NIS2 (Directive (EU) 2022/2555) dramatically expands EU cybersecurity obligations, covering essential and important entities across sectors from energy to digital infrastructure. It is also the rare framework that names DNS explicitly. ZoneWatcher provides the monitoring, logging, and incident detection evidence NIS2 expects.
NIS2 treats DNS as critical infrastructure in its own right: DNS service providers and TLD registries are classified as essential entities, and the directive's recitals call out the security of the domain name system as vital to the functioning of the internal market. Even if your organization isn't a DNS provider, your DNS records route the services your customers depend on — and the Article 21 risk-management measures apply to the infrastructure behind those services.
NIS2's incident reporting clock is unforgiving: an early warning to your CSIRT or competent authority within 24 hours of becoming aware of a significant incident, an incident notification within 72 hours, and a final report within one month. You can't report what you haven't detected. ZoneWatcher's real-time change detection means DNS-based incidents surface in minutes, not days — preserving as much of that 24-hour window as possible for triage and assessment.
NIS2 gives national authorities audit and inspection powers, and Article 20 makes management bodies personally accountable for overseeing cybersecurity risk-management measures. ZoneWatcher provides:
A note on certifications
This guide explains how ZoneWatcher helps your organization prepare for its own audit against this framework. It is not a claim that ZoneWatcher holds this certification. For details on how we secure ZoneWatcher itself, see our security overview.
Start your free trial today and get full access to all monitoring features.