Open training, A1
NIS2 and KSC for boards: obligations, liability, penalties
A four-hour session for people accountable for their organisation's compliance rather than for implementing it. No technicalities, but an answer to two questions: whether your organisation is covered by the regulations, and what you are personally accountable for.
Duration: 4 hours
About the course
The Act on the National Cybersecurity System (ustawa o krajowym systemie cyberbezpieczeństwa, the Polish implementation of NIS2) moved part of the accountability for security from the IT department to the organisation's management. This is a change of governance, not of technology, and it cannot be delegated downwards. The management board approves risk management measures, is accountable for their implementation and bears the consequences if they are missing.
The training does not teach how to configure security controls. It teaches how to check your own organisation's status, what evidence to demand from the team, how to read what the team brings, and how to set the order of spending when the budget does not cover everything at once.
Led by Michał Zdunowski, author of a book on NIS2 in Poland published by INFORLEX, creator of the ShieldNet Framework, with over fifteen years of experience in cybersecurity on both the public administration and the business side.
Hourly programme
- 9:00Who is covered and from when. Essential or important entity, how to check your own status
- 9:45Management duties. What the regulations require personally from the board
- 10:30Break
- 10:45Sanctions and liability. What can realistically happen, to whom, and under what procedure
- 11:30Oversight without going into technicalities. What questions to ask the team, what evidence to demand
- 12:15Budget and the order of actions with limited funds
- 12:45Questions
Who it is for
Management board, owners, directors, people responsible for compliance oversight.
Outcome
Participants know whether their entity is covered by the regulations, understand the scope of their own liability, and leave with a list of three to five decisions to take at the next board meeting.
Materials
PDF presentation, a one-page checklist of obligations, a template resolution appointing the responsible person, certificate of attendance.
Format and group size
Live online or on site, group of 6 to 20 people.
Prerequisites
None.
Dates
A1
Registration openNIS2 and KSC for boards: obligations, liability, penalties
7 October 2026, Wednesday9:00 to 13:00, 4 hoursOnline690 PLN net for registrations up to 21 September 2026
790 PLN net after that date
per person
Registration until 2 October 2026
A1
AnnouncedNIS2 and KSC for boards: obligations, liability, penalties
25 November 2026, Wednesday9:00 to 13:00, 4 hoursOnline690 PLN net for registrations up to 30 October 2026
790 PLN net after that date
per person
Registration until 20 November 2026
Training sessions are not recorded.
Prices are net amounts, to which VAT at 23% is added. Buyers financing the training at least 70% from public funds are asked to notify us before the invoice is issued.
