cybersecurity
|compliance
|ACN
|Law 90/2024
|Legge 90/2024
|incident taxonomy
|tassonomia incidenti
|NIS
|notification
|Allegato A
ACN Adopts Incident Taxonomy Under Law 90/2024: What Obligated Entities Must Do Now
February 20, 2026
ACN adopted the incident taxonomy under Law 90/2024 via the Determina of 9 February 2026. Obligated entities must now report incidents within 24 hour…
cybersecurity
|compliance
|NIS2
|ACN
|CSIRT
|notification
|accountability
|baseline
|roles
|point of contact
|referente
|incident
NIS2 Point of Contact and CSIRT Contact Role: Accountability and Operating Duties
February 18, 2026
NIS2 implementation guidance distinguishes the legal Point of Contact from the operational CSIRT contact role. Practical guide to role formalization,…
cybersecurity
|compliance
|NIS2
|ACN
|CSIRT
|notification
|baseline
|significant incident
|IS-3
|service level
|availability
|disruption
NIS2 Significant Incident IS-3: Violation of Expected Service Levels
February 13, 2026
IS-3 in the ACN baseline model covers service-level violation incidents affecting entity services and activities. Practical guide to qualification, s…
cybersecurity
|compliance
|NIS2
|ACN
|CSIRT
|notification
|baseline
|significant incident
|IS-2
|integrity
|data modification
NIS2 Significant Incident IS-2: Integrity Loss Affecting Digital Data
February 12, 2026
IS-2 in the ACN baseline model covers integrity loss affecting digital data under entity ownership or control. Practical guide to qualification, evid…
cybersecurity
|compliance
|NIS2
|ACN
|CSIRT
|notification
|baseline
|IS-1
|significant incident
|confidentiality
|data leak
NIS2 Significant Incident IS-1: Confidentiality Loss Affecting Digital Data
February 11, 2026
IS-1 in the ACN baseline model covers confidentiality loss affecting digital data under entity ownership or control. Practical guide to qualification…
cybersecurity
|compliance
|NIS2
|ACN
|CSIRT
|notification
|baseline
|incident typology
|condition
|compromise
|classification
NIS2 Incident Typology Model: Condition, Compromise, and Affected Object
February 10, 2026
ACN baseline guidance classifies significant incidents through condition, compromise, and object of compromise. Practical guide to using the typology…