NIS2 in Estonia
Estonia transposed NIS2 via the Küberturvalisuse seadus. RIA enforces advanced cyber protocols across the highly digitized nation.
Key Deadlines
Competent Authority
RIA monitors compliance through automated telemetry and regular digital audits, emphasizing integration with e-state platforms.
Registration Process
Register via the RIA portal using digital ID or e-Residency signatures.
Find out if your company is in scope
Does your organisation fall under Annex I (Essential) or Annex II (Important) entities?
Key Requirements
- 1Verify alignment with Estonian IT baseline security standard (E-ITS)
- 2Prompt incident submission to CERT-EE within 24 hours
- 3Mandatory penetration testing for high-value government integrations
National Additions
FAQ: NIS2 in Estonia
What is E-ITS?
Ready to assess your NIS2 compliance?
Use our free tools to check your NIS2 scope and run a gap assessment.
Currency and sources
The legal details on this page were last checked on 25 July 2026. Some details rest on a single secondary source and are not verified against the national authority or official journal. Confirm with the competent authority before relying on them for a compliance decision.