The regulation outlines the technical and methodological requirements for DNS service providers, TLD name registries, cloud computing service providers, and other relevant entities like content delivery networks, managed services, online marketplaces, search engines, and social networking platforms. It specifies the measures referred to in NIS2 Article 21(2), focusing on security measures these entities must adopt. Furthermore, it defines when an incident qualifies as significant, establishing the thresholds for reporting and response.
Author: European Commission
Status: Adopted / Published
Adoption date: 2024-10-17
Last updated: 08 Aug 2025
Category: Relevant legislation
Subcategory: Implementing Regulation