Today, I’ll work on drafting feedback to ENISA’s consultation on their guidance for the #NIS2 implementing act for the digital sector. Once again, the #foss bits could use some love, though I’m happy they did write about it in the first place.
The focus is once again on “supply chain security requirements” with the goal of avoiding undue pressure from regulated entities towards upstream #opensource communities treated as “suppliers”.
Interested? Blog from past summer: https://blog.nlnetlabs.nl/supply-chain-security-obligations-for-nis2-regulated-entities-vs-developers-of-open-source-software/
Conversation
Notices
-
Embed this notice
Maarten Aertsen (maarten@techpolicy.social)'s status on Monday, 25-Nov-2024 19:47:17 JST Maarten Aertsen