The Critical Entities Resilience Directive (CER) is the physical counterpart to the cyber-focused NIS2 directive. The overall aim of CER is to strengthen collective resilience by addressing physical threats to critical infrastructure meaning that CER shifts the focus from digital resilience to physical threats, personnel security, and operational durability.
Ensuring that public and private organizations possess intrinsic robustness and operational resilience is necessary for national stability and security, and the CER underscores this exact necessity. This makes it vital for organizations providing essential services to proactively address these specific requirements.
In this article, we share our breakdown of CER, highlight key requirements and scope criteria, and provide insights based on our ongoing client engagements.