Article
Delay in Reporting Security Incidents in Critical Information Systems: Causes, Consequences and Regulatory Framework
2026-06-16
Abstract excerpt
Meeting the legal reporting deadline after a cybersecurity incident is, for many organizations, harder than the law suggests. The General Data Protection Regulation requires personal data breaches to be reported to the competent authorities within 72 hours; the NIS2 Directive adds a 24-hour early warning for essential and important entities. Despite the clarity of these deadlines, delayed reporting remains a syste...
Topics
Open a Topic to create a Post that cites this publication.
Identifiers and source
- Literature Corpus work
- a5a6a4f7-dc6a-56be-b8b7-243049a6f8e4
- DOI
- 10.20944/preprints202606.1191.v1
