Damien Mallon, Datapac

IT decision-makers believe organisations struggling to meet NIS2 requirements

Datapac calls for government assistance as decision-makers face twin demands of security and regulation
Pro
Damien Mallon, Datapac

22 January 2025

More than three quarters (76%) of IT decision-makers believe Irish organisations will struggle to meet all NIS2 requirements, and an overwhelming majority (99%) have called for more financial support from the government to achieve compliance, according to a survey carried out by Censuswide for Datapac.

The poll of 200 decision-makers across the Republic of Ireland underscored the importance of cyber security readiness in an evolving regulatory landscape.

NIS2 came into force in January 2023 but member states were given until 17 October 2024 to transpose it into law. To date only Belgium, Croatia, Hungary, Italy, Latvia, and Lithuania have fully done so.

 

advertisement



 

Datapac’s research suggested a broader disconnect in how cyber security is prioritised within organisations, with only a third (33%) of IT decision-makers reporting that senior management only consider governance a priority when mandated by regulations.

Meanwhile, the survey found that cyber security remained a critical concern for IT decision-makers. The top concern among Irish businesses was organised cybercrime (34%), closely followed by phishing and social engineering (33%). A further 27% believed that the Dark Web posed one of the biggest threats to their business.

The survey also showed that 86% of organisations had experienced a cyber security incident in the past 12 months, with 76% of these incidents escalating to a data breach. When it came to managing cyber threats, businesses were aware of their limitations. Almost two-thirds (65%) said they lacked adequate internal skills and resources to handle the growing risk of cybercrime.

This concern is reflected in investment trends, with the same number (65%) increasing their cyber security spending in the past year. These factors are pushing organisations to enhance their security measures to protect against potential data breaches and compliance risks.

The findings also highlighted the role of external supports in regulatory compliance – some 64% of IT decision-makers surveyed recommending managed detection and response as an effective strategy to address compliance and security risks.

Damien Mallon, senior systems engineer, Datapac (pictured), said: “Our survey shows that organisations in Ireland are facing increasingly sophisticated cyber threats, and pressure to keep pace with evolving regulatory demands such as NIS2. There is a clear disconnect between IT leaders and senior management when it comes to cyber security, and many organisations likely to be impacted by NIS2 may find themselves on the back foot if cyber security governance is not made a company-wide priority.

“In an era of ever-intensifying cyber threats, readiness is key, and businesses must assess their current cybersecurity strategies to ensure that they meet evolving needs. We see the importance of pairing robust internal processes and governance with external expertise, which can help organisations to strengthen their defences, achieve compliance, and thrive in an ever-changing digital landscape.”

TechCentral Reporters

Read More:


Back to Top ↑