Solutions
NIS2 for space operators
In-force cybersecurity duties for space-sector entities — classification, incident timeline, supply chain. Not a certificate.
Overview
NIS2 (Directive (EU) 2022/2555) is in force. Caelex Comply maps space-operator profiles to essential/important classification, risk-management themes, and the 24-hour / 72-hour / one-month incident clock. The proposed EU Space Act (COM(2025) 335) is a separate, not-yet-in-force layer — do not treat it as NIS2. Software is not legal advice and is not a NIS2 certification.
How Caelex helps
Entity Classification
Automated classification as essential or important entity based on operator type, revenue thresholds, and criticality criteria defined in NIS2 Annex I/II.
Gap Analysis Engine
Maps Art. 21 measures and Art. 23 incident clocks (v1, not the whole directive). Unknown role stays unknown, not scored as NIS2-no.
Incident Response Playbooks
Pre-built response workflows aligned to NIS2 notification timelines with automated escalation paths and CSIRT reporting templates.
Next step
Map your obligations
Passage dual-use check and Atlas counsel workspace. Software is general information — not legal advice.