NIS2, DORA, GDPR, KRITIS, and the Cyber Resilience Act have turned regulatory compliance from a legal checkbox into a board-level cybersecurity programme. Across the Nordics, Benelux, DACH, and East-Central Europe, CISOs are managing overlapping — and sometimes contradictory — regulatory frameworks at the same time. This page collects our coverage of what that actually looks like in practice, region by region.
NIS2 & DORA
- Decoding NIS2 and DORA: The Compliance Playbook
- NIS2 and DORA – Strengthening IT Security
- Navigating NIS2 and DORA Regulations – Compliance Strategies for Enhanced Cyber Resilience
- CRA’s Impact on the Security Landscape
Regional Compliance: East-Central Europe
- NIS2 in Central East Europe: Between the Paper and the Reality
- Compliance and Regulations Across East Central Europe: Fragmented Implementation, Converging Expectations
Regional Compliance: DACH & Benelux
- Complex Regulatory Compliance – Unified Solutions Needed
- Benelux Compliance Redefined: Adapting to Regulatory Turbulence
Managing Compliance as a System, Not a Checklist
- From Fragmentation to Unity: How Organizations Can Manage Complex Compliance Universes
- How Organizations Can Manage Complex Compliance Universes
- Swimming in the Sea of Compliance
- Privacy by Design
- Sweden Digitization Standard
Browse all Compliance & Regulation articles →
Compare Notes With Peers Facing the Same Regulations
Regulatory Compliance is a standing agenda track at Next IT Security editions. If NIS2, DORA, or CRA implementation is on your desk right now, this is where CISOs from comparable organisations discuss what’s actually working.
See the upcoming Nordics edition → | Benelux edition → | DACH edition →