NIS2⁴ Board - for top management

NIS2: New responsibilities for senior management

Requirements:
  • No experience required

NIS2⁴ Board - for senior managementIf the new Cybersecurity Act and its implementing decrees classify you as a regulated service provider, it doesn't just mean an increase in requirements for the IT department. It is a fundamental change in the accountability framework of the entire organisation - especially its senior management.

Target group

Who the course is for:

  • Directors and board members of companies in both senior and junior roles

  • CFOs, COOs, CIOs and heads of legal and compliance departments

  • Heads of public entities, municipalities, universities or research institutes

  • Members of control and supervisory bodies

What will you learn

More information
  • Ensuring management participation in cyber risk management (strategic, not operational role),
  • Establishing policies and internal rules that allow control and oversight of security measures,
  • Regular assessment of cybersecurity status - not once a year on paper, but as part of corporate governance,
  • Adequate evaluation of incidents - not only from an IT perspective, but also the impact on the management and accountability of the organisation as a whole,
  • Ensuring adequate capacity and resources to implement the measures - yes, including budget and staffing.

Terms

Currency
Term
Place
Length
Language
Price without VAT

No results match the specified filters

Loading...

Do you want this course individually?

Let us know!

This course can be customized - either as an individual training 1:1 or for your team. Just leave us your contact and we will contact you with options tailored to your needs.

Successfully sent

We will contact you.

Timeline

First Day

09:00 – 17:00 ISMS according to ZoKB and the use of AI in practice
  • Implementation of an Information Security Management System (ISMS)
  • Creation of AI-enabled security documentation
  • Risk management in the context of ISMS
  • Supplier requirements and asset management

Second Day

09:00 – 17:00 NIS2, human factor and AI as a challenge and solution
  • The NIS2 Directive and its practical implications
  • Cyber measures and NIS2 governance
  • Practical workshop: risk analysis with AI
  • Human Factors and Social Engineering
  • AI in cybersecurity: opportunity or threat?
  • Block length 90
  • Teaching hours 16
  • Refreshments Yes
  • Exam No

The opening day of the training focuses on the implementation of an Information Security Management System (ISMS) in accordance with the Cybersecurity Act. Participants will learn how to properly scope an ISMS, identify key assets, and set security policies and measures. A significant portion of the program is devoted to the practical use of artificial intelligence - particularly tools such as Microsoft Copilot and ChatGPT - to effectively create security documentation, automate policies, and manage risk. Demonstrations of AI-generated documents and threat prediction are complemented by a model scenario of a vendor failure and its impact on an organization's security framework.

The second day focuses on the requirements of the NIS2 directive, which newly expands cybersecurity legislative obligations. Attendees will gain an overview of the key articles of the directive, the differences between essential and critical actors, and compliance obligations. The hands-on workshop will demonstrate the use of AI in risk analysis and the preparation of audit deliverables. In the human factors portion, the training will explore social engineering and the new deception techniques enabled by AI - from deepfake videos to generated emails. It concludes with a discussion of AI as a cyber defence tool and potential threat, including ethical dilemmas and future developments.

Frequently asked questions

All questions

What changes does NIS2 bring?

The scope of obligations to ensure information and cyber security will not change that much with the new law. What will be new, however, will be the number of regulated entities. Under the current cyber security law regime, obligations are imposed on several hundred larger firms and public bodies. The new law will affect thousands, if not tens of thousands, of organizations. Including a number of medium and smaller entities. Even in areas that have not yet been covered by any regulation directly related to information or cyber security, such as the food industry, waste management, the provision of certain IT services, transport, etc.

What is NIS2?

NIS2 is an updated version of the 2016 Network and Information Security Directive. NIS2 significantly expands the scope of the current legislation and presents a new solution to strengthen and secure European cyberspace. EU Member States are obliged to adapt this Directive into their legal system.

Your next career step