Get In Touch
katarzyna.szczudlik@gmail.com
Tel: ‪+48 663 696 999‬
Work Inquiries
Schoenherr Attorneys at Law Plac Małachowskiego 1 Warsaw, Poland
ka.szczudlik@schoenherr.eu
Back

Cybersecurity, NIS2 & DORA

Cybersecurity

Why this matters.

Cybersecurity and operational resilience regulation increasingly affects how organisations manage risk, governance and business continuity across digital environments.

Frameworks such as NIS2 and DORA introduce new obligations related to cybersecurity governance, incident response, operational resilience and third-party risk management for organisations operating within the European market.

NIS2 applicability and readiness

Helping organisations determine whether NIS2 applies and prepare for evolving cybersecurity obligations.

  • Applicability assessments and obligations mapping
  • Regulatory readiness reviews and gap analysis
  • Implementation planning and prioritisation
  • Internal policy and documentation support
DORA compliance for financial entities

Supporting financial entities navigating DORA requirements and operational resilience frameworks.

  • Gap analysis and implementation roadmaps
  • ICT risk management and operational resilience testing
  • Third-party and vendor oversight requirements
  • Governance and incident reporting obligations
Cybersecurity governance frameworks

Developing governance structures and internal policies aligned with cybersecurity and resilience obligations.

  • Information security governance and roles
  • Internal cybersecurity policies and documentation
  • Risk management frameworks
  • Cross-functional stakeholder alignment
Incident response and regulatory preparedness

Helping organisations prepare for and respond to cybersecurity incidents and regulatory reporting requirements.

  • Incident response planning and escalation frameworks
  • Regulatory notification obligations (NIS2, DORA, GDPR)
  • Crisis preparedness and tabletop exercises
Third-party and vendor risk management

Supporting organisations managing risk across external providers, technology vendors and ICT relationships.

  • Vendor risk assessments and ICT oversight
  • Outsourcing and supply chain considerations
  • Operational dependency reviews
Cybersecurity

Advisory scope.

Let’s collaborate

Need support with NIS2 or DORA readiness?

Whether you are assessing regulatory applicability, preparing governance frameworks or strengthening operational resilience, I provide practical legal guidance tailored to technology and regulated businesses operating across Europe.

This website stores cookies on your computer. Cookie Policy