NIS-2: Why act now?
NIS-2 is here: When the transition period for the new Cybersecurity Act (NISG 2026) ends on 1 October 2026, failure to comply could result in fines running into millions. Although many companies are currently in the preparation phase, implementation often requires more resources than anticipated. Studies show that a significant proportion of domestic companies misjudge the extent to which they are affected or underestimate the effort required for implementation. SMEs, in particular, often do not feel affected, yet the NISG 2026 applies to organisations with as few as 50 employees or an annual turnover of ten million euros. Furthermore, smaller companies may be affected via the supply chain. A key difference compared to NIS-1 is that, under the NIS-2 Act, the scope of information security must cover the entire organisation.
Training: The key to implementing NIS-2
NIS-2 places high demands on information security. Yet many organisations do not know where to start. This is where targeted training comes in – for every level and every role within the organisation. In the seminars run by CIS Certification, participants learn how to prepare for this and even how to utilise synergies between the NIS-2 legislation and the ISO 27001 standard (information security management).
1. NIS-2 Introductory Seminar:
Knowledge for everyone
Our introductory seminar is aimed at staff who wish to gain an overview.
It covers the key requirements of the NIS 2 Directive and demonstrates, in a practical manner, how organisations can implement them efficiently and sustainably. Ideal for beginners and anyone who wants to understand what NIS 2 means for their day-to-day work. Topics covered include implementation deadlines, security measures in line with ENISA best practices, incident reporting, liability and more.
2. ISO 27001 & NIS-2 training course:
Exploiting synergies
Anyone already involved in information security will benefit from the combined ISO 27001 & NIS-2 course.
This course links the fundamentals of information security with the specific requirements of the NIS-2 Directive. A structured introduction to EU cybersecurity, demonstrating how existing management systems can be used to achieve NIS-2 compliance. Through practical examples, participants can gain knowledge on how to implement these measures within their own organisations: from key obligations to process management.
3. NIS-2 management training:
Take responsibility
Managers bear a special responsibility. They must not only be familiar with the legal framework, but also make strategic decisions.
This management training course provides targeted preparation for the NIS 2 Directive and explains how to embed information security within the organisation – from risk analysis to incident response. We offer this training exclusively as an in-house programme on request – to ensure that the content is tailored to your organisation’s specific needs:
Why lifelong learning for everyone?
Cyber security is not just a matter for the IT department. Every employee can either be a risk factor or a layer of protection. Training raises awareness, reduces errors and strengthens the resilience of the entire organisation. Particularly in Austria, where the shortage of skilled workers in the IT security sector is keenly felt, it is crucial to bolster existing resources through targeted training. Only with proven expertise can organisations be prepared for the stricter requirements of NIS-2 and protect themselves against cyber security risks.
Companies that act now will be compliant with the law and securely positioned in good time!
Further training
CIS courses provide in-depth specialist knowledge ‘directly from the certification partner’ and cover key aspects of the standards, their interpretation and application, as well as the legal framework and psychology.
In addition to Information Security Manager and Auditor, the Business Continuity Manager or Auditor offers specific advantages, as BCM is also classified as highly relevant in the NISG 2026. Independent NIS auditors, Conflict management or Data protection: browse through our range of training courses to ensure you and your staff are fully prepared for the new legal framework. If you have any questions, our training team will be happy to help!