The National Security Authority (NBÚ) is the central body for cybersecurity. It maintains a register of obliged entities, that is, operators of essential and digital services, for whom legislation gives rise to obligations in the areas of risk management, security measures and incident reporting within set deadlines. It also operates a unit that helps resolve serious incidents, and it issues methodologies and recommendations that are usable even by companies that are not among the obliged entities. With the expansion of the circle of obliged entities under the newer European regulation, the topic also affects medium-sized enterprises in manufacturing, food production, transport and waste management. Companies that supply larger organisations encounter these requirements indirectly through contractual terms in the supply chain. The register of obliged entities is public, so a company can check whether the obligations apply to it.
See also: NIS2 and cybersecurity, Security incident and reporting, Cybersecurity as an expense.