NIS-2: Why practical relevance is crucial in management training

Under NIS-2, management bodies of affected companies are required to attend training on a regular basis. However, anyone who sees this merely as proof of attendance for the personnel file underestimates the real challenge: management bodies need to understand cyber risks well enough to make informed decisions and oversee the implementation of appropriate protective measures. In this interview, Mirko Radojicic, Senior Consultant at G DATA CyberDefense, explains how NIS-2 management training conveys this knowledge. He discusses why real-world attack scenarios, exchanges with other executives and experience from incident response engagements play a central role.

This article has been indexed from Security Blog G Data Software AG

Read the original article: