Cybersecurity
Moldova's NIS2-style regime: minimum security measures and incident reporting, supervised by the Cybersecurity Agency.
Who it covers
- Essential and important entities in critical sectors - energy, transport, health, finance, digital
- ICT and digital-infrastructure service providers
What it asks, in short
- Minimum security measures (GD 562/2025)
- Incident reporting to the ASC
- A designated person responsible for security
Deadlines close in 2026–2027: 12 months (essential) / 18 months (important)