Policy compliance: Risk assessment is the first step
Implementing national and European cybersecurity guidelines can be burdensome for companies, thereby impeding compliance. Compliance with regulations is intended to help companies identify security risks and improve risk management. With GDPR, DORA, and the currently pending NIS2, more and more regulations and guidelines are being introduced that companies must comply with. This has led some companies to believe that compliance is more of a burden than a start to improving their security measures. This carries the risk that security…