On 5 December 2025, the Act Transposing the NIS 2 Directive and Regulating Key Aspects of Information Security Management in the Federal Administration (Gesetz zur Umsetzung der NIS-2-Richtlinie und zur Regelung wesentlicher Grundzüge des Informationssicherheitsmanagements in der Bundesverwaltung (“NIS2UmsG”) (see here, in German only) became binding in Germany. According to the Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik (“BSI”) (see here, in German only), roughly 29,500 companies will have to comply with the increased cybersecurity requirements adopted by the NIS2UmsG.
Latest Post
More Posts
German Government Proposes GDPR Reform to Shift Responsibility to Manufacturers
New German Guidelines on GDPR Requirements for International Transfers of Health Data in Medical Research
German Government Proposes to Amend Federal Data Protection Act
German Data Protection Authorities Publish Paper on Cloud-Based Digital Health Applications
CJEU’s Advocate General Issues Opinion on GDPR Fines Against Companies
German Supervisory Authorities Publish Opinion on (Paid) Subscription Websites
German DSK Publishes Decision on the Data Protection Assessment of Access Possibilities of Third Country Public Authorities to Personal Data
The German Government is Drafting a Regulation on Cookie Consent Management Services
German Supervisory Authorities Publish Paper on Scientific Research and Data Protection
Subscribe: Subscribe via RSS