{"id":15839,"date":"2025-11-05T08:20:47","date_gmt":"2025-11-05T08:20:47","guid":{"rendered":"https:\/\/axevera.com\/?p=15839"},"modified":"2025-11-05T08:20:48","modified_gmt":"2025-11-05T08:20:48","slug":"czech-republic-cybersecurity-act-2025","status":"publish","type":"post","link":"https:\/\/axevera.com\/en\/2025\/11\/05\/czech-republic-cybersecurity-act-2025\/","title":{"rendered":"Czech Republic Cybersecurity Act 2025"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The National Cyber and Information Security Agency (N\u00daKIB) of the Czech Republic has published official information on the adoption of a <strong>new Cybersecurity Act<\/strong> to transpose the NIS2 Directive into Czech law. <\/p>\n\n\n\n<h3 class=\"wp-block-heading\">From the Current Act to the New Legal Framework<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Until now, cybersecurity regulation in the Czech Republic was governed by the Act No. 181\/2014 Coll. on Cybersecurity. The new Act marks a significant update: it is explicitly designed to implement NIS2 requirements, thereby widening the range of entities subject to cybersecurity obligations. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The NIS2 Directive itself entered into force at the EU level in December 2022, with Member States obliged to incorporate its measures into national law. <\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Scope and Key Features<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The new Czech Cybersecurity Act expands the scope of regulated entities beyond the previous critical-infrastructure model. According to professional analysis, the Act will apply to sectors such as energy, transport, healthcare, digital services and infrastructure, and will introduce differentiated regimes depending on an entity\u2019s size and function. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Key features in the new law include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>A defined obligation to implement risk-management frameworks, including governance, oversight and training of management. <\/li>\n\n\n\n<li>Incident-reporting requirements, with a distinction between \u201cessential\u201d and \u201cimportant\u201d entities and their reporting obligations.<\/li>\n\n\n\n<li>Enhanced powers for supply-chain controls and vendor restrictions where risk to national security is deemed high.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\">Legislative Status and Timeline<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">As of April 25, 2025, the Czech Republic\u2019s lower house approved the new Cybersecurity Act as part of its transposition of NIS2. The publication in the official Collection of Laws remains a forthcoming step. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Under the Act, the effective date will be the <strong>first day of the third calendar month following its official publication<\/strong> in the Collection of Laws.  While some sources estimate it may take effect in late 2025, the precise date is subject to publication scheduling.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">Role of the N\u00daKIB Portal<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The N\u00daKIB has also introduced a digital platform, the N\u00daKIB Portal, which will support compliance with the new Act by providing regulated entities with access to guidance, tools and secure communication channels. <\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The Portal features a <strong>public section<\/strong>, offering information about the law and cyber-security obligations, and a <strong>non-public section<\/strong>, accessible to registered regulated entities, allowing them to submit reports and share information with the regulator. <\/p>\n\n\n\n<h3 class=\"wp-block-heading\">What This Means<\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">For organizations operating in the Czech Republic, preparation is key. The expansion of the legal regime means that many entities not previously subject to specific cybersecurity obligations may now fall under the new Act\u2019s remit. The combination of governance, incident-reporting and supply-chain rules indicates that cyber-security is becoming a regulated area akin to data protection.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In summary, the Czech Republic\u2019s new Cybersecurity Act aligns its national legal framework with the EU\u2019s NIS2 Directive, enhances regulator powers through N\u00daKIB and creates a digital infrastructure for compliance via the N\u00daKIB Portal. Entities affected should monitor the publication process and plan their compliance strategy accordingly.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Ai image.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Czech Republic introduces a new Cybersecurity Act to align with the EU NIS2 Directive and strengthen national cyber resiliency through the N\u00daKIB Portal.<\/p>\n","protected":false},"author":5,"featured_media":15836,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[525],"tags":[],"yst_prominent_words":[],"class_list":["post-15839","post","type-post","status-publish","format-standard","has-post-thumbnail","category-en"],"_links":{"self":[{"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/posts\/15839","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/comments?post=15839"}],"version-history":[{"count":1,"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/posts\/15839\/revisions"}],"predecessor-version":[{"id":15840,"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/posts\/15839\/revisions\/15840"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/media\/15836"}],"wp:attachment":[{"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/media?parent=15839"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/categories?post=15839"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/tags?post=15839"},{"taxonomy":"yst_prominent_words","embeddable":true,"href":"https:\/\/axevera.com\/en\/wp-json\/wp\/v2\/yst_prominent_words?post=15839"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}