ClassNK Releases Updated Cyber Security Management System Guidelines
Article Content
- •ClassNK has released updated guidelines for its Cyber Security Management System.
- •The guidelines provide assessment criteria for audits and align with external requirements.
- •A handbook for NK-CSMS audits will be available soon to assist ship management companies.
On October 5, 2026, ClassNK announced the release of the latest version of its Cyber Security Management System (CSMS) guidelines for ships. The updated guidelines outline assessment criteria for audits and provide practical mapping material for certificate holders to align with external vetting requirements. These guidelines aim to enhance the effectiveness of cyber security management both onboard ships and within companies. ClassNK emphasizes the importance of ensuring safe ship operations through effective cyber security measures. The guidelines are designed to streamline compliance with various external requirements, allowing companies to prepare for audits more efficiently. The release also includes a forthcoming 'Handbook for NK-CSMS Audits' to assist ship management companies in operational matters.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track ClassNK in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What do the updated guidelines cover?
How will these guidelines affect ship management companies?
Is there additional support available for implementing these guidelines?
Continue Reading
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…
Critical Zero-Day Exploits in Citrix NetScaler Confirmed by CISA On September 26, 2026, CISA confirmed the active exploitation of two critical zero-day vulnerabilities in Citrix NetScaler, identified as CVE-2026-88771 and CVE-2026-88772, both with a CVSS score of 9.5. These vulnerabilities allow remote code execution and affect all default configurations of NetScaler ADC and…