The NIS Anlaufstelle is Austria's central contact point for network and information system security, administering the Netz- und Informationssystemsicherheitsgesetz. It implements the EU's NIS framework in Austrian law, covering operators of essential services, digital service providers and public administration entities. NIS2 substantially widened the population of entities in scope, and the Anlaufstelle is where those obligations are explained and where incidents are reported.
What the NIS Anlaufstelle publishes
- Q&A material on NIS2 implementation, addressing scope and obligations
- Guidance for specific stakeholder groups — essential service operators, digital service providers and public agencies
- Information on CSIRTs and qualified security entities
- Technical documentation and factsheets on compliance requirements
- Operation of the incident reporting portals for public administration, operators and the energy sector
Why it matters for compliance teams
NIS2 and DORA overlap for financial institutions, and the overlap is not clean: an Austrian firm can fall within both, with incident reporting obligations running to different authorities on different deadlines. The Anlaufstelle's scope guidance is the practical way to determine whether NIS2 applies on top of the financial-sector regime.
Seqlense DOC indexes Austrian NIS material alongside DORA and the European cybersecurity framework, so a compliance team can resolve the overlap rather than reporting twice by default.