools, methods, processes and policies
ARTICLE 16
Simplified ICT risk management framework