Austria Bulgaria Czech Republic Hungary Romania Slovak Republic CEE News Slovenia Startpage

19 – 21 August 2026Vienna

Training Programme: Certified NIS-2 Officer and Executive Management

Cybersecurity Training Programme for Certified NIS 2 Officers and Members of Management Bodies in accordance with the NISG 2026 – including an optional examination and a personal certification issued by Austrian Standards

With the entry into force of the NISG 2026 on 1 October 2026, the European NIS 2 Directive (EU) 2022/2555 will be transposed into Austrian law. For many companies, this will introduce mandatory cybersecurity measures, enhanced reporting obligations and more stringent cybersecurity governance requirements for the first time. Non-compliance may result in substantial penalties, while the personal liability of members of management bodies is also moving increasingly into focus. Cybersecurity is therefore no longer solely a technical matter; it requires close coordination between legal, organisational and technical expertise. Only those who understand these three dimensions holistically and integrate them effectively will be able to meet the new regulatory requirements.

Qualifications that matter: Management bodies and CISOs in the spotlight

The NISG 2026 expressly places responsibility on company management. Pursuant to Section 31(2) of the NISG 2026, members of management bodies—including managing directors and members of the management board—are required to participate in cybersecurity training specifically designed for them; general cybersecurity awareness training for employees is not sufficient. Together with the CISO, who is operationally responsible for implementing the required security measures, this creates a need for qualifications at several levels—one that our training programme is specifically designed to address.

Your path to becoming a Certified NIS 2 Officer or Certified Member of a NIS 2 Management Body

Our training programme provides practical, targeted preparation for your role as a certified NIS 2 Officer or certified member of a NIS 2 management body. You will acquire the expertise required to strategically manage cybersecurity and risk management within your organisation, embed the legally required security measures into its organisational structures and effectively monitor compliance with these requirements.

The programme combines in-depth legal expertise with technical understanding and practical implementation strategies. It has been developed jointly by experienced legal professionals from our law firm and cybersecurity specialists.

Programme overview

The training programme covers all key areas required for the legally compliant implementation of the NISG 2026. Topics include the regulatory framework of the NIS 2 Directive and its national implementation through the NISG 2026; risk management requirements and security measures under Commission Implementing Regulation (EU) 2024/2690; notification and reporting obligations in the event of cybersecurity incidents; and the responsibilities and liability risks of members of management bodies.

The programme also addresses the design and implementation of an internal cybersecurity management system, supply chain security and the management of third-party risks, as well as preparation for regulatory inspections and audits and for potential administrative penalty proceedings.

Completion with a Personal Certification from Austrian Standards

The programme concludes with an examination that enables participants to obtain the Austrian Standards personal certification “Certified NIS 2 Officer” or “Certified Member of a NIS 2 Management Body”. This certification documents your qualifications in accordance with a recognised standard.

Who is the training programme designed for?

The programme is aimed at members of management bodies, cybersecurity professionals (CISOs), in-house counsel and lawyers in private practice, members of legal departments, compliance professionals, IT security officers, data protection officers, risk managers and members of executive management who are responsible for cybersecurity governance within their organisations or are seeking to establish it.

Across all industries, the programme is relevant to any organisation falling within the scope of the NISG 2026, as well as to those wishing to prepare proactively for the new requirements.

Ensure legal compliance now

The NISG 2026 will enter into force on 1 October 2026. Use the time remaining to prepare your organisation for compliance and to demonstrate your personal qualifications as a NIS 2 Officer or member of a NIS 2 management body.

Secure your place on the programme and strengthen your organisation’s cyber resilience before the law requires you to do so.