NIS2 supply chain management rules in Italy have recently changed, and the new ACN requirements are reshaping how companies manage suppliers, introducing a continuous compliance model that international businesses cannot afford to overlook.
The European Commission’s plan with the Digital Omnibus package on incident reporting, which introduces a single-entry point for notifying incidents across GDPR, NIS2, DORA, eIDAS and other EU regimes, aims to simplify compliance but may instead create new operational complexity.
An AI risk assessment is the process of mapping where risks emerge during the lifecycle of an AI system, classifying them by severity and probability, and prioritizing which ones to mitigate first, all within the compliance framework imposed by the EU AI Act.