{"id":876,"date":"2024-01-29T16:47:57","date_gmt":"2024-01-29T16:47:57","guid":{"rendered":"https:\/\/nis2resources.eu\/?page_id=876"},"modified":"2024-08-09T09:29:27","modified_gmt":"2024-08-09T09:29:27","slug":"article-33","status":"publish","type":"page","link":"https:\/\/nis2resources.eu\/directive-2022-2555-nis2\/article-33\/","title":{"rendered":"Article 33, Supervisory and enforcement measures in relation to important entities"},"content":{"rendered":"\n
1. When provided with evidence, indication or information that an important entityEntity<\/span> Means a natural or legal person created and recognised as such under the national law of its place of establishment, which may, acting under its own name, exercise rights and be subject to obligations.\r\r- Definition according Article 6 Directive (EU) 2022\/2555 (NIS2 Directive)<\/a><\/span><\/span><\/span> allegedly does not comply with this Directive, in particular Articles 21 and 23 thereof, Member States shall ensure that the competent authorities take action, where necessary, through ex post supervisory measures. Member States shall ensure that those measures are effective, proportionate and dissuasive, taking into account the circumstances of each individual case.<\/p>\n\n\n\n 2. Member States shall ensure that the competent authorities, when exercising their supervisory tasks in relation to important entities, have the power to subject those entities at least to:<\/p>\n\n\n\n (a) on-site inspections and off-site ex post supervision conducted by trained professionals;<\/p>\n\n\n\n (b) targeted security audits carried out by an independent body or a competent authority;<\/p>\n\n\n\n (c) security scans based on objective, non-discriminatory, fair and transparent riskRisk<\/span> Means the potential for loss or disruption caused by an incident and is to be expressed as a combination of the magnitude of such loss or disruption and the likelihood of occurrence of the incident.\r\r- Definition according Article 6 Directive (EU) 2022\/2555 (NIS2 Directive)<\/a><\/span><\/span><\/span> assessment criteria, where necessary with the cooperation of the entity concerned;<\/p>\n\n\n\n