Skip to content
No results
  • About NIS 2
  • Affected Sectors
  • Compliance Toolkits
  • EU Regulation
    • NIS 2 Directive (EU) 2022/2555
    • CER – Directive on the Resilience of Critical Entities (Directive 2022/2557)
    • DORA – Digital Operational Resilience Act ( Regulation 2022/2554)
    • CER – Directive on the Resilience of Critical Entities (Proposal for Regulation)
    • List of essential services (Regulation (EU) 2019/881)
    • ENISA Mandate and Regulatory Framework (Regulation 2023/2450)
    • The European Data Act (Regulation 2023/2854)
  • Law Transposition
Download checklistGet ready with our self assesment
NIS2 Directive (EU) 2022/2555
  • About NIS 2
  • Affected Sectors
  • Compliance Toolkits
  • EU Regulation
    • Directive on measures for a high common level of cybersecurity across the Union (NIS 2)
      Directive (EU) 2022/2555 of the European Parliament and of the Council of 14 December 2022 on measures for a high common level of cybersecurity across the Union
      Directive on the Resilience of Critical Entities (CER)
      Directive (EU) 2022/2557 of the European Parliament and of the Council of 14 December 2022 on the resilience of critical entities and repealing Council Directive 2008/114/EC
      Digital Operational Resilience Act (DORA)
      Directive (EU) 2022/2554 of the European Parliament and of the Council o of 14 December 2022 on digital operational resilience for the financial sector and amending Regulations
      Proposal for the new Cyber Resilience Act (CRA)
      Proposal: Regulation of the European Parliament and of the Council on horizontal cybersecurity requirements for products with digital elements and amending Regulation (EU) 2019/1020
      List of essential services
      Commission Delegated Regulation (EU) 2023/2450 of 25 July 2023 supplementing Directive (EU) 2022/2557 of the European Parliament and of the Council by establishing a list of essential services
      EU Agency for Cybersecurity
      Regulation (EU) 2019/881 of the European Parliament and of the Council of 17 April 2019 on ENISA (the European Union Agency for Cybersecurity)
      The European Data Act
      Regulation (EU) 2023/2854 of the European Parliament and of the Council of 13 December 2023 on harmonised rules on fair access to and use of data.
      European laws and regulations in the context of cybersecurity
      MORE INFORMATION

  • Law Transposition
English (UK)en_GB
  • Deutschde_DE
  • Françaisfr_FR
  • Nederlandsnl_NL
  • Españoles_ES
  • Italianoit_IT
NIS2 Directive (EU) 2022/2555

Article 46, Addressees

Home NIS 2 Directive (EU) 2022/2555 Article 46, Addressees

This Directive is addressed to the Member States.

Directive (EU) 2022/2555

  • Preamble
  • Article 1, Subject matter
  • Article 2, Scope
  • Article 3, Essential and important entities
  • Article 4, Sector-specific Union legal acts
  • Article 6, Definitions
  • Article 7, National cybersecurity strategy
  • Article 8, Competent authorities and single points of contact
  • Article 9, National cyber crisis management frameworks
  • Article 10, Computer security incident response teams (CSIRTs)
  • Article 11, Requirements, technical capabilities and tasks of CSIRTs
  • Article 12, Coordinated vulnerability disclosure and a European vulnerability database
  • Article 13, Cooperation at national level
  • Article 14, Cooperation Group
  • Article 15, CSIRTs network
  • Article 16, European cyber crisis liaison organisation network (EU-CyCLONe)
  • Article 17, International cooperation
  • Article 18, Report on the state of cybersecurity in the Union
  • Article 19, Peer reviews
  • Article 20, Governance
  • Article 21, Cybersecurity risk-management measures
  • Article 22, Union level coordinated security risk assessments of critical supply chains
  • Article 23, Reporting obligations
  • Article 24, Use of European cybersecurity certification schemes
  • Article 25, Standardisation
  • Article 26, Jurisdiction and territoriality
  • Article 27, Registry of entities
  • Article 28, Database of domain name registration data
  • Article 29, Cybersecurity information-sharing arrangements
  • Article 30, Voluntary notification of relevant information
  • Article 31, General aspects concerning supervision and enforcement
  • Article 32, Supervisory and enforcement measures in relation to essential entities
  • Article 33, Supervisory and enforcement measures in relation to important entities
  • Article 34, General conditions for imposing administrative fines on essential and important entities
  • Article 35, Infringements entailing a personal data breach
  • Article 36, Penalties
  • Article 37, Mutual assistance
  • Article 38, Exercise of the delegation
  • Article 39, Committee procedure
  • Article 40, Review
  • Article 41, Transposition
  • Article 42, Amendment of Regulation (EU) No 910/2014
  • Article 43, Amendment of Directive (EU) 2018/1972
  • Article 44, Repeal
  • Article 45, Entry into force
  • Article 46, Addressees

Law Transposition status

To date, EU countries have achieved uneven levels of progress, and have sometimes adopted different approaches to transposition.

NIS 2 Directive

The final text of the NIS2 Directive, formally known as Directive (EU) 2022/2555

Free Assesment Tools

Vulnerability scanner & automated NIS2 assessment
Coordinated Vulnerability Disclosure (CVD) Platform

Ready-to-use templates

NIS 2 compliance Checklist
NIS 2 Directive and ISO 27001:2022
The Essential NIS2 Handbook

EU Related regulations

Critical Entities Resilience Directive (CER)
Proposal - Cyber Resilience Act (CRA)
The Digital Resilience Act (DORA)
ENISA Mandate and Regulatory Framework
The European Data Act
List of essential services (Regulation 2023/2450)

Copyright © 2025 - Edgewatch's NIS2 Resources Center. Privacy Policy

  • English (UK)
  • Deutsch
  • Français
  • Nederlands
  • Español
  • Italiano