Opens in a new tab
Back
Back
Back
Blog

›

NIS2 reaches a decisive moment for Italian companies in October 2026

In this article

NIS2 reaches a decisive moment for Italian companies in October 2026

October 1, 2026

·

5 min read

Tuany Troleze

Tuany Troleze

NIS2 a ottobre 2026 per le aziende italiane

October 2026 marks an important turning point for NIS2 in Italy. Almost two years after the European deadline for transposing the directive, attention is shifting more and more toward enforcement. For many of the companies involved, this period also coincides with the deadline set to adopt the required security measures.

Adopted by the European Union in 2022, NIS2 is the directive created to strengthen the cybersecurity level of organizations considered essential or important for the functioning of the economy and of services. It expanded the number of sectors involved compared to the previous NIS and introduced more precise requirements on risk management, incident response and internal responsibilities. After the transposition phase and the identification of the entities concerned, 2026 is bringing more and more companies into the phase of operational implementation.

You might also be interested in:

ServiceOps: what it means and why ITSM and IT Operations are converging

Assets, the CMDB and suppliers become more relevant with NIS2

October 2026 changes the perspective on NIS2

In Italy this shift is particularly evident. Many entities added to the NIS list in 2025 are reaching, in these weeks, the end of the 18 months allowed to adopt the baseline security measures. The exact date depends on the communication received from the National Cybersecurity Agency, so October does not coincide with a single deadline valid for all organizations.

The meaning of this period remains very clear, however. In 2025 much of the work was focused on reading the obligations and on internal organization. In 2026 the point becomes verifying what has actually been implemented. NIS2 entered into force in the European Union in January 2023, and member states had until 17 October 2024 to transpose it. Now the regulatory phase is leaving more and more room for verifying what companies have really put into practice.

NIS2 enters the daily work of IT

The directive requires cybersecurity to find room in everyday business processes. This means having an up-to-date view of the technological environment and knowing which systems support the organization’s services. IT environments are increasingly distributed between internal infrastructure and cloud services, while part of the activities is entrusted to external suppliers.

When information stays scattered across different tools, obtaining a reliable picture becomes more difficult. Having up-to-date data on assets and on service dependencies therefore becomes an important part of risk management, because it makes it possible to understand more quickly which components may be involved in a problem.

Assets, CMDB and suppliers become more relevant

IT Asset Management makes it possible to keep the information on the assets present in the organization up to date, while the CMDB helps understand how these elements connect to business services. During an incident, this relationship makes it possible to move from the component involved to the service that could suffer the consequences.

The same logic applies to suppliers. NIS2 also pays attention to supply chain security and makes it more important to know the dependencies on external parties. Knowing which services depend on technologies managed by third parties helps assess the impact of a problem and identify the parties involved more quickly.

Incidents and changes require more traceability

NIS2 introduces precise timelines for notifying significant incidents. A first communication must take place within 24 hours of becoming aware of the incident, followed by the notification required within 72 hours. Before reaching the communication, however, the team must be able to understand what happened and which services are involved.

Change Management enters this process as well. An incident can be linked to a recent update or change in the infrastructure, so being able to trace the activities carried out helps identify any relationships more quickly. Traceability also becomes useful for management, which under NIS2 must approve and supervise the measures adopted for managing cybersecurity risks.

Compliance depends on the continuity of processes

Complying with NIS2 means being able to retrieve reliable information when it is needed. You need to know which assets are present in the IT environment and which services depend on them. During an incident you need to quickly reconstruct what happened, while in ordinary management it becomes important to keep the information on changes and external dependencies up to date.

For many companies, October 2026 makes this shift particularly evident. Preparation gives way to verifying what has actually been done, and compliance depends more and more on the ability to keep processes up to date and traceable in daily work.

With Deepser, assets and services can be managed within the same platform and connected to Service Management processes. The team can keep a clearer view of the IT environment and retrieve the needed information more quickly when it has to analyze an incident or check a change. ITAM, CMDB, Incident Management, Change Management and supplier management work on the same data, reducing the fragmentation of information and improving the traceability of activities. This helps the organization manage, in a more orderly way, many of the processes that also become central on the path toward NIS2.

Try our free demo and discover how we can support your company.

Try our free demo

Subscribe to our newsletter

Get the best content on ITSM software, customer service and processes in your inbox twice a month.

Summarize this article with AI

Access the recording

See Deepser in action

Work with us

Access the Resource

Complete the form to get immediate access.

Compare all features
Feature
Starter
Plus
Enterprise
Service & Ticketing
Service Management
Incident Management
Issue Management
Request Management
Problem Management
Change Management
Customizable Service Types
Help Desk
Manage Priority/Urgency
Manage Status
Multi-Level Customizable Categorization
Routing Rules
Request Assignment
Customizable Service Desk Queues
Reminders
Escalation Rules
Multichannel Communication
Email Ticketing
Unlimited Email Integrations
Automatic Email Notifications
Customizable Email Templates
Call Center Management
CTI Integration
Time Tracking
Worklog Activities & Reports
Internal Comments
Comments To Users
Pre-Defined Quick Replies And Macros/Templated Responses
Ticket Relationship Mapping
Custom Ticket Templates
Multiple Ticket Templates & Template Rules
Ticket Export
Task Automation
To Do List
Tasks For Maintenance Scheduling And Activity Planning
Visual Calendar And Progress
Split Activities To Multiple Users
Customizable Task Types
Customizable Task Templates And Fields
SLA
Multiple Service Level Agreements Policies
Custom Work Calendars
Custom Unlimited Metrics
Custom Unlimited Goals
Business Rules Management
Reminders And Notifications
Escalations For Sla Violation
Escalations To Prevent Sla Violation
Marketing
Conversions Management
Ads Campaigns Management
UTM Parameteres Tracking
Performance Monitoring
Advanced Collaboration
Changes Tracking
Sales
Catalog: Product Management
Catalog: Simple Products & Grouped Products
Catalog: Product Types and Visibility
Catalog: Related Products
Tax Management
Tax based on Country
Multiple taxes
Currency: Multiple Currency
Currency: Automatic Currency Rate Updates
Currency: Quotes & Orders with different currencies
Price List: Multiple Price List Management
Price List: Catalog Price List Rules & Priorities
Price Lists based on Account
Quotation Management
Quotation templates
Order Management
Order templates
Create Orders from Quotations
Invoice Management
Invoice templates
Create Invoice from Orders
Create Invoice from Tickets
Create Invoice from Products
Shipment Management
Shipment templates
Create Shipment from Orders
Calendar
Visual Calendars
Customizable Calendars Linked To Service, Cmdb, Crm, Tasks, Etc.
Integration with Microsoft 365 & Google Calendars
ITAM
IT Asset Manager With Auto-Discovery
Asset Lifecycle Management
Job Rules To Automatically Assign Assets To Companies/Users
Remote Collectors For Segregated Networks
Windows Agent
Agentless Discovery With Multiple Protocols
Monitoring
Software Manager: Auto-Detect Of Installed Software
Ip Address Manager With Subnets Auto-Discovery
Remote Control With Teamviewer
Remote Control With Anydesk
Remote Control With Splashtop
Integrations
Unlimited Ldap Integrations
LDAP Compliance With All Commercial Standards (Active Directory, Open Ldap, Etc.)
Import Users From LDAP
Import Groups From LDAP
Azure AD
SAML & OAuth2.0
SSO – Single Sign On
SSO Linked With Ldap Integration
Import – Powerful Native Tool
Import – Unlimited Customizable Imports
Export – Excel/Csv/Pdf Exports
Integration – Connector For External Integrations
API – Powerful Rest API
Open Source Library For Api Integration
Telephone Switchboards Via CTI
Dashboard
Real Time Html5 Dashboards
Dashboards Panels With Group Permissions
Unlimited Customizable Dashboards
Reports
Pre-Defined Reports
Unlimited Customizable Reports
Scheduled Email Reports
Grids
Massive Actions For Multiple Updates
Excel/Csv Export
Granular Visibility Permissions
Miscellaneous
Watchers Users
Multicompany
Multidepartment
Supervisor Users
Global Search On All Entities
Unlimited Custom Fields
Customizable Branding
Custom Fields For Every Entity: Ticket, Crm, Cmdb, Users, Companies, Itam, Etc.
Customizable Form Templates
Granular Visibility For Every Template Field
Customizable Template Rules
Custom Grids
Custom Grids: Easy Configuration With Drag&Drop Tool
Custom Events For Integrations Or Custom Processes
Multifactor Authentication
Multi Language
Flexible And Powerful Permission Management
Flexible User Groups
Customizable User Roles
System Lists With Advanced Permissions And Logic
Unlimited Customizable Lists With Advanced Permissions And Logic
Attachments For Document Storage
Unlimited Attachments With Drag&Drop Management
Attachment Types With Advanced Permissions For Visibility
Multiple Warehouse Management
Warehouse Loads and Unload
Warehouse: Tickets and Worklog integration
Portals
End User Portal
Self-Service Portal
User Registration With Customizable Signup Process
Guest Portal For Non-Registered Users
Cmdb Portal For End Users / Customers
Crm Portal For End Users/Customers
Cms For Guest Portal
Announcement: Type management
Announcement: ITSM Release Management
Announcement: Scheduling
Announcement: Visibility management & permissions
Announcement: Tag categorization and custom sorting
Announcement: Integration with Portal Designer
Chat
Internal Conversations
Internal Conversation Channels
End User Portal Chat
Conversation Channels With Multiple End Users / Customers
Web Widget
Branded Widget Published On Multiple Web Sites
Customization Of The Widget
Customizable Offline Module
Unlimited Simultaneous Chats
File Sending
Activity Hours
Board
Kanban With Entities Integration
Kanban With Free Forms
Contract
Integrated Worklogs
Purchase Orders Management
Suppliers Management
Contracts In Hours & Quantity
Contracts Workflows
CRM
Account Management (Customers, Providers, Suppliers, Partners, Etc.)
Contact Management (Leads, Prospects, Contacts, Etc.)
Opportunity Management
Customizable Opportunity Types
Linked With Service Management And Contracts
Sales Pipeline Management
Email Crm For Sales Opportunities And Contracts
Address management: Address type management (e.g. location address, billing, shipping, etc.)
Address management: Address association to Accounts, Offices, Warehouses and CMDB
Password Manager
Secure Password Manager With Double Key Encryption
Secure Password Manager Portal For End Users / Customers
Secure Password Manager With Corporate (Shared) Passwords
Secure Password Manager With Private Passwords
Audit Log For Passwords Security
Passwords Linked To All Entities Of The System
Password Manager: Automatic Generation
Password Manager: Strength Checker
Knowledge Base
Multiple Knowledge Bases
Kbs Visibility Based On Groups
Portal Kbs For End Users / Customers
Public Kbs For Non-Logged Users
Kb Linked To Tickets
Kb Linked To Cmdb / Itam
Kb Linked To Crm
CMDB
Unlimited Customizable Ci Object Types
Unlimited Cis
Relations Between Cis
Link With Tickets
Link With Crm And Contracts
Service Catalog Management
Contract Management
License Management
Locations
Link With Itam (Autodiscovery) Module
Planned Activities / Maintenance
Email Cmdb For Devices And Contracts
Graph view relations
Graph view layout & dynamic loading
Module Creator
Create Apps & Custom Modules
Create Custom Forms & Grids
Create End User Portal Custom Modules
Create Custom API
Survey
Customer Satisfaction Survey
Survey Form Visual Designer
Automatic Surveys
Realtime Dashboards
Periodic surveys
Project
Project Management
Auto-scheduling for tasks
Advanced Permissions
Project dependencies and constraints
Project milestones and deliverables
Flow
Approval Request Management
Management Of Approvals By Email
Management Of Approvals From User Portal
Approval Rules Management
Approval Stage Management
Management Of Scheduled Flows
Management Of Automatic Entity Creation
Management Of Automatic Entity Update
Scheduled Maintenance Management
Task Automation Management
Automatic Email Management
No Code / Low Code Platform
Portal Designer
Visual Portal Designer
Frontend Portal Visual Designer
Graphic Widget
Portal Page Management
Group Based Visibility Management
Graphic Widget Customization
Multiple Portals Management
Product Management
Development Task Prioritization
Bug and Fix Tracking
Product Issue Management
Product Backlog Management
Feature Requests Management
Changes Tracking
Task Assignment to Developers