The specific sectoral list defined in the NIS 2 Directive can be found in the Annex to Law LXIX of 2024 on the Cyber Security of Hungary here: https://njt.hu/jogszabaly/2023-23-00-00
⚡ Energy – supply, distribution, transmission and sales
🚚 Transport – air, rail, road and sea transport
💰 Finance – credit, trade, market and infrastructure
💊 Health, Pharmaceutical industry – research, production, suppliers and manufacturers
💧 Drinking and waste water
💻 Digital infrastructure – DNS, trust services, data centre services, cloud computing, communication services, managed service providers and managed security providers
📋 Local authorities, government offices – municipalities and regions
🚀 Space – software and services
📰 News – electronic communications, data exchange and trust services
📱 Outsourced ICT services – outsourced (managed) ICT and ICT security service providers
✉ Postal – postal and parcel services
🚛 Waste management
🧪 Chemical products – production and distribution
💻 Digital providers – digital service providers for online marketplaces, search engines, social platforms
🥗 Foods – production and distribution
🔎 Research
⚙ Production – production of various critical products and devices
Self-identification,
Appointment of an Information Security Officer
The official registration of direct data subjects must be done via a client portal (SZTFH)
Notification of subcontractors involved in IT Operations
Organisation providing the electronic communications service requested (e.g. internet service provider)
The protection mechanisms put in place must be applied
Operate an IBIR system in the organisation
Request for proposal from an auditing company, then contract with them
Payment of the supervision fee
Deadline to complete the first cybersecurity audit