New cybersecurity rules proposed for EU bodies amid global concerns

Governments are on high alert, anticipating Russian cyberattacks in retaliation for sanctions.

Please note: This item is from our archives and was published in 2022. It is provided for historical reference. The content may be out of date and links may no longer function.

European Commissioner for Budget and Administration Johannes Hahn speaks in Brussels in December.

European Commissioner for Budget and Administration Johannes Hahn speaks in Brussels in December.

EU countries should put in place a framework to manage cybersecurity risks at EU institutions, the European Commission said on Tuesday, amid concerns about rising cyberattacks that could disrupt key activities and steal sensitive information.

The proposal is part of a package of draft rules by the EU executive called the Cybersecurity Regulation that also aims to create a Cybersecurity Board to monitor the implementation of the new rules.

“In a connected environment, a single cybersecurity incident can affect an entire organisation. This is why it is critical to build a strong shield against cyber threats and incidents that could disturb our capacity to act,” Budget Commissioner Johannes Hahn said in a statement.

Under the draft rules, all EU institutions, bodies, and agencies will have to identify cybersecurity risks, set up a plan to improve their cybersecurity, do regular assessments, and share details about incidents.

The Commission also proposed an information security regulation that will create a minimum set of rules and standards for all EU institutions.

Governments have warned for weeks that Russia or its allies could carry out cyberattacks in retribution for sanctions, leading banks to increase monitoring and scenario planning and line up extra staff in case hostile activity surges.

Earlier this month, EU ministers called for the setting up of a cybersecurity emergency response fund to counter large-scale cyberattacks.

(Reporting by Foo Yun Chee; editing by Mark Potter)

Up Next

UK regulator publishes guidance for Stewardship Code reporting

By Steph Brown
October 30, 2025
The FRC’s guidance aims to support organisations’ reporting and approach to the updated UK Stewardship Code 2026.
Advertisement

LATEST STORIES

Learn fast, learn often: Lessons from two finance leaders

AI: The bandwagon you can’t afford to miss

Change fatigue’s causes, effects, and solutions

UK regulator publishes guidance for Stewardship Code reporting

Gen Z leads in AI adoption, upskilling, but training gaps persist

Advertisement
Read the latest FM digital edition, exclusively for CIMA members and AICPA members who hold the CGMA designation.
Advertisement

Related Articles