Information Security

NIS2: mandatory training for management and management

NIS2
Information Security
Security Awareness
Management

Heading 1

Heading 2

Heading 3

Heading 4

Heading 5
Heading 6

Lorem ipsum by sit amet, consectetur adipiscing elit, sed do eusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Dis aute irure door in reprehenderit in voluptate velit se cillum dolore eu fugiat nulla pariatur.

Block quote

Ordered list

  1. Item 1
  2. Item 2
  3. Item 3

Unordered list

  • Item A
  • Item B
  • Item C

Text link

Bold text

Emphasis

Superscript

Subscript

With the upcoming NIS2 legislation, it is mandatory that directors are not only aware of the risks, but are also actively involved in managing them. This significantly expands the responsibilities of management and management. This directive requires managers of essential and important organizations (entities) to delve into and comply with information security standards.

Heading 1

Heading 2

Heading 3

Heading 4

Heading 5
Heading 6

Lorem ipsum by sit amet, consectetur adipiscing elit, sed do eusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Dis aute irure door in reprehenderit in voluptate velit se cillum dolore eu fugiat nulla pariatur.

Block quote

Ordered list

  1. Item 1
  2. Item 2
  3. Item 3

Unordered list

  • Item A
  • Item B
  • Item C

Text link

Bold text

Emphasis

Superscript

Subscript

This article was last updated on
14.07.2026
Written by
Kilian
Houthuijzen
Commercial Manager & Partner

Important NIS2 update: Cybersecurity Act enters into force

First, an important update. It is official: the Cybersecurity Act (the Dutch implementation of NIS2) is going ahead. The Senate approved it on July 7, 2026, which means the law will take effect on August 15, 2026. No more speculation about "maybe it will be delayed" or "it probably won't be that bad." The law is here, and for many organizations in the Netherlands, things will truly change from that date on. In this article, we explain exactly what the Cybersecurity Act entails, who it applies to, and what steps you can take now.

The role of executives under NIS2

Under NIS2 (read: Cybersecurity Act), executives are expected to:

  • approve the necessary cybersecurity risk management measures;
  • oversee compliance with these measures within their organization;
  • take personal responsibility for overall cybersecurity compliance.

This liability means that not only the organization but also individual executives can face legal and financial consequences for non-compliance.

Why cybersecurity training is mandatory

The NIS2 Directive requires that all members of management be trained in managing cybersecurity risks. These trainings are crucial to ensure that leaders can not only identify and evaluate risks but also implement effective measures to protect their organizations.

NIS2 supervision and enforcement

Enforcement of NIS2 regulations is carried out by national authorities, which have extensive powers to monitor compliance. This includes inspections, audits, and the right to demand immediate action upon identifying shortcomings.

The consequences of NIS2 non-compliance

Non-compliance with NIS2 can lead to significant sanctions, including:

  • warnings;
  • binding instructions to correct shortcomings;
  • fines and other financial penalties;
  • public disclosure of non-compliance.

These sanctions underscore the importance of active involvement, initiative, and compliance by management.

In-company NIS2 executive training

For executives who want to understand the severity and complexity of cyber threats, manage them effectively, and meet NIS2 obligations, the In-company NIS2 executive training is the solution. This training not only provides the necessary knowledge and skills but also ensures that your organization complies with the latest EU cybersecurity regulations.

NIS2 executive training in Guardey

To support organizations in complying with the NIS2 directive, the mandatory training for management and executives is now also available in Guardey. This interactive and gamified training is designed to make executives and managers aware of their roles and responsibilities under NIS2 legislation in an accessible way.

Within Guardey, a special content module has been set up for this purpose, focusing on themes essential for management and executives. Think of topics such as risk management, reporting obligations, and cybersecurity governance. This module aligns with broader awareness campaigns and can be fully integrated into the existing Guardey platform.

As an official distributor of Guardey, Fendix provides support with implementation, training, and advice. This makes it easier for organizations to meet the new NIS2 requirements.

Want to know more?

Schedule a no-obligation introductory meeting below. We will then look at what best suits your organization.

Heading 1

Heading 2

Heading 3

Heading 4

Heading 5
Heading 6

Lorem ipsum by sit amet, consectetur adipiscing elit, sed do eusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Dis aute irure door in reprehenderit in voluptate velit se cillum dolore eu fugiat nulla pariatur.

Block quote

Ordered list

  1. Item 1
  2. Item 2
  3. Item 3

Unordered list

  • Item A
  • Item B
  • Item C

Text link

Bold text

Emphasis

Superscript

Subscript

How many people participate?

Request now

Thanks!
Oops! The form could not be submitted. Please try again.

More resources

NIS2

Cybersecurity Act effective August 15, 2026: what you need to know

thru
Henry
Kennisartikel
Information Security

NIS2 & ISO 27001: the overlap, differences and how your organization becomes compliant

thru
Mathijs
Download
Legislation

Does the Cyber Security Act (NIS2) apply to me?

thru
Mathijs
Download