ENISA launched a framework to assess NIS2 cybersecurity maturity. Sweden is advancing implementation, with consultations and a May deadline.

NIS2 implementation steps up as ENISA rolls out a practical framework to assess cybersecurity maturity and close gaps across Member States. In Sweden, the government moves forward with the EU’s cybersecurity package, launching consultation and setting a May deadline.

EU Level

NIS2

ENISA has released NCAF 2.0, an updated national capabilities assessment framework designed to help Member States assess the maturity of their national cybersecurity strategies and target priority gaps. ENISA expressly links the revised framework to NIS2, stating that it aligns with the Directive and supports Member States in preparing for the voluntary peer review process under Article 19, which makes this a practical implementation-support update rather than a purely generic cybersecurity publication.

Read More

Sweden-level

NIS2

The Swedish government updated its consultation page for the Commission’s 2026 cybersecurity package, which includes targeted amendments to the NIS2 Directive alongside the Cybersecurity Act 2 proposal. The update shows that Sweden is moving the package through a national consultation process, lists consulted bodies, and sets 18 May 2026 as the deadline for responses, making this the clearest Sweden-level in-window official development tied directly to NIS2.

Read More

Continue reading
Need help?
Contact Us