22 Nov '21
Digital resilience of society; that is what the 'Network and Information Systems Security Act' (Wbni) is about. This Act designates specific parts of society that must be protected against digital attacks and vulnerabilities. For each component, the law indicates who must comply with what requirements and when. There are major differences and it is very important to know exactly if, and to what extent, a company must comply with the Wbni.
An introduction of the Wbni as protection of the digital resilience of Dutch society can be helpful in that respect. The Wbni identifies specific parts of society that must be protected.
Those specific parts are:
The group of vital operators is again divided into sectors:
The Wbni and the Decree on the Wbni (Bbni) further define these three components. Based on the Wbni, operators of essential services and digital service providers have certain rights and obligations because they have an important function in Dutch society and the economy.
Operators of essential services and digital service providers receive confidential threat information which they can use to defend their services and systems. Various organisations have been given a task in this respect on the basis of Article 3 of the Wbni.
Operators of essential services and digital service providers have a duty of care for the security of their systems. And they have an obligation to report incidents. The reports of the vital providers must be submitted to the NCSC and to the competent authority for the sector. Digital service providers must report to a designated CSIRT and the competent authority for the digital service provider.
If they (the NCSC or the CSIRT) subsequently request information, there is an obligation to provide that information.
According to the Wbni, the competent authority has the possibility of using administrative enforcement instruments such as the imposition of an audit, the issuing of a binding instruction, an administrative order and the imposition of a fine of up to 5 million euro. The enforcement chapter of the Wbni applies exclusively to providers of essential services and digital service providers. The Act prescribes the competent authority for providers of essential services and digital service providers:
Contact
14 Oct 24
13 Oct 24
07 Oct 24
13 Aug 24
13 Aug 24
04 Jun 24
13 May 24
02 May 24
08 Apr 24
04 Apr 24
21 Mar 24
19 Mar 24
Met uw inschrijving blijft u op de hoogte van de laatste juridische ontwikkelingen op dit gebied. Vul hieronder uw gegevens in om per e-mail op te hoogte te blijven.
Stay up to date with the latest legal developments in your sector. Fill in your personal details below to receive invitations to events and legal updates that matches your interest.
Follow what you find interesting
Receive recommendations based on your interests
{phrase:advantage_3}
{phrase:advantage_4}
We ask for your first name and last name so we can use this information when you register for a Ploum event or a Ploum academy.
A password will automatically be created for you. As soon as your account has been created you will receive this password in a welcome e-mail. You can use it to log in immediately. If you wish, you can also change this password yourself via the password forgotten function.