Cybersecurity Rules Must Reflect the Reality of Trust ServicesClear, Proportionate and Standards-Based Requirements Are Key to Harmonised NIS2 Implementation.
Effective cybersecurity regulation needs to be both ambitious and workable in practice. In its response to the draft NIS2 Implementing Regulation, ESD calls for clearer and more proportionate requirements that recognise the different functions and criticality of individual trust services. ESD advocates realistic incident-reporting thresholds, precise legal definitions and greater reliance on established standards, particularly ETSI EN 319 401 for qualified trust services. A harmonised, standards-based approach can strengthen cybersecurity while supporting consistent supervision, cross-border trust services and a functioning Digital Single Market.
Leave a Reply