NIS2 — An EU cybersecurity directive establishing risk-management and incident-reporting requirements for covered essential and important entities.
Why NIS2 matters in finance
It raises baseline cybersecurity governance expectations across sectors that interact with financial infrastructure.
Security is also a market-infrastructure question
In financial services, nis2 should be understood in relation to operational continuity, data integrity, payments, market infrastructure and interconnected dependencies. A control can be technically effective while still leaving material resilience risk if critical services cannot continue or recover during disruption.