Chapter IGENERAL PROVISIONS
- Article 1Subject matter
1. This Directive lays down measures that aim to achieve a high common level of cybersecurity across the Union, with a view to improving the functioning of the…
- Article 2Scope
1. This Directive applies to public or private entities of a type referred to in Annex I or II which qualify as medium-sized enterprises under Article 2 of…
- Article 3Essential and important entities
1. For the purposes of this Directive, the following entities shall be considered to be essential entities: (a) entities of a type referred to in Annex I which…
- Article 4Sector-specific Union legal acts
1. Where sector-specific Union legal acts require essential or important entities to adopt cybersecurity risk-management measures or to notify significant incidents and where those requirements are at least…
- Article 5Minimum harmonisation
This Directive shall not preclude Member States from adopting or maintaining provisions ensuring a higher level of cybersecurity, provided that such provisions are consistent with Member States’ obligations…
- Article 6Definitions
For the purposes of this Directive, the following definitions apply: (1) ‘network and information system’ means: (a) an electronic communications network as defined in Article 2, point (1),…
https://nis2.digiphile.law/chapter/chapter-I.html
Text as at 19 September 2026.
This is an unofficial convenience version of the EU NIS2 Directive (Directive (EU) 2022/2555). It is presented “as is” without guarantee of accuracy, completeness or reliability. See the source text for the official version. This site was last updated in September 2026.