Skip to content

NIS 2 IN AUSTRIA

Netz- und Informationssystemsicherheitsgesetz 2024 (NISG 2024) — the national act transposing Directive (EU) 2022/2555 in Austria. Supervised by Bundesministerium für Inneres (BMI).

DRAFT PUBLISHED

Key facts

In force
Not yet in force
National law
Netz- und Informationssystemsicherheitsgesetz 2024 (NISG 2024)
Primary supervisor
Bundesministerium für Inneres (BMI)
Max fine — essential entities
Up to EUR 10 million or 2% of global annual turnover, whichever is higher
Max fine — important entities
Up to EUR 7 million or 1.4% of global annual turnover, whichever is higher
Registration deadline
Covered entities register through the BMI's NIS 2 portal; deadlines follow the law's entry into force as set by the implementing regulation.

Scope and national nuance

Austria's NISG 2024 builds on the original NISG framework. The Bundesministerium für Inneres (BMI) is the policy and supervisory lead, with GovCERT Austria operating as the public-sector CSIRT and CERT.at as the national CSIRT for the wider economy.

Sector supervisors

SectorAuthorityAcronym
National CSIRT and computer emergency responseGovCERT AustriaGovCERT
General CERT for the Austrian economyAustrian Computer Emergency Response TeamCERT.at
Energy and electronic communicationsRundfunk- und Telekom-Regulierungs-GmbHRTR

What is specific to Austria

DSI Advisory — NIS 2 Programme

Move from reading the law to evidencing compliance

Start with the free NIS 2 Scorecard to score your organisation across the twelve Article 21 security domains and receive a paragraph-cited PDF report. Then book a structured NIS 2 scope and gap assessment tailored to BMI’s supervisory expectations.

NIS 2 Scorecard →Scope & gap assessment →NIS 2 reference page →