{"id":8439,"date":"2024-12-19T10:01:20","date_gmt":"2024-12-19T09:01:20","guid":{"rendered":"https:\/\/www.imc-group.eu\/la-direttiva-nis2-come-nuovo-tassello-della-grc\/"},"modified":"2025-03-20T17:47:48","modified_gmt":"2025-03-20T16:47:48","slug":"the-nis2-directive-as-a-new-piece-of-the-grc-framework","status":"publish","type":"post","link":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/","title":{"rendered":"The NIS2 Directive as a New Piece of the GRC Framework"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The <a href=\"https:\/\/digital-strategy.ec.europa.eu\/en\/policies\/nis2-directive\">NIS2 Directive<\/a> represents a fundamental step in the European Union&#8217;s cybersecurity strategy, expanding the existing regulatory framework and seamlessly integrating with the principles of Governance, Risk Management, and Compliance (GRC).<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Directive is currently in the spotlight for several reasons. First and foremost, it marks a <strong>significant update to the previous 2016 NIS Directive<\/strong> by broadening its scope and introducing stricter cybersecurity requirements. This change is necessary in a context where cyber threats are constantly evolving, and critical infrastructures require stronger protection. Officially coming into force on October 16, 2024, the directive mandates that companies prepare to comply with the new security and risk management requirements.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">With its extension to 15 critical sectors\u2014including energy, transportation, healthcare, and digital services\u2014a significantly larger number of organizations will need to comply with the regulations. This expansion means that companies must now tackle more complex challenges in managing cybersecurity.<\/p>\n\n\n\n<div style=\"height:50px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\">Key Points of the NIS2 Directive<\/h3>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Expansion of Scope<\/strong><\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">NIS2 involves a significantly larger number of entities, including essential service operators and digital service providers, with the goal of protecting critical sectors such as energy, transportation, and healthcare.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Security Obligations<\/strong><\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Companies must implement technical and organizational measures to manage cybersecurity risks. This includes the timely reporting of significant incidents within 24 hours and the submission of a detailed report within 72 hours.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Integration with Other Regulations<\/strong><\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">The directive aligns with existing regulations such as GDPR and DORA, creating a coherent regulatory framework for data protection and operational resilience.<\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Focus on the Supply Chain<\/strong><\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">Organizations must ensure the security of their supply chain by assessing supplier vulnerabilities and implementing appropriate security practices.<\/p>\n\n\n\n<div style=\"height:50px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\">Implications for GRC<\/h3>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">A crucial point of NIS2 is the obligation for the management bodies of organisations to approve the risk management measures adopted. This implies that the board of directors must not only be involved in the definition of security policies, but also receive specific training to understand cyber risks and their implications on the services offered. This direct responsibility of top management marks a significant change in the way cyber security is perceived and managed within organisations.<\/p>\n\n\n\n<div style=\"height:35px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\">Risk Management with NIS2<\/h3>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">In NIS2 risk management, we do not only address \u2018cyber\u2019 risks, as often mentioned, but take a multi-risk approach. This approach aims to go beyond simply defending against cyber attacks, embracing a broader view that includes physical risks, environmental risks, supply chain risks and operational risks resulting from human error or process disruptions.<br>NIS2 promotes proactive risk management, requiring companies to conduct ongoing assessments of their risks and take appropriate technical and organisational measures. Required practices include the implementation of multi-factor authentication, encryption and supply chain security. This implies a constant review of vulnerabilities, not only internally, but also extended to suppliers, so that every link in the chain is adequately protected.<\/p>\n\n\n\n<div style=\"height:35px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\">Compliance and Sanctions<\/h3>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">With the coming into force of NIS2, companies must comply with specific requirements by 17 October 2024. Penalties for non-compliance can be severe, up to EUR 10 million or 2 per cent of global annual turnover for the most serious violations. This puts great pressure on organisations to ensure that appropriate measures are implemented and that there is clear documentation of security practices.<\/p>\n\n\n\n<div style=\"height:35px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Audit and Reporting<\/strong><\/h3>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">NIS2 also establishes strict requirements for incident reporting, requiring companies to report significant events within <strong>24 hours<\/strong> and provide a detailed analysis within <strong>72 hours<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In conclusion, the <strong>NIS2 Directive<\/strong> not only strengthens cybersecurity measures across Europe but also serves as a <strong>catalyst for the effective implementation of GRC systems<\/strong>. Through a <strong>holistic risk management approach<\/strong> and increased accountability, companies can enhance their <strong>operational resilience<\/strong> and better protect their <strong>critical infrastructure<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This integrated approach is essential for addressing the growing challenges in the cybersecurity landscape and ensuring a <strong>high level of protection for citizens and organizations across the European Union<\/strong>.<\/p>\n\n\n\n<div style=\"height:50px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\">The cybersecurity threat numbers<\/h3>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">In 2024, cyber attacks in Europe showed a significant increase, with different forms of threats affecting various sectors. More than 11,079 cyber incidents were recorded in the European Union, showing an increase over the previous year. In particular, 29% of global attacks targeted Europe, an increase from 23% in 2023. The most vulnerable sectors included public administration, which suffered 20% of attacks, and the transport and telecommunications sectors, with a 45% increase. The European water system was also targeted, demonstrating the magnitude of the threats.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<h4 class=\"wp-block-heading\"><strong>Cyberattacks in the Banking Sector<\/strong><\/h4>\n\n\n\n<p class=\"wp-block-paragraph\">The <strong>European banking sector<\/strong> has faced a <a href=\"https:\/\/www.bankingsupervision.europa.eu\/press\/interviews\/date\/2024\/html\/ssm.in240328~e66e047ea7.en.html\">significant increase in <strong>cyberattacks<\/strong><\/a>, with the number of incidents nearly <strong>doubling in 2023<\/strong> compared to the previous year.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">This surge is attributed to an increasingly <strong>hostile cyber environment<\/strong>, characterized by <strong>more sophisticated and aggressive attacks<\/strong> from authoritarian states and cybercriminal groups.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In particular, <strong>distributed denial-of-service (DDoS) attacks<\/strong> and <strong>ransomware<\/strong> have become some of the most common threats, with ransomware locking banks out of their own data. Specific examples of attacks in the banking sector include <strong>targeted incidents against third-party service providers<\/strong>, which can compromise the security of the banks themselves.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The <strong>European Central Bank (ECB)<\/strong> conducted its first <strong>cybersecurity stress test<\/strong> on <strong>109 European banks<\/strong>, highlighting the need to <strong>improve resilience and controls<\/strong> to mitigate cyber risks. This test revealed that banks must continuously <strong>invest in protection systems and incident management<\/strong> to counter growing threats.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Additionally, in the <strong>first half of 2024<\/strong>, there was a <strong>global increase in cyberattacks<\/strong>, with Europe accounting for <strong>approximately 29% of attacks worldwide<\/strong>. This marks a rise from <strong>23% in 2023<\/strong>, indicating that <strong>European banks must remain vigilant and prepared<\/strong> to respond to an ever-evolving cyber landscape.<\/p>\n\n\n\n<div style=\"height:50px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<h3 class=\"wp-block-heading\"><strong>Cyber Resilience Act: Strengthening NIS2 and the EU Cybersecurity Strategy<\/strong><\/h3>\n\n\n\n<div style=\"height:30px\" aria-hidden=\"true\" class=\"wp-block-spacer\"><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">To further strengthen the <strong>NIS2 framework<\/strong> and the <a href=\"https:\/\/digital-strategy.ec.europa.eu\/en\/policies\/cyber-resilience-act\"><strong>European cybersecurity strategy<\/strong>, the <strong>Cyber Resilience Act<\/strong> <\/a>recently came into force. It is the <strong>first EU legislation<\/strong> imposing <strong>cybersecurity obligations<\/strong> on products with digital components.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Act aims to <strong>enhance security<\/strong> by requiring <strong>mandatory software updates and consumer support<\/strong>, ensuring greater <strong>transparency of cyber risks<\/strong>. Products that comply will carry the <strong>CE marking<\/strong>, with <strong>key provisions becoming applicable from December 11, 2027<\/strong>.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The NIS2 Directive brings a wave of change in the approach to cybersecurity, requiring a global and coordinated vision. It is not just about technology but about responsibility: management takes center stage.<\/p>\n","protected":false},"author":2,"featured_media":8394,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[165,168],"tags":[167,158],"class_list":["post-8439","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-governance-en","category-normative-en","tag-grc-en","tag-risk-management-en"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.2 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>La direttiva NIS2 come nuovo tassello della GRC - IMC Group<\/title>\n<meta name=\"description\" content=\"The NIS2 Directive brings a wave of change in the approach to cybersecurity, requiring a global and coordinated vision.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"La direttiva NIS2 come nuovo tassello della GRC - IMC Group\" \/>\n<meta property=\"og:description\" content=\"The NIS2 Directive brings a wave of change in the approach to cybersecurity, requiring a global and coordinated vision.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/\" \/>\n<meta property=\"og:site_name\" content=\"IMC Group\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/GruppoIMC\" \/>\n<meta property=\"article:published_time\" content=\"2024-12-19T09:01:20+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-03-20T16:47:48+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.imc-group.eu\/wp-content\/uploads\/2024\/12\/sicurezza-informatica.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1024\" \/>\n\t<meta property=\"og:image:height\" content=\"768\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"1MC-5rOU9Mst\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"1MC-5rOU9Mst\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"6 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/\"},\"author\":{\"name\":\"1MC-5rOU9Mst\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#\\\/schema\\\/person\\\/acfa9a9c8c78b143b122ec0e5feaf39c\"},\"headline\":\"The NIS2 Directive as a New Piece of the GRC Framework\",\"datePublished\":\"2024-12-19T09:01:20+00:00\",\"dateModified\":\"2025-03-20T16:47:48+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/\"},\"wordCount\":981,\"publisher\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.imc-group.eu\\\/wp-content\\\/uploads\\\/2024\\\/12\\\/sicurezza-informatica.jpg\",\"keywords\":[\"GRC\",\"Risk Management\"],\"articleSection\":[\"Governance\",\"Normative\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/\",\"url\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/\",\"name\":\"La direttiva NIS2 come nuovo tassello della GRC - IMC Group\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.imc-group.eu\\\/wp-content\\\/uploads\\\/2024\\\/12\\\/sicurezza-informatica.jpg\",\"datePublished\":\"2024-12-19T09:01:20+00:00\",\"dateModified\":\"2025-03-20T16:47:48+00:00\",\"description\":\"The NIS2 Directive brings a wave of change in the approach to cybersecurity, requiring a global and coordinated vision.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.imc-group.eu\\\/wp-content\\\/uploads\\\/2024\\\/12\\\/sicurezza-informatica.jpg\",\"contentUrl\":\"https:\\\/\\\/www.imc-group.eu\\\/wp-content\\\/uploads\\\/2024\\\/12\\\/sicurezza-informatica.jpg\",\"width\":1024,\"height\":768,\"caption\":\"NIS2 GRC\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The NIS2 Directive as a New Piece of the GRC Framework\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/\",\"name\":\"IMC Group\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#organization\",\"name\":\"IMC Group\",\"url\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.imc-group.eu\\\/wp-content\\\/uploads\\\/2021\\\/02\\\/imc-group-logo.png\",\"contentUrl\":\"https:\\\/\\\/www.imc-group.eu\\\/wp-content\\\/uploads\\\/2021\\\/02\\\/imc-group-logo.png\",\"width\":300,\"height\":199,\"caption\":\"IMC Group\"},\"image\":{\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/GruppoIMC\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/imc-group-s-r-l\\\/\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.imc-group.eu\\\/en\\\/#\\\/schema\\\/person\\\/acfa9a9c8c78b143b122ec0e5feaf39c\",\"name\":\"1MC-5rOU9Mst\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d6b22ee19013cb2208ec7038040ab582f8e07e2ff9b3a9a554221aafea073f4d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d6b22ee19013cb2208ec7038040ab582f8e07e2ff9b3a9a554221aafea073f4d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d6b22ee19013cb2208ec7038040ab582f8e07e2ff9b3a9a554221aafea073f4d?s=96&d=mm&r=g\",\"caption\":\"1MC-5rOU9Mst\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"La direttiva NIS2 come nuovo tassello della GRC - IMC Group","description":"The NIS2 Directive brings a wave of change in the approach to cybersecurity, requiring a global and coordinated vision.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/","og_locale":"en_US","og_type":"article","og_title":"La direttiva NIS2 come nuovo tassello della GRC - IMC Group","og_description":"The NIS2 Directive brings a wave of change in the approach to cybersecurity, requiring a global and coordinated vision.","og_url":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/","og_site_name":"IMC Group","article_publisher":"https:\/\/www.facebook.com\/GruppoIMC","article_published_time":"2024-12-19T09:01:20+00:00","article_modified_time":"2025-03-20T16:47:48+00:00","og_image":[{"width":1024,"height":768,"url":"https:\/\/www.imc-group.eu\/wp-content\/uploads\/2024\/12\/sicurezza-informatica.jpg","type":"image\/jpeg"}],"author":"1MC-5rOU9Mst","twitter_card":"summary_large_image","twitter_misc":{"Written by":"1MC-5rOU9Mst","Est. reading time":"6 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/#article","isPartOf":{"@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/"},"author":{"name":"1MC-5rOU9Mst","@id":"https:\/\/www.imc-group.eu\/en\/#\/schema\/person\/acfa9a9c8c78b143b122ec0e5feaf39c"},"headline":"The NIS2 Directive as a New Piece of the GRC Framework","datePublished":"2024-12-19T09:01:20+00:00","dateModified":"2025-03-20T16:47:48+00:00","mainEntityOfPage":{"@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/"},"wordCount":981,"publisher":{"@id":"https:\/\/www.imc-group.eu\/en\/#organization"},"image":{"@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/#primaryimage"},"thumbnailUrl":"https:\/\/www.imc-group.eu\/wp-content\/uploads\/2024\/12\/sicurezza-informatica.jpg","keywords":["GRC","Risk Management"],"articleSection":["Governance","Normative"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/","url":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/","name":"La direttiva NIS2 come nuovo tassello della GRC - IMC Group","isPartOf":{"@id":"https:\/\/www.imc-group.eu\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/#primaryimage"},"image":{"@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/#primaryimage"},"thumbnailUrl":"https:\/\/www.imc-group.eu\/wp-content\/uploads\/2024\/12\/sicurezza-informatica.jpg","datePublished":"2024-12-19T09:01:20+00:00","dateModified":"2025-03-20T16:47:48+00:00","description":"The NIS2 Directive brings a wave of change in the approach to cybersecurity, requiring a global and coordinated vision.","breadcrumb":{"@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/#primaryimage","url":"https:\/\/www.imc-group.eu\/wp-content\/uploads\/2024\/12\/sicurezza-informatica.jpg","contentUrl":"https:\/\/www.imc-group.eu\/wp-content\/uploads\/2024\/12\/sicurezza-informatica.jpg","width":1024,"height":768,"caption":"NIS2 GRC"},{"@type":"BreadcrumbList","@id":"https:\/\/www.imc-group.eu\/en\/the-nis2-directive-as-a-new-piece-of-the-grc-framework\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.imc-group.eu\/en\/"},{"@type":"ListItem","position":2,"name":"The NIS2 Directive as a New Piece of the GRC Framework"}]},{"@type":"WebSite","@id":"https:\/\/www.imc-group.eu\/en\/#website","url":"https:\/\/www.imc-group.eu\/en\/","name":"IMC Group","description":"","publisher":{"@id":"https:\/\/www.imc-group.eu\/en\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.imc-group.eu\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.imc-group.eu\/en\/#organization","name":"IMC Group","url":"https:\/\/www.imc-group.eu\/en\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.imc-group.eu\/en\/#\/schema\/logo\/image\/","url":"https:\/\/www.imc-group.eu\/wp-content\/uploads\/2021\/02\/imc-group-logo.png","contentUrl":"https:\/\/www.imc-group.eu\/wp-content\/uploads\/2021\/02\/imc-group-logo.png","width":300,"height":199,"caption":"IMC Group"},"image":{"@id":"https:\/\/www.imc-group.eu\/en\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/GruppoIMC","https:\/\/www.linkedin.com\/company\/imc-group-s-r-l\/"]},{"@type":"Person","@id":"https:\/\/www.imc-group.eu\/en\/#\/schema\/person\/acfa9a9c8c78b143b122ec0e5feaf39c","name":"1MC-5rOU9Mst","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/d6b22ee19013cb2208ec7038040ab582f8e07e2ff9b3a9a554221aafea073f4d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/d6b22ee19013cb2208ec7038040ab582f8e07e2ff9b3a9a554221aafea073f4d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d6b22ee19013cb2208ec7038040ab582f8e07e2ff9b3a9a554221aafea073f4d?s=96&d=mm&r=g","caption":"1MC-5rOU9Mst"}}]}},"_links":{"self":[{"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/posts\/8439","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/comments?post=8439"}],"version-history":[{"count":2,"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/posts\/8439\/revisions"}],"predecessor-version":[{"id":8443,"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/posts\/8439\/revisions\/8443"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/media\/8394"}],"wp:attachment":[{"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/media?parent=8439"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/categories?post=8439"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.imc-group.eu\/en\/wp-json\/wp\/v2\/tags?post=8439"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}