1. NIS2 impacts on CMDB

    Artikel: AN0002555Aktualisiert: 06.02.2025
    Die vorgegebene Sprachenversion vom Artikeltext wird angezeigt, weil es kein Text von der ausgewählten Sprache und Version gibt.

    Impacts on entity properties and their relationships

    NIS2 and its transposition into national law have an impact on CMDB. Below example reflects the Czech Republic implementation in the Cyber ??Security Act.

    Entity Property
    Contract New indications:
    • Regulated service
    • Strategic service
    Partner, Vendor New property:
    • Regulated service provider mode
    New indication:
    • Risk vendor

    Relationship to Risk log

    Configuration item (CI) New indication:
    • Primary asset
    New property:
    • Related to the provision of a regulated service (multiple reference)
    • Supporting assets (multiple selfreference)

    Relationship to Risk log

    Incident New indication:
    • Cyber security incident

     

    Entity relationship diagram

    Below entity-relationship diagram captures impact of these updates.

    Examples of screens with new properties

    Primary assets are marked with a checkbox. At the same time, it will be determined to which provided regulated services the given asset is related.

    Supporting assets can be identified through existing references in the CMDB and displayed in schemes. If the customer prefers to specify critical supporting assets directly in the configuration item, they can do so in the NIS2 section.

     

    The risk log is now also available for configuration items and for partners/vendors.

    Siehe auch

×