{"id":25429,"date":"2023-05-22T15:35:15","date_gmt":"2023-05-22T13:35:15","guid":{"rendered":"https:\/\/stage-fp.webenv.pl\/blog\/?p=25429"},"modified":"2025-01-30T17:42:59","modified_gmt":"2025-01-30T16:42:59","slug":"nis2-european-ports-prepare-to-comply-with-new-regulations","status":"publish","type":"post","link":"https:\/\/www.future-processing.com\/blog\/nis2-european-ports-prepare-to-comply-with-new-regulations\/","title":{"rendered":"NIS2: European ports prepare to comply with new regulations"},"content":{"rendered":"\n<p><strong>A revolutionary change<\/strong> is awaiting the companies that will be operating in European ports in 2024.<\/p>\n\n\n    <div class=\"b-image js-lightbox\">\n        <figure class=\"b-image__figure\">\n            <a\n                href=\"NIS2\u2013definition.jpg\"\n                class=\"js-lightbox__trigger\"\n                aria-haspopup=\"dialog\"\n                data-elementor-open-lightbox=\"no\"\n            >\n                <img fetchpriority=\"high\" decoding=\"async\" width=\"960\" height=\"630\" src=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition.jpg\" class=\"attachment-full size-full\" alt=\"NIS2\u2013definition Future Processing\" srcset=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition.jpg 960w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition-300x197.jpg 300w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition-768x504.jpg 768w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition-610x400.jpg 610w\" sizes=\"(max-width: 960px) 100vw, 960px\" \/>            <\/a>\n                    <\/figure>\n        <div\n    class=\"js-lightbox__dialog o-lightbox\"\n    role=\"dialog\"\n    aria-modal=\"true\"\n    aria-hidden=\"true\"\n    tabindex=\"-1\"\n>\n    <div class=\"o-lightbox__dialog\">\n        <div class=\"o-lightbox__content js-lightbox__content\" role=\"document\">\n            <button\n                class=\"o-button o-button--xs o-button--dark o-button--icon-right o-button--tertiary o-lightbox__close js-lightbox__close m-gradient-brand\"\n            >\n                Close picture                <svg class='o-icon o-icon--16 o-icon--timescircle '>\n            <use xlink:href='#icon-16_times-circle'><\/use>\n          <\/svg>            <\/button>\n                                            <figure class=\"o-lightbox__image is-active\">\n                    <img fetchpriority=\"high\" decoding=\"async\" width=\"960\" height=\"630\" src=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition.jpg\" class=\"attachment-full size-full\" alt=\"NIS2\u2013definition Future Processing\" srcset=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition.jpg 960w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition-300x197.jpg 300w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition-768x504.jpg 768w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2\u2013definition-610x400.jpg 610w\" sizes=\"(max-width: 960px) 100vw, 960px\" \/>                                    <\/figure>\n                    <\/div>\n    <\/div>\n<\/div>\n    <\/div>\n\n\n\n<p>I have already written about <a href=\"https:\/\/www.future-processing.com\/blog\/cybersecurity-in-the-eu-tighter-regulations-are-coming-are-you-ready\/\">NIS2 coming into effect in 2024<\/a>. It will impact hundreds of organisations. For many port-related firms, <strong>NIS2 is the first ever set of cybersecurity regulations that they will have to comply with,<\/strong> so the shift is significant, and so are the penalties for potential violations.<\/p>\n\n\n\n<p><strong>Fines of up to 10 million euros (or up to 2% of global revenue, whichever is higher)<\/strong> may be imposed on violators that either refuse to comply or simply won\u2019t meet the standards on time. Judging by the amount of fines, we may conclude that<strong> securing critical infrastructure has become a top priority for the EU<\/strong> \u2014 and not only on paper or just in the mouths of smooth-talking European politicians.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><br>Why is this so important?<\/h2>\n\n\n\n<p>Critical infrastructure companies face cyber threats all the time, but it was the war in Ukraine that truly brought their vulnerabilities to light. <\/p>\n\n\n\n<p>And these <strong>attacks on the key links in global supply chains may disrupt operations in many essential sectors, <\/strong>such as the energy or heavy industry, which is strongly associated with the military. That\u2019s why adhering to the new rules is so important, not only from an economic perspective, but also in terms of the safety of the general population.<\/p>\n\n\n\n<p>This example (just one of many) illustrates the point more clearly \u2014 in late January and February 2022, major oil terminals in Europe fell victim to a <a href=\"https:\/\/techxplore.com\/news\/2022-02-european-oil-port-terminals-cyberattack.html\" rel=\"noopener\">ransomware attack<\/a>. Among other places, the attacks also occurred in Antwerp, which houses the second biggest port after Rotterdam. <\/p>\n\n\n\n<p>As a result, <strong>companies were forced to suspend their operations, and tankers crowded outside the port, unable to unload. <\/strong><\/p>\n\n\n\n<p>At the same time, two German oil supply companies were also attacked and, in effect, they <strong>couldn\u2019t fulfil their supply contracts.<\/strong> And who was to blame? Russian-speaking hacker groups using <a href=\"https:\/\/www.cisecurity.org\/insights\/blog\/breaking-down-the-blackcat-ransomware-operation\" rel=\"noopener\">BlackCat ransomware<\/a>, which suggests that the attacks might have come from the top rungs of the political ladder.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><br>What\u2019s the big deal about the new rules?<\/h2>\n\n\n\n<p>The initial version of the cybersecurity regulations from 2018 \u2014 called <strong>NIS <\/strong>\u2014 mandated fewer safeguards than NIS2 and applied only to the largest critical infrastructure companies. <strong>The new rules have been expanded and will impact mid-sized companies as well. <\/strong><\/p>\n\n\n\n<p>Plus, they will also apply to sectors that didn\u2019t fall under the previous law (for example, technology providers).<\/p>\n\n\n\n<p>We can expect that the <strong>NIS2 Directive<\/strong> will probably require firms to take the appropriate measures necessary to prevent cyberattacks, and respond to any emerging threats.<\/p>\n\n\n\n<p>This includes:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>detailed <strong>risk<\/strong> and <strong>vulnerability analysis,<\/strong><\/li>\n\n\n\n<li><strong>reporting cyberattacks<\/strong> (obligated to provide a warning within 24 hours, full notification within 72 hours, and a final report within 30 days after the incident),<\/li>\n\n\n\n<li>ensuring <strong>business continuity<\/strong> by implementing backup management and disaster recovery solutions,<\/li>\n\n\n\n<li><strong>crisis management,<\/strong> meaning having special procedures in place in case of any cybercrime incidents,<\/li>\n\n\n\n<li>putting <strong>security measures first<\/strong> throughout the entire product life cycle \u2014 from planning to maintenance,<\/li>\n\n\n\n<li>cybersecurity education and training \u2014 incorporating best practices into day-to-day operations from the lowest to the highest level in each and every organisation,<\/li>\n\n\n\n<li>using <strong>cryptography,<\/strong> <strong>multifactor\/continuous authentication <\/strong>and <strong>encryption <\/strong>solutions wherever possible,<\/li>\n\n\n\n<li>using <strong>secured communication tools,<\/strong><\/li>\n\n\n\n<li>having proper <strong>asset management <\/strong>and <strong>access to control systems, <\/strong>etc.<\/li>\n<\/ul>\n\n\n\n<p>This may sound like a lot, but\u2026 it would be hard to believe that any companies already operating in European ports would have to start from scratch with their cybersecurity efforts. <strong>These days, having certain procedures in place is an absolute must. <\/strong><\/p>\n\n\n<div class=\"o-cta\">\n    <div class=\"o-cta__pill-container\">\n                    <img decoding=\"async\" width=\"120\" height=\"260\" src=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2025\/01\/pill-security-1.jpg\" class=\"attachment-full size-full\" alt=\"\" \/>            <\/div>\n    <div class=\"o-cta__text-container\">\n                                    <div class=\"f-paragraph\"><p><strong>Are you concerned about the impact of EU cybersecurity regulations \u2028on your business?<\/strong><\/p>\n<p>Leverage our AI-powered chatbot to answer all your questions about EU cybersecurity regulations. Understand and verify your compliance \u2028with DORA, NIS 2, and CRA using our AI assistant.<\/p>\n<\/div>\n                                    <div class=\"o-cta__buttons-container\">\n                                    <a class=\"o-button o-button--primary o-button--xs o-button--arrow o-button--icon-right\" href=\"https:\/\/www.dora-cra-nis2.com\/?utm_source=blogbanner\" target=\"\" rel=\"noopener\">\n                        <span>Start a conversation now!<\/span>\n                        <svg class='o-icon o-icon--10 o-icon--arrow '>\n            <use xlink:href='#icon-10_arrow'><\/use>\n          <\/svg>                        <svg class='o-icon o-icon--16 o-icon--arrow '>\n            <use xlink:href='#icon-16_arrow'><\/use>\n          <\/svg>                    <\/a>\n                                            <\/div>\n            <\/div>\n<\/div>\n\n\n\n<p>However, this has never been <strong>required by law, <\/strong>overseen by an official entity (<a href=\"https:\/\/www.enisa.europa.eu\/\" rel=\"noopener\">ENISA<\/a> \u2014 The European Union Agency for Cybersecurity) or coordinated on a transnational level (in case the need to respond to certain incidents arises) using a special mechanism called <a href=\"https:\/\/www.enisa.europa.eu\/topics\/incident-response\/cyclone\" rel=\"noopener\">EU-CyCLONe<\/a> (The European Cyber Crisis Liaison Organisation Network). <\/p>\n\n\n\n<p>And this is exactly what the new reality is going to look like, according to the NIS2 proposal.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\"><br>Unnecessary investment or new opportunity?<\/h2>\n\n\n\n<p>Even though the <strong>NIS2 demands a lot of effort<\/strong> from the companies that operate in European ports, this can hardly be seen as an unnecessary move. <\/p>\n\n\n\n<p>One could argue about the scope of the new requirements, the level of control, or the amount of penalties but, in general, tighter restrictions should, instead, be considered by organisations as an opportunity to get their ducks in a row.<\/p>\n\n\n\n<p>Whether it\u2019s required by law or not \u2014 <strong>cybersecurity should be one of the top priorities for any firm, <\/strong>from the smallest ones to the largest players in the market. Nowadays, protecting your systems from cyber threats and ensuring business continuity during a crisis is simply a matter of survival. <\/p>\n\n\n\n<p>Especially for companies that are significant from both economic and political perspectives, as well as on national, regional and global levels. And <strong>being part of global supply chains automatically labels your organisation as \u201cessential\u201d.<\/strong><\/p>\n\n\n    <div class=\"b-image js-lightbox\">\n        <figure class=\"b-image__figure\">\n            <a\n                href=\"NIS2_Directive_which_sectors_are_in_scope.jpg\"\n                class=\"js-lightbox__trigger\"\n                aria-haspopup=\"dialog\"\n                data-elementor-open-lightbox=\"no\"\n            >\n                <img decoding=\"async\" width=\"960\" height=\"1279\" src=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope.jpg\" class=\"attachment-full size-full\" alt=\"NIS2_Directive_which_sectors_are_in_scope Future Processing\" srcset=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope.jpg 960w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope-225x300.jpg 225w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope-769x1024.jpg 769w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope-768x1023.jpg 768w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope-300x400.jpg 300w\" sizes=\"(max-width: 960px) 100vw, 960px\" \/>            <\/a>\n                    <\/figure>\n        <div\n    class=\"js-lightbox__dialog o-lightbox\"\n    role=\"dialog\"\n    aria-modal=\"true\"\n    aria-hidden=\"true\"\n    tabindex=\"-1\"\n>\n    <div class=\"o-lightbox__dialog\">\n        <div class=\"o-lightbox__content js-lightbox__content\" role=\"document\">\n            <button\n                class=\"o-button o-button--xs o-button--dark o-button--icon-right o-button--tertiary o-lightbox__close js-lightbox__close m-gradient-brand\"\n            >\n                Close picture                <svg class='o-icon o-icon--16 o-icon--timescircle '>\n            <use xlink:href='#icon-16_times-circle'><\/use>\n          <\/svg>            <\/button>\n                                            <figure class=\"o-lightbox__image is-active\">\n                    <img decoding=\"async\" width=\"960\" height=\"1279\" src=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope.jpg\" class=\"attachment-full size-full\" alt=\"NIS2_Directive_which_sectors_are_in_scope Future Processing\" srcset=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope.jpg 960w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope-225x300.jpg 225w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope-769x1024.jpg 769w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope-768x1023.jpg 768w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2023\/05\/NIS2_Directive_which_sectors_are_in_scope-300x400.jpg 300w\" sizes=\"(max-width: 960px) 100vw, 960px\" \/>                                    <\/figure>\n                    <\/div>\n    <\/div>\n<\/div>\n    <\/div>\n\n\n\n<p>If you\u2019re one of the companies that operate in European ports and\/or in critical sectors \u2014 Future Processing will gladly guide you through these shifts.<\/p>\n\n\n\n<p>And even if you don\u2019t fall under the new law, but you want to <strong>strengthen your cybersecurity level, <\/strong>feel free to get in touch with us. We\u2019ve already been focused on the security space since long before it became political. Let our extensive knowledge and invaluable experience serve as a beacon for you in these increasingly demanding times.<\/p>\n\n\n<div class=\"b-cta-banner m-gradient-light\">\n            <a href=\"https:\/\/www.future-processing.com\/services\/cybersecurity\/cybersecurity-consulting\/\" class=\"b-cta-banner__image-container\" data-elementclick=\"article-banner\" data-elementname=\"Does NIS2 feel confusing?\">\n            <img loading=\"lazy\" decoding=\"async\" width=\"450\" height=\"450\" src=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2022\/12\/Cybersecurity_Consulting_Future_Processing.png\" class=\"attachment-full size-full\" alt=\"Cybersecurity_Consulting_Future_Processing\" srcset=\"https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2022\/12\/Cybersecurity_Consulting_Future_Processing.png 450w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2022\/12\/Cybersecurity_Consulting_Future_Processing-300x300.png 300w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2022\/12\/Cybersecurity_Consulting_Future_Processing-150x150.png 150w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2022\/12\/Cybersecurity_Consulting_Future_Processing-400x400.png 400w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2022\/12\/Cybersecurity_Consulting_Future_Processing-24x24.png 24w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2022\/12\/Cybersecurity_Consulting_Future_Processing-48x48.png 48w, https:\/\/www.future-processing.com\/blog\/wp-content\/uploads\/2022\/12\/Cybersecurity_Consulting_Future_Processing-96x96.png 96w\" sizes=\"(max-width: 450px) 100vw, 450px\" \/>        <\/a>\n    \n        <a href=\"https:\/\/www.future-processing.com\/services\/cybersecurity\/cybersecurity-consulting\/\" class=\"b-cta-banner__url b-cta-banner__text-container\" data-elementclick=\"article-banner\" data-elementname=\"Does NIS2 feel confusing?\">\n                    <div class=\"b-cta-banner__text\">\n                                                    <h3 class=\"f-headline-extra-big b-cta-banner__header\">\n                        Does NIS2 feel confusing?                    <\/h3>\n                \n                                    <div class=\"f-paragraph\">\n                        <p>Don&#8217;t hesitate to <strong>reach out<\/strong> and find out everything you want to know with the support of our <strong>security specialists.<\/strong><\/p>\n                    <\/div>\n                \n                                    <div class=\"o-button o-button--primary o-button--s o-button--icon-right o-button--arrow\">\n                        <span>Let\u2019s talk!<\/span>\n                        <svg class='o-icon o-icon--16 o-icon--arrow '>\n            <use xlink:href='#icon-16_arrow'><\/use>\n          <\/svg>                    <\/div>\n                            <\/div>\n                <\/a>\n    <\/div>\n","protected":false},"excerpt":{"rendered":"<p>A revolutionary change is awaiting the companies that will be operating in European ports in 2024. NIS2 \u2014 the new cybersecurity law aiming to safeguard critical infrastructure  \u2014 comes into effect in 2024, and will impact hundreds of organisations.<\/p>\n","protected":false},"author":182,"featured_media":25433,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[2110],"tags":[],"coauthors":[2010],"class_list":["post-25429","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security"],"acf":{"reading-time":"5 min","show-toc-sublists":false,"image":null,"logo":null,"button1":{"button1_type":"","button":null},"button2":{"button2_type":"","button":null},"person":{"person_photo":null,"person_name":"","person_position":""}},"_links":{"self":[{"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/posts\/25429","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/users\/182"}],"replies":[{"embeddable":true,"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/comments?post=25429"}],"version-history":[{"count":0,"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/posts\/25429\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/media\/25433"}],"wp:attachment":[{"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/media?parent=25429"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/categories?post=25429"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/tags?post=25429"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/www.future-processing.com\/blog\/wp-json\/wp\/v2\/coauthors?post=25429"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}