NIS 2

High demands on cybersecurity

Ever since the Directive on measures for a high common level of cybersecurity in the Union - NIS 2 (EU 2022/2555) came into force, cybersecurity should be a top priority for companies. NIS 2 has once again significantly expanded the catalogue of measures and obligations regarding cybersecurity for companies. This no longer only applies to "critical infrastructures" in the narrower sense, but places high cybersecurity requirements on companies across the board. NIS 2 is generally applicable to public and private organisations. In certain sectors, companies are even affected regardless of their size.

Our advisory approach

Our lawyers offer comprehensive legal and strategic advice for the implementation of NIS 2. We pursue a holistic advisory approach consisting of IT security law, data protection, compliance & risk management, insurance law (e.g. questions relating to cyber insurance), public statements and media law (protection of reputation) and, if necessary, criminal law.

When it comes to more technical issues such as the specific implementation and appropriateness of the required risk management measures, including a technical gap analysis, we work closely with specialised cooperation companies.

Our main areas of expertise


Advice on the scope of application of NIS 2


Advice on the delimitation of other national and international legal provisions


Liability within the company


Advice on the responsibility of management


Development of risk management


Advice on registration, reporting and notification obligations


Representation in disputes with supervisory authorities


Defence against supervisory and enforcement measures


Required field *

Cyber Security Team

Prevention, reaction, action: this is how we advise your company in connection with cyber risks and attacks.