Article 33 — Supervisory and enforcement measures in relation to important entities
NIS2 — direktiv (EU) 2022/2555
| I rettsakten | EU 2022/2555 |
| Kapittel | VII · Supervision and enforcement |
| CELEX | 32022L2555 |
| Lest | 2026-08-14 |
Offisiell tekst
Lest hos EUs publikasjonskontor for dette CELEX-nummeret. Ordlyden står slik den er publisert, ingenting er skrevet om eller sammenfattet.
Teksten vises på engelsk. Norsk er ikke et offisielt EU-språk, så den offisielle ordlyden finnes ikke på norsk.
1. When provided with evidence, indication or information that an important entity allegedly does not comply with this Directive, in particular Articles 21 and 23 thereof, Member States shall ensure that the competent authorities take action, where necessary, through ex post supervisory measures. Member States shall ensure that those measures are effective, proportionate and dissuasive, taking into account the circumstances of each individual case.
2. Member States shall ensure that the competent authorities, when exercising their supervisory tasks in relation to important entities, have the power to subject those entities at least to:
(a) on-site inspections and off-site ex post supervision conducted by trained professionals;
(b) targeted security audits carried out by an independent body or a competent authority;
(c) security scans based on objective, non-discriminatory, fair and transparent risk assessment criteria, where necessary with the cooperation of the entity concerned;
(d) requests for information necessary to assess, ex post , the cybersecurity risk-management measures adopted by the entity concerned, including documented cybersecurity policies, as well as compliance with the obligation to submit information to the competent authorities pursuant to Article 27;
(e) requests to access data, documents and information necessary to carry out their supervisory tasks;
(f) requests for evidence of implementation of cybersecurity policies, such as the results of security audits carried out by a qualified auditor and the respective underlying evidence.
Artikkelen fortsetter i den offisielle teksten.
Andre artikler i kapitlet
Teksten er sitert fra den offisielle kilden og er ikke juridisk rådgivning. En nasjonal domstol leser språkversjonen som binder i sin jurisdiksjon.
Tilbake til rettsakten · EU-rettsakter, lest helt ned til nasjonal lov
ExploreWorldAI is operated by Valkiv Ventures AB (Reg. no. 556995-1311), Kungsgatan 8, 111 43 Stockholm, Sweden. EU-hosted, with data processing assessed against the GDPR. Contact: hello@exploreworldai.com.
Machine-readable summaries for AI agents: /llms.txt and /llms-full.txt.