The Dutch Cybersecurity Act takes effect on 15 August 2026, without a transition period. What NIS2 and the supply-chain duty of care really require of you — and why you have to demonstrate it, not just declare it.
Published on July 11, 2026
Sector plus size determine whether your organisation falls under NIS2 and the Dutch Cybersecurity Act. Walk through the self-check: which sectors, which thresholds, the exceptions, and what to arrange before 15 August 2026.
Read article →Published on July 7, 2026
The Dutch Senate has adopted the Cybersecurity Act and the Critical Entities Resilience Act. Both enter into force on 15 August 2026. What does this mean for your organisation and your suppliers?
Read article →Published on June 16, 2026
NIS2 does not mandate any specific tool. Learn what the supply-chain duty of care really asks of you, when the Dutch Cybersecurity Act takes effect, and how to substantiate it with evidence.
Read article →Published on June 12, 2026
A NIS2 supplier questionnaire from your large customer on your desk? How to answer the four themes that follow directly from the NIS2 requirements — patch management, MFA, incident response and your own suppliers — with evidence the assessor takes seriously.
Read article →Published on June 12, 2026
A practical NIS2 roadmap for public-sector boards: from duty of care to demonstrable compliance in five steps. With concrete actions for scope, training, monitoring, incident response and the audit trail.
Read article →Published on June 5, 2026
NIS2 makes cybersecurity a board-level responsibility. Read what this means for public-sector directors, liability, duty of care, training obligations and demonstrable risk management.
Read article →Published on May 26, 2026
An honest take: scanning for vulnerabilities does not make you NIS2 compliant. But it does provide defensible evidence for vulnerability management and the supply-chain duty of care.
Read article →Published on May 12, 2026
Through the supply-chain duty of care, NIS2 and the Dutch Cybersecurity Act also affect SME suppliers. What your large customer expects of you and how to demonstrate basic cyber hygiene.
Read article →