To view details of DataRep’s service to meet the Representative obligation under this Directive, please visit this page.
| Enforceable with effect from | 18th October 2024 (by transposition of the Directive into law in each EU member state – no direct effect of an EU Directive) |
| Summary of purpose | To create a culture of cybersecurity across sectors that are vital for the economy and society and that rely heavily on technology; to ensure preparedness for cybersecurity events |
| Which organisations does it apply to? | Almost all providers of services delivered online, providers of critical services (e.g. energy, transport, water, banking, financial market infrastructures, healthcare and digital infrastructure) and others |
| Major obligations of regulation |
|
| Main relevant authorities |
|
| Summary of Representative obligation | Certain organisations (see below) offering their service in the EU, which have no EU establishment, are required to appoint an NIS2 Representative in the EU (Article 26) You can view DataRep’s service to meet this obligation here |
| Which organisations require a Representative? | DNS service providers, TLD name registries, entities providing domain name registration services, cloud computing service providers, data centre service providers, content delivery network providers, managed service providers, managed security service providers, as well as providers of online marketplaces, of online search engines or of social networking services platforms offering their service in the EU, which have no EU establishment, are required to appoint an NIS2 Representative in the EU (no exclusions) |
| Where should the Representative be established? | In one of the EU member states where the organisation offers its service(s) |
| Summary obligations placed on the Representative | Receive communications from competent authorities and CSIRTs on behalf of their clients, including incident reports |
| Other relevant Representative aspects | The details of the Representative must be notified to the member state competent authority (in the member state where the Representative is established) as part of the wider notification obligation placed on those companies |
Please reach out to us at contact@datarep.com if you have any questions, or require a quotation for the Representative service under this law.
Please note that the contents of this document are not intended to provide complete or exhaustive information, nor should they be considered legal advice. Please ensure that you take legal advice before acting on the contents of this document.