Webinar: NIS2 and the CIO’s Responsibility: Which Contracts Need to Be Under Control?
Over
Since the introduction of NIS2, organizations are no longer responsible solely for their own cybersecurity. Risks arising from IT suppliers and service providers must also be demonstrably managed and controlled.
Many industrial companies are currently facing the same questions:
- How do I effectively manage and monitor suppliers?
- Which responsibilities belong to the IT department?
- What should be contractually defined and documented?
- How can I demonstrate during audits that I have sufficient control over my suppliers?
In this online session, we will show how organizations are addressing the new supply chain accountability requirements introduced by NIS2 and how they are implementing effective supplier risk management practices.
Context
Today, companies operate in increasingly complex IT environments, including:
- Cloud platforms
- ERP systems
- SaaS solutions
- Integrations and external IT partners
As a result, many organizations have become dependent on dozens of IT suppliers that have access to critical systems and business data.
In practice, we often see that companies are not entirely sure:
- Which suppliers actually fall within the scope of NIS2
- What requirements can reasonably be imposed on suppliers
- How suppliers should be monitored and managed
- Which cybersecurity measures should be included in contracts
- How compliance can be demonstrated during audits
NIS2 therefore sets clear expectations:
- Supplier-related risks must be actively managed and monitored
- Incident management and reporting agreements are essential
- Contracts must include adequate cybersecurity clauses
- Audits require significant time and preparation
- Organizations face compliance risks if these requirements are not properly addressed under NIS2
This makes supplier governance and contract management a critical component of NIS2 compliance.
In this webinar, you will discover:
- How NIS2 impacts supplier management and contractual obligations
- Which IT suppliers should be included in your NIS2 compliance approach
- What cybersecurity clauses should be incorporated into supplier contracts
- How to define clear responsibilities between your organization and external suppliers
- Best practices for monitoring and managing supplier-related risks
- How to prepare for audits and demonstrate compliance with NIS2 requirements
- Practical steps to strengthen control over your IT supply chain
- Common pitfalls and how to avoid compliance issues under NIS2
- How organizations are successfully implementing supplier governance frameworks today
- A practical approach to improving cybersecurity resilience across your supplier ecosystem
Who should attend?
- CIOs
- IT Managers
- Cybersecurity Managers
- Vendor Managers
- IT Procurement & Contract Managers
NIS2 & leveranciersbeheer
Learn which contracts and supplier agreements are critical for NIS2 compliance.
