Compliance / Directive (EU) 2022/2555
NIS2
Cybersecurity obligations for essential and important entities: risk management, incident handling, supply-chain security, and 24-hour early warning for significant incidents.
Evidence Kaldros produces
Each item is generated from the chain for the selected window and included in the framework-specific evidence pack. Items below are illustrative — the full control map is in the documentation.
- ▸ Incident timeline from agent activity
- ▸ Supply-chain controls for LLM and tool providers
- ▸ 24h early-warning notification records
- ▸ Board-level risk reporting artefacts