Retained EU Law 2018 United Kingdom

Commission Implementing Regulation (EU) 2018/151 of 30 January 2018 laying down rules for application of Directive (EU) 2016/1148 of the European Parliament and of the Council as regards further specification of the elements to be taken into account by RDSPs for managing the risks posed to the security of network and information systems and of the parameters for determining whether an incident has a substantial impact

At a glance

What's here

2 compliance obligations

What this Act requires

Sections that create concrete duties on businesses or carry penalties. Procedural and definitional sections are folded into the “Browse other sections” expander at the bottom of each group. Click any section title to read the source text on legislation.gov.uk.

s.art002

Security elements

  • Manage security of network and information systems in line with NIS Regulations
s.art003

Parameters to be taken into account to determine whether the impact of an incident is substantial

  • Be able to estimate impact of security incidents
Browse 4 other sections — procedural / definitional / commencement
s.art001

Subject matter

s.art001

Interpretation

s.art004

Substantial impact of an incident

s.art005

Entry into force

Explore more

Browse legislation

Find other UK business legislation with related guidance.