On 17 October, the European Commission approved the initial cybersecurity regulations under the NIS2 Directive, which came into effect on 18 October 2024. These rules aim to enhance cyber risk management within EU Member States and mandate a series of compulsory measures to bolster the security of digital services.
All EU Member States are now required to ensure that companies providing digital services implement effective cyber risk management measures, which include:
Increased Fines: Non-compliance with the new requirements may lead to substantial fines, underscoring the importance of cybersecurity for both public and private sector organisations.
In anticipation of the new EU Regulation 2023/1114 on Markets in Crypto-assets, set to come into force on 30 December 2024, CySEC has decided to halt the acceptance of new applications for the registration of Crypto Asset Service Providers (CASP). This decision is driven by the need to prepare for the incoming standards and regulations, which aim to ensure a higher level of investor protection and market transparency within the crypto asset sector.
Transition Period: Providers registered before 30 December 2024 will be permitted to continue their operations until 1 July 2026 or until they obtain a licence under the new rules. This transition period grants them time to adapt to the new requirements and to prepare the necessary documentation.
These changes are crucial to enhancing the level of security across digital markets and infrastructure within Cyprus and the EU. They will help safeguard users and investors from cyber threats and establish a more resilient ecosystem for crypto service providers.
Dear journalists, the use of materials from REVERA website in publications is possible only after our written permission.
For approval of materials please contact e-mail: i.antonova@revera.legal or Telegram: https://t.me/PR_revera