The EU's NIS2 Directive must be implemented as of October 2024. On the one hand, this will significantly expand the group of addressees who, analogous to critical infrastructures, will have to implement extensive cyber security requirements in the future. On the other hand, the supply chain must be adequately secured and existing cyber risks must be kept under control. The lecture explains what is actually important here.