ThreatCluster

New Cyber Resilience Act Enforces Cyberattack Notifications and Heavy Sanctions

First seen 9 Sep 2026, 11:13 UTC Thestar.MyDemocrata.Es 28

Article Content

Browse articles
ThreatCluster

As of September 9, 2026, the Cyber Resilience Act mandates organizations to report cyberattacks within 72 hours or face fines up to €15 million. This legislation aims to enhance cybersecurity across sectors by ensuring timely disclosure of incidents. Organizations affected include those in critical infrastructure, finance, and healthcare. The Act also emphasizes the need for improved cyber resilience strategies. Additionally, TM One has introduced TM Cydec, a new service designed to bolster cyber resilience for organizations. The service aims to help businesses better prepare for and respond to cyber threats. The current status indicates that organizations are now under legal obligation to comply with these new regulations.

Key Points: • The Cyber Resilience Act requires cyberattack notifications within 72 hours. • Fines for non-compliance can reach up to €15 million. • TM One launched TM Cydec to enhance organizational cyber resilience.

Ask AI about this cluster

Timeline

2026-09-08
TM One launches TM Cydec
TM One introduced TM Cydec to strengthen cyber resilience for organizations, enhancing their preparedness against cyber threats.
Thestar.My
2026-09-09
Cyber Resilience Act goes into effect
Organizations must report cyberattacks within 72 hours or face fines of up to €15 million.
Democrata.Es