{"id":187603,"date":"2026-04-24T19:09:34","date_gmt":"2026-04-24T17:09:34","guid":{"rendered":"https:\/\/factorialhr.com\/blog\/?p=187603"},"modified":"2026-04-24T19:26:53","modified_gmt":"2026-04-24T17:26:53","slug":"empresas-essenciais-vs-importantes-nis2","status":"publish","type":"post","link":"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/","title":{"rendered":"Empresas essenciais vs importantes na diretiva NIS2"},"content":{"rendered":"<p id=\"p-rc_93305a23f9fabdf2-19\" data-path-to-node=\"1\"><span data-path-to-node=\"1,1\"><span class=\"citation-185\">A diretiva NIS2 marca <\/span><b data-path-to-node=\"1,1\" data-index-in-node=\"22\"><span class=\"citation-185\">um antes e um depois nas obriga\u00e7\u00f5es de ciberseguran\u00e7a<\/span><\/b><span class=\"citation-185\"> para milhares de empresas na Europa<\/span><\/span><span data-path-to-node=\"1,3\">. <\/span><span data-path-to-node=\"1,5\"><span class=\"citation-184\">Embora todas as organiza\u00e7\u00f5es afetadas devam cumprir um n\u00edvel de prote\u00e7\u00e3o elevado e medidas de seguran\u00e7a uniformes, a legisla\u00e7\u00e3o introduz uma distin\u00e7\u00e3o fundamental entre entidades essenciais e entidades importantes<\/span><\/span><span data-path-to-node=\"1,7\">. <\/span><span data-path-to-node=\"1,9\"><span class=\"citation-183\">Esta classifica\u00e7\u00e3o n\u00e3o afeta tanto as medidas t\u00e9cnicas a implementar, mas influencia diretamente o n\u00edvel de supervis\u00e3o estatal e o montante das poss\u00edveis san\u00e7\u00f5es<\/span><\/span><span data-path-to-node=\"1,11\">. <\/span><\/p>\n<p data-path-to-node=\"1\"><span data-path-to-node=\"1,13\"><span class=\"citation-182\">Compreender esta diferen\u00e7a \u00e9 fundamental para <\/span><b data-path-to-node=\"1,13\" data-index-in-node=\"46\"><span class=\"citation-182\">antecipar, avaliar riscos e evitar incumprimentos dentro do ecossistema empresarial portugu\u00eas<\/span><\/b><\/span><span data-path-to-node=\"1,15\">. <\/span><span data-path-to-node=\"1,17\"><span class=\"citation-181\">Neste artigo, explicamos de forma clara o que significa cada categoria, as suas diferen\u00e7as e como saber em qual delas se enquadra a sua organiza\u00e7\u00e3o<\/span><\/span><span data-path-to-node=\"1,19\">.<\/span><\/p>\n<h2 id=\"p-rc_93305a23f9fabdf2-20\" data-path-to-node=\"2\"><span data-path-to-node=\"2,1\"><span class=\"citation-180\">O que \u00e9 a NIS2 e por que raz\u00e3o classifica as empresas?<\/span><\/span><\/h2>\n<p id=\"p-rc_93305a23f9fabdf2-21\" data-path-to-node=\"3\"><span data-path-to-node=\"3,1\"><span class=\"citation-179\">A <a href=\"https:\/\/factorialhr.pt\/blog\/nis2-portugal\/\">diretiva NIS2<\/a> \u00e9 a nova legisla\u00e7\u00e3o da Uni\u00e3o Europeia que <\/span><b data-path-to-node=\"3,1\" data-index-in-node=\"58\"><span class=\"citation-179\">refor\u00e7a os requisitos de ciberseguran\u00e7a para empresas que prestam servi\u00e7os cr\u00edticos ou relevantes para a sociedade e a economia<\/span><\/b><\/span><span data-path-to-node=\"3,3\">. <\/span><span data-path-to-node=\"3,5\"><span class=\"citation-178\">O seu objetivo \u00e9 melhorar a resili\u00eancia face a ciberataques e garantir uma resposta coordenada perante incidentes<\/span><\/span><span data-path-to-node=\"3,7\">. <\/span><span data-path-to-node=\"3,9\"><span class=\"citation-177\">Para aplicar estas obriga\u00e7\u00f5es de forma eficaz e proporcional, a legisla\u00e7\u00e3o classifica as organiza\u00e7\u00f5es <\/span><b data-path-to-node=\"3,9\" data-index-in-node=\"102\"><span class=\"citation-177\">segundo o seu n\u00edvel de criticidade e impacto potencial<\/span><\/b><\/span><span data-path-to-node=\"3,11\">. <\/span><span data-path-to-node=\"3,13\"><span class=\"citation-176\">Nem todas as empresas t\u00eam o mesmo peso no funcionamento da economia ou dos servi\u00e7os essenciais<\/span><\/span><span data-path-to-node=\"3,15\">. <\/span><span data-path-to-node=\"3,17\"><span class=\"citation-175\">Por isso, a diretiva NIS2 distingue entre <\/span><b data-path-to-node=\"3,17\" data-index-in-node=\"42\"><span class=\"citation-175\">entidades essenciais<\/span><\/b><span class=\"citation-175\"> e <\/span><b data-path-to-node=\"3,17\" data-index-in-node=\"65\"><span class=\"citation-175\">entidades importantes<\/span><\/b><span class=\"citation-175\"> em fun\u00e7\u00e3o de fatores como o setor, a dimens\u00e3o, a depend\u00eancia de sistemas digitais ou as consequ\u00eancias que teria uma interrup\u00e7\u00e3o da sua atividade<\/span><\/span><span data-path-to-node=\"3,19\">.<\/span><\/p>\n<h2 id=\"p-rc_93305a23f9fabdf2-22\" data-path-to-node=\"4\"><span data-path-to-node=\"4,1\"><span class=\"citation-174\">O que \u00e9 uma empresa essencial segundo a NIS2?<\/span><\/span><\/h2>\n<p id=\"p-rc_93305a23f9fabdf2-23\" data-path-to-node=\"5\"><span data-path-to-node=\"5,1\"><span class=\"citation-173\">Uma empresa essencial, segundo a diretiva NIS2, \u00e9 aquela organiza\u00e7\u00e3o que <\/span><b data-path-to-node=\"5,1\" data-index-in-node=\"73\"><span class=\"citation-173\">opera em setores considerados cr\u00edticos para o funcionamento da sociedade e da economia<\/span><\/b><span class=\"citation-173\">, e cuja interrup\u00e7\u00e3o poderia provocar um impacto significativo em servi\u00e7os b\u00e1sicos, na seguran\u00e7a p\u00fablica ou na estabilidade econ\u00f3mica<\/span><\/span><span data-path-to-node=\"5,3\">.<\/span><\/p>\n<p id=\"p-rc_93305a23f9fabdf2-24\" data-path-to-node=\"6\"><span data-path-to-node=\"6,1\"><span class=\"citation-172\">Para que uma empresa seja considerada essencial, necessita de cumprir os seguintes crit\u00e9rios<\/span><\/span><span data-path-to-node=\"6,3\">:<\/span><\/p>\n<h3 id=\"p-rc_93305a23f9fabdf2-25\" data-path-to-node=\"7\"><span data-path-to-node=\"7,1\"><span class=\"citation-171\">1. Operar num setor considerado de &#8220;alta criticidade&#8221;<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-26\" data-path-to-node=\"8\"><span data-path-to-node=\"8,1\"><span class=\"citation-170\">Os setores considerados de &#8220;alta criticidade&#8221; s\u00e3o os seguintes<\/span><\/span><span data-path-to-node=\"8,3\">:<\/span><\/p>\n<ul data-path-to-node=\"9\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-27\" data-path-to-node=\"9,0,1\"><span data-path-to-node=\"9,0,1,0\"><b data-path-to-node=\"9,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-169\">Energia:<\/span><\/b><span class=\"citation-169\"> eletricidade, redes de aquecimento e arrefecimento urbano, petr\u00f3leo, g\u00e1s e hidrog\u00e9nio<\/span><\/span><span data-path-to-node=\"9,0,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-27\" data-path-to-node=\"9,0,1\"><span data-path-to-node=\"9,1,1,0\"><b data-path-to-node=\"9,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-168\">Transporte:<\/span><\/b><span class=\"citation-168\"> a\u00e9reo, ferrovi\u00e1rio, mar\u00edtimo e rodovi\u00e1rio<\/span><\/span><span data-path-to-node=\"9,1,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-29\" data-path-to-node=\"9,2,1\"><span data-path-to-node=\"9,2,1,0\"><b data-path-to-node=\"9,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-167\">Banca:<\/span><\/b><span class=\"citation-167\"> institui\u00e7\u00f5es de cr\u00e9dito<\/span><\/span><span data-path-to-node=\"9,2,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-30\" data-path-to-node=\"9,3,1\"><span data-path-to-node=\"9,3,1,0\"><b data-path-to-node=\"9,3,1,0\" data-index-in-node=\"0\"><span class=\"citation-166\">Infraestruturas dos mercados financeiros:<\/span><\/b><span class=\"citation-166\"> operadores de plataformas de negocia\u00e7\u00e3o, sistemas de liquida\u00e7\u00e3o e contrapartes centrais<\/span><\/span><span data-path-to-node=\"9,3,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-31\" data-path-to-node=\"9,4,1\"><span data-path-to-node=\"9,4,1,0\"><b data-path-to-node=\"9,4,1,0\" data-index-in-node=\"0\"><span class=\"citation-165\">Sa\u00fade:<\/span><\/b><span class=\"citation-165\"> prestadores de cuidados de sa\u00fade, laborat\u00f3rios de refer\u00eancia, atividades de investiga\u00e7\u00e3o e desenvolvimento farmac\u00eautico e fabricantes de medicamentos<\/span><\/span><span data-path-to-node=\"9,4,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-32\" data-path-to-node=\"9,5,1\"><span data-path-to-node=\"9,5,1,0\"><b data-path-to-node=\"9,5,1,0\" data-index-in-node=\"0\"><span class=\"citation-164\">\u00c1gua pot\u00e1vel:<\/span><\/b><span class=\"citation-164\"> fornecedores e distribuidores respons\u00e1veis pelo abastecimento<\/span><\/span><span data-path-to-node=\"9,5,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-33\" data-path-to-node=\"9,6,1\"><span data-path-to-node=\"9,6,1,0\"><b data-path-to-node=\"9,6,1,0\" data-index-in-node=\"0\"><span class=\"citation-163\">\u00c1guas residuais:<\/span><\/b><span class=\"citation-163\"> empresas encarregues da recolha, elimina\u00e7\u00e3o ou tratamento<\/span><\/span><span data-path-to-node=\"9,6,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-34\" data-path-to-node=\"9,7,1\"><span data-path-to-node=\"9,7,1,0\"><b data-path-to-node=\"9,7,1,0\" data-index-in-node=\"0\"><span class=\"citation-162\">Infraestrutura digital:<\/span><\/b><span class=\"citation-162\"> prestadores de servi\u00e7os na <\/span><i data-path-to-node=\"9,7,1,0\" data-index-in-node=\"51\"><span class=\"citation-162\">cloud<\/span><\/i><span class=\"citation-162\">, centros de dados, redes de telecomunica\u00e7\u00f5es, prestadores de servi\u00e7os de DNS e registos de nomes de dom\u00ednio<\/span><\/span><span data-path-to-node=\"9,7,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-34\" data-path-to-node=\"9,7,1\"><span data-path-to-node=\"9,8,1,0\"><b data-path-to-node=\"9,8,1,0\" data-index-in-node=\"0\"><span class=\"citation-161\">Gest\u00e3o de servi\u00e7os TIC:<\/span><\/b><span class=\"citation-161\"> prestadores de servi\u00e7os geridos (MSP) e prestadores de servi\u00e7os de seguran\u00e7a geridos (MSSP) que operam em ambientes empresariais (B2B)<\/span><\/span><span data-path-to-node=\"9,8,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-34\" data-path-to-node=\"9,7,1\"><span data-path-to-node=\"9,9,1,0\"><b data-path-to-node=\"9,9,1,0\" data-index-in-node=\"0\"><span class=\"citation-160\">Administra\u00e7\u00e3o p\u00fablica:<\/span><\/b><span class=\"citation-160\"> entidades da administra\u00e7\u00e3o central e regional<\/span><\/span><span data-path-to-node=\"9,9,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-37\" data-path-to-node=\"9,10,1\"><span data-path-to-node=\"9,10,1,0\"><b data-path-to-node=\"9,10,1,0\" data-index-in-node=\"0\"><span class=\"citation-159\">Espa\u00e7o:<\/span><\/b><span class=\"citation-159\"> operadores de infraestruturas terrestres que apoiam a presta\u00e7\u00e3o de servi\u00e7os espaciais<\/span><\/span><span data-path-to-node=\"9,10,1,2\">.<\/span><\/p>\n<\/li>\n<\/ul>\n<h3 id=\"p-rc_93305a23f9fabdf2-38\" data-path-to-node=\"10\"><span data-path-to-node=\"10,1\"><span class=\"citation-158\">2. Dimens\u00e3o da organiza\u00e7\u00e3o<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-39\" data-path-to-node=\"11\"><span data-path-to-node=\"11,1\"><span class=\"citation-157\">Para que uma empresa seja considerada essencial, tem de cumprir um dos seguintes pontos<\/span><\/span><span data-path-to-node=\"11,3\">:<\/span><\/p>\n<ul data-path-to-node=\"12\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-40\" data-path-to-node=\"12,0,0\"><span data-path-to-node=\"12,0,0,1\"><span class=\"citation-156\">Ter <\/span><b data-path-to-node=\"12,0,0,1\" data-index-in-node=\"4\"><span class=\"citation-156\">mais de 250 colaboradores<\/span><\/b><span class=\"citation-156\">, ou<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-41\" data-path-to-node=\"12,1,0\"><span data-path-to-node=\"12,1,0,1\"><span class=\"citation-155\">Ter <\/span><b data-path-to-node=\"12,1,0,1\" data-index-in-node=\"4\"><span class=\"citation-155\">um volume de neg\u00f3cios anual superior a 50 milh\u00f5es de euros<\/span><\/b><span class=\"citation-155\"> (ou balan\u00e7o geral superior a 43 milh\u00f5es)<\/span><\/span><span data-path-to-node=\"12,1,0,3\">.<\/span><\/p>\n<\/li>\n<\/ul>\n<h3 id=\"p-rc_93305a23f9fabdf2-42\" data-path-to-node=\"13\"><span data-path-to-node=\"13,1\"><span class=\"citation-154\">3. Operar na Uni\u00e3o Europeia<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-43\" data-path-to-node=\"14\"><span data-path-to-node=\"14,1\"><span class=\"citation-153\">A empresa deve estar estabelecida na Uni\u00e3o Europeia, mas o seu \u00e2mbito n\u00e3o se limita \u00e0s suas fronteiras f\u00edsicas, uma vez que tamb\u00e9m afeta organiza\u00e7\u00f5es com sede fora da UE se prestarem servi\u00e7os ou gerirem infraestruturas cr\u00edticas para utilizadores ou empresas no mercado europeu<\/span><\/span><span data-path-to-node=\"14,3\">.<\/span><\/p>\n<h4 id=\"p-rc_93305a23f9fabdf2-44\" data-path-to-node=\"15\"><span data-path-to-node=\"15,1\"><span class=\"citation-152\">Exemplo de empresa essencial<\/span><\/span><\/h4>\n<ul data-path-to-node=\"16\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-45\" data-path-to-node=\"16,0,1\"><span data-path-to-node=\"16,0,1,0\"><b data-path-to-node=\"16,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-151\">Empresa:<\/span><\/b><span class=\"citation-151\"> Lusitana Energia, S.A.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-46\" data-path-to-node=\"16,1,1\"><span data-path-to-node=\"16,1,1,0\"><b data-path-to-node=\"16,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-150\">Setor:<\/span><\/b><span class=\"citation-150\"> Energia (Distribui\u00e7\u00e3o de eletricidade).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-47\" data-path-to-node=\"16,2,1\"><span data-path-to-node=\"16,2,1,0\"><b data-path-to-node=\"16,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-149\">Dimens\u00e3o:<\/span><\/b><span class=\"citation-149\"> 600 colaboradores e 150 milh\u00f5es de euros de fatura\u00e7\u00e3o.<\/span><\/span><\/p>\n<\/li>\n<\/ul>\n<h2 id=\"p-rc_93305a23f9fabdf2-48\" data-path-to-node=\"17\"><span data-path-to-node=\"17,1\"><span class=\"citation-148\">O que \u00e9 uma empresa importante segundo a NIS2?<\/span><\/span><\/h2>\n<p id=\"p-rc_93305a23f9fabdf2-49\" data-path-to-node=\"18\"><span data-path-to-node=\"18,1\"><span class=\"citation-147\">Uma empresa importante, segundo a diretiva NIS2, \u00e9 <\/span><b data-path-to-node=\"18,1\" data-index-in-node=\"51\"><span class=\"citation-147\">aquela organiza\u00e7\u00e3o que opera em setores cr\u00edticos para a sociedade e a economia<\/span><\/b><span class=\"citation-147\">, mas cuja interrup\u00e7\u00e3o teria um impacto menor do que o das entidades essenciais<\/span><\/span><span data-path-to-node=\"18,3\">. <\/span><span data-path-to-node=\"18,5\"><span class=\"citation-146\">Estas empresas continuam sujeitas a obriga\u00e7\u00f5es de ciberseguran\u00e7a, mas com um regime de supervis\u00e3o diferente (reativo em vez de proativo)<\/span><\/span><span data-path-to-node=\"18,7\">.<\/span><\/p>\n<p id=\"p-rc_93305a23f9fabdf2-50\" data-path-to-node=\"19\"><span data-path-to-node=\"19,1\"><span class=\"citation-145\">Para que uma empresa seja considerada importante, necessita de cumprir os seguintes crit\u00e9rios<\/span><\/span><span data-path-to-node=\"19,3\">:<\/span><\/p>\n<h3 id=\"p-rc_93305a23f9fabdf2-51\" data-path-to-node=\"20\"><span data-path-to-node=\"20,1\"><span class=\"citation-144\">1. Operar num setor de &#8220;alta criticidade&#8221; ou &#8220;outros setores cr\u00edticos&#8221;<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-52\" data-path-to-node=\"21\"><span data-path-to-node=\"21,1\"><span class=\"citation-143\">Uma organiza\u00e7\u00e3o entra nesta categoria em dois cen\u00e1rios<\/span><\/span><span data-path-to-node=\"21,3\">:<\/span><\/p>\n<ul data-path-to-node=\"22\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-53\" data-path-to-node=\"22,0,0\"><span data-path-to-node=\"22,0,0,1\"><span class=\"citation-142\">Se operar num setor de &#8220;<\/span><b data-path-to-node=\"22,0,0,1\" data-index-in-node=\"24\"><span class=\"citation-142\">alta criticidade<\/span><\/b><span class=\"citation-142\">&#8221; (vistos anteriormente, como energia ou sa\u00fade), mas tiver a dimens\u00e3o de uma m\u00e9dia empresa<\/span><\/span><span data-path-to-node=\"22,0,0,3\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-54\" data-path-to-node=\"22,1,0\"><span data-path-to-node=\"22,1,0,1\"><span class=\"citation-141\">Se operar nos chamados &#8220;<\/span><b data-path-to-node=\"22,1,0,1\" data-index-in-node=\"24\"><span class=\"citation-141\">outros setores cr\u00edticos<\/span><\/b><span class=\"citation-141\">&#8220;, independentemente de ser m\u00e9dia ou grande<\/span><\/span><span data-path-to-node=\"22,1,0,3\">. Estes setores s\u00e3o:<\/span><\/p>\n<ul data-path-to-node=\"22,1,1\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-55\" data-path-to-node=\"22,1,1,0,1\"><span data-path-to-node=\"22,1,1,0,1,0\"><b data-path-to-node=\"22,1,1,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-140\">Servi\u00e7os postais e de correio<\/span><\/b><\/span><span data-path-to-node=\"22,1,1,0,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-55\" data-path-to-node=\"22,1,1,0,1\"><span data-path-to-node=\"22,1,1,1,1,0\"><b data-path-to-node=\"22,1,1,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-139\">Gest\u00e3o de res\u00edduos<\/span><\/b><\/span><span data-path-to-node=\"22,1,1,1,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-57\" data-path-to-node=\"22,1,1,2,1\"><span data-path-to-node=\"22,1,1,2,1,0\"><b data-path-to-node=\"22,1,1,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-138\">Ind\u00fastria qu\u00edmica:<\/span><\/b><span class=\"citation-138\"> fabrico, produ\u00e7\u00e3o e distribui\u00e7\u00e3o de subst\u00e2ncias qu\u00edmicas<\/span><\/span><span data-path-to-node=\"22,1,1,2,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-58\" data-path-to-node=\"22,1,1,3,1\"><span data-path-to-node=\"22,1,1,3,1,0\"><b data-path-to-node=\"22,1,1,3,1,0\" data-index-in-node=\"0\"><span class=\"citation-137\">Alimenta\u00e7\u00e3o:<\/span><\/b><span class=\"citation-137\"> produ\u00e7\u00e3o, transforma\u00e7\u00e3o e distribui\u00e7\u00e3o grossista de alimentos<\/span><\/span><span data-path-to-node=\"22,1,1,3,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-59\" data-path-to-node=\"22,1,1,4,1\"><span data-path-to-node=\"22,1,1,4,1,0\"><b data-path-to-node=\"22,1,1,4,1,0\" data-index-in-node=\"0\"><span class=\"citation-136\">Fabrico:<\/span><\/b><span class=\"citation-136\"> inclui o fabrico de dispositivos m\u00e9dicos, produtos inform\u00e1ticos, eletr\u00f3nicos e \u00f3ticos, equipamento el\u00e9trico, maquinaria, ve\u00edculos autom\u00f3veis e outro material de transporte<\/span><\/span><span data-path-to-node=\"22,1,1,4,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-60\" data-path-to-node=\"22,1,1,5,1\"><span data-path-to-node=\"22,1,1,5,1,0\"><b data-path-to-node=\"22,1,1,5,1,0\" data-index-in-node=\"0\"><span class=\"citation-135\">Fornecedores digitais:<\/span><\/b><span class=\"citation-135\"> mercados <\/span><i data-path-to-node=\"22,1,1,5,1,0\" data-index-in-node=\"32\"><span class=\"citation-135\">online<\/span><\/i><span class=\"citation-135\"> (<\/span><i data-path-to-node=\"22,1,1,5,1,0\" data-index-in-node=\"40\"><span class=\"citation-135\">marketplaces<\/span><\/i><span class=\"citation-135\">), motores de busca e plataformas de redes sociais<\/span><\/span><span data-path-to-node=\"22,1,1,5,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-61\" data-path-to-node=\"22,1,1,6,1\"><span data-path-to-node=\"22,1,1,6,1,0\"><b data-path-to-node=\"22,1,1,6,1,0\" data-index-in-node=\"0\"><span class=\"citation-134\">Investiga\u00e7\u00e3o:<\/span><\/b><span class=\"citation-134\"> organiza\u00e7\u00f5es e institutos de investiga\u00e7\u00e3o<\/span><\/span><span data-path-to-node=\"22,1,1,6,1,2\">.<\/span><\/p>\n<\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<h3 id=\"p-rc_93305a23f9fabdf2-62\" data-path-to-node=\"23\"><span data-path-to-node=\"23,1\"><span class=\"citation-133\">2. Dimens\u00e3o da organiza\u00e7\u00e3o<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-63\" data-path-to-node=\"24\"><span data-path-to-node=\"24,1\"><span class=\"citation-132\">Regra geral, consideram-se entidades importantes aquelas que cumprem os limiares de uma m\u00e9dia empresa<\/span><\/span><span data-path-to-node=\"24,3\">:<\/span><\/p>\n<ul data-path-to-node=\"25\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-64\" data-path-to-node=\"25,0,0\"><span data-path-to-node=\"25,0,0,1\"><span class=\"citation-131\">Ter <\/span><b data-path-to-node=\"25,0,0,1\" data-index-in-node=\"4\"><span class=\"citation-131\">entre 50 e 249 colaboradores<\/span><\/b><span class=\"citation-131\">, ou<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-65\" data-path-to-node=\"25,1,0\"><span data-path-to-node=\"25,1,0,1\"><span class=\"citation-130\">Ter <\/span><b data-path-to-node=\"25,1,0,1\" data-index-in-node=\"4\"><span class=\"citation-130\">um volume de neg\u00f3cios anual ou balan\u00e7o geral entre 10 e 50 milh\u00f5es<\/span><\/b><span class=\"citation-130\"> de euros<\/span><\/span><span data-path-to-node=\"25,1,0,3\">.<\/span><\/p>\n<\/li>\n<\/ul>\n<h3 id=\"p-rc_93305a23f9fabdf2-66\" data-path-to-node=\"26\"><span data-path-to-node=\"26,1\"><span class=\"citation-129\">3. Operar na Uni\u00e3o Europeia<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-67\" data-path-to-node=\"27\"><span data-path-to-node=\"27,1\"><span class=\"citation-128\">\u00c0 semelhan\u00e7a do que acontece com as entidades essenciais, este quadro normativo n\u00e3o se limita \u00e0s fronteiras f\u00edsicas<\/span><\/span><span data-path-to-node=\"27,3\">. <\/span><span data-path-to-node=\"27,5\"><span class=\"citation-127\">Uma organiza\u00e7\u00e3o \u00e9 considerada &#8220;importante&#8221; se <\/span><b data-path-to-node=\"27,5\" data-index-in-node=\"46\"><span class=\"citation-127\">a sua atividade tiver impacto no mercado europeu<\/span><\/b><span class=\"citation-127\">, independentemente de onde se localize a sua sede central<\/span><\/span><span data-path-to-node=\"27,7\">. <\/span><span data-path-to-node=\"27,9\"><span class=\"citation-126\">Isto inclui empresas estrangeiras que fornecem servi\u00e7os digitais ou infraestruturas a utilizadores dentro da Uni\u00e3o Europeia, as quais est\u00e3o obrigadas a designar um representante legal num Estado-Membro para atuar como ponto de contacto com as autoridades de ciberseguran\u00e7a<\/span><\/span><span data-path-to-node=\"27,11\">.<\/span><\/p>\n<p id=\"p-rc_93305a23f9fabdf2-68\" data-path-to-node=\"28\"><span data-path-to-node=\"28,1\"><span class=\"citation-125\">Exemplo de empresa importante<\/span><\/span><\/p>\n<ul data-path-to-node=\"29\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-69\" data-path-to-node=\"29,0,1\"><span data-path-to-node=\"29,0,1,0\"><b data-path-to-node=\"29,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-124\">Empresa:<\/span><\/b><span class=\"citation-124\"> LogiTrans Portugal, Lda.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-70\" data-path-to-node=\"29,1,1\"><span data-path-to-node=\"29,1,1,0\"><b data-path-to-node=\"29,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-123\">Setor:<\/span><\/b><span class=\"citation-123\"> Transporte (Servi\u00e7os de log\u00edstica regional).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-71\" data-path-to-node=\"29,2,1\"><span data-path-to-node=\"29,2,1,0\"><b data-path-to-node=\"29,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-122\">Dimens\u00e3o:<\/span><\/b><span class=\"citation-122\"> 120 colaboradores e 20 milh\u00f5es de euros de fatura\u00e7\u00e3o.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-72\" data-path-to-node=\"29,3,1\"><span data-path-to-node=\"29,3,1,0\"><b data-path-to-node=\"29,3,1,0\" data-index-in-node=\"0\"><span class=\"citation-121\">Por que \u00e9 considerada uma empresa importante?<\/span><\/b><span class=\"citation-121\"> Porque opera num setor relevante listado no Anexo II (transporte) e cumpre os crit\u00e9rios de dimens\u00e3o para entidades importantes (entre 50 e 250 colaboradores e fatura\u00e7\u00e3o entre 10 e 50 M\u20ac), sem superar os limiares de uma entidade essencial<\/span><\/span><span data-path-to-node=\"29,3,1,2\">.<\/span><\/p>\n<\/li>\n<\/ul>\n<p>\ud83d\udccc Descubra <a href=\"https:\/\/factorialhr.pt\/blog\/a-quem-afeta-nis2\/\">a quem afeta a diretiva NIS2 em Portugal<\/a>.<\/p>\n<h2 id=\"p-rc_93305a23f9fabdf2-73\" data-path-to-node=\"30\"><span data-path-to-node=\"30,1\"><span class=\"citation-120\">Principais diferen\u00e7as entre empresas essenciais e importantes<\/span><\/span><\/h2>\n<p id=\"p-rc_93305a23f9fabdf2-74\" data-path-to-node=\"31\"><span data-path-to-node=\"31,1\"><span class=\"citation-119\">A distin\u00e7\u00e3o entre estas duas categorias \u00e9 o eixo central da NIS2<\/span><\/span><span data-path-to-node=\"31,3\">. <\/span><span data-path-to-node=\"31,5\"><span class=\"citation-118\">Embora ambas devam cumprir as mesmas medidas de gest\u00e3o de riscos, a &#8220;intensidade&#8221; da vigil\u00e2ncia estatal por parte das autoridades portuguesas e o peso das coimas variam significativamente<\/span><\/span><span data-path-to-node=\"31,7\">.<\/span><\/p>\n<table data-path-to-node=\"32\">\n<thead>\n<tr>\n<td><strong>Caracter\u00edstica<\/strong><\/td>\n<td><strong>Entidade Essencial<\/strong><\/td>\n<td><strong>Entidade Importante<\/strong><\/td>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td><span data-path-to-node=\"32,1,0,0\">Setores inclu\u00eddos<\/span><\/td>\n<td><span data-path-to-node=\"32,1,1,0\">Apenas setores de <b data-path-to-node=\"32,1,1,0\" data-index-in-node=\"18\">Alta Criticidade<\/b> (Anexo 1).<\/span><\/td>\n<td><span data-path-to-node=\"32,1,2,0\">Setores de <b data-path-to-node=\"32,1,2,0\" data-index-in-node=\"11\">Alta Criticidade<\/b> (Anexo 1) E <b data-path-to-node=\"32,1,2,0\" data-index-in-node=\"40\">Outros Setores Cr\u00edticos<\/b> (Anexo 2).<\/span><\/td>\n<\/tr>\n<tr>\n<td><span data-path-to-node=\"32,2,0,0\">Dimens\u00e3o da empresa<\/span><\/td>\n<td><span data-path-to-node=\"32,2,1,0\"><b data-path-to-node=\"32,2,1,0\" data-index-in-node=\"0\">Grandes empresas<\/b> (&gt;250 colaboradores ou &gt;50 M\u20ac fatura\u00e7\u00e3o).<\/span><\/td>\n<td><span data-path-to-node=\"32,2,2,0\"><b data-path-to-node=\"32,2,2,0\" data-index-in-node=\"0\">M\u00e9dias empresas<\/b> (50-249 colab.) em qualquer setor OU <b data-path-to-node=\"32,2,2,0\" data-index-in-node=\"53\">Grandes<\/b> em setores do Anexo 2.<\/span><\/td>\n<\/tr>\n<tr>\n<td><span data-path-to-node=\"32,3,0,0\">Supervis\u00e3o<\/span><\/td>\n<td><span data-path-to-node=\"32,3,1,0\"><b data-path-to-node=\"32,3,1,0\" data-index-in-node=\"0\">Proativa e reativa:<\/b> As autoridades podem auditar oficiosamente a qualquer momento.<\/span><\/td>\n<td><span data-path-to-node=\"32,3,2,0\"><b data-path-to-node=\"32,3,2,0\" data-index-in-node=\"0\">Apenas reativa:<\/b> S\u00f3 h\u00e1 inspe\u00e7\u00f5es se ocorrer um incidente ou existirem ind\u00edcios de incumprimento.<\/span><\/td>\n<\/tr>\n<tr>\n<td><span data-path-to-node=\"32,4,0,0\">Coimas M\u00e1ximas<\/span><\/td>\n<td><span data-path-to-node=\"32,4,1,0\">At\u00e9 <b data-path-to-node=\"32,4,1,0\" data-index-in-node=\"4\">10 milh\u00f5es de euros<\/b> ou 2% da fatura\u00e7\u00e3o global anual.<\/span><\/td>\n<td><span data-path-to-node=\"32,4,2,0\">At\u00e9 <b data-path-to-node=\"32,4,2,0\" data-index-in-node=\"4\">7 milh\u00f5es de euros<\/b> ou 1,4% da fatura\u00e7\u00e3o global anual.<\/span><\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<div class=\"factorial-banner inline-banner banner-other category-nis2\"\n    data-banner-id=\"187216\"\n    data-banner-type=\"other\"\n    data-category=\"NIS2\">\n    <div class=\"banner-content\">\n        <div class=\"banner-text\">\n                            <h4>Prepare-se para a NIS2 com mais controlo e menos caos<\/h4>\n            \n                            <p>Centralize dispositivos, acessos e processos de IT num \u00fanico local para reduzir tarefas manuais e ganhar visibilidade operacional.<\/p>\n            \n                            <a href=\"https:\/\/factorialhr.pt\/nis2-factorial-it#factorial-it-demo-form-nis2\"\n                    class=\"factorial-cta-button not-prose freebie\" data-cta=\"other\" data-cta-position=\"inline-banner\">\n                    Saber mais                <\/a>\n                    <\/div>\n\n        <div class=\"banner-image has-image\">\n            <img decoding=\"async\" src=\"https:\/\/factorialhr.com\/wp-content\/uploads\/2026\/04\/21114414\/PT-sidebar-1-nis-iso.png\" class=\"not-prose\" \/>\n        <\/div>\n    <\/div>\n<\/div>\n<h2><span data-path-to-node=\"33,1\"><span class=\"citation-116\">Obriga\u00e7\u00f5es comuns para ambas as classifica\u00e7\u00f5es <\/span><\/span><\/h2>\n<p id=\"p-rc_93305a23f9fabdf2-77\" data-path-to-node=\"34\"><span data-path-to-node=\"34,1\"><span class=\"citation-115\">Independentemente de uma empresa ser qualificada como essencial ou importante, <\/span><b data-path-to-node=\"34,1\" data-index-in-node=\"79\"><span class=\"citation-115\">a diretiva NIS2 exige um n\u00edvel de prote\u00e7\u00e3o elevado e uniforme<\/span><\/b><\/span><span data-path-to-node=\"34,3\">. <\/span><span data-path-to-node=\"34,5\"><span class=\"citation-114\">Todas as organiza\u00e7\u00f5es afetadas devem implementar medidas t\u00e9cnicas, operacionais e organizativas para gerir os riscos de ciberseguran\u00e7a<\/span><\/span><span data-path-to-node=\"34,7\">.<\/span><\/p>\n<p id=\"p-rc_93305a23f9fabdf2-78\" data-path-to-node=\"35\"><span data-path-to-node=\"35,1\"><span class=\"citation-113\">Estas obriga\u00e7\u00f5es dividem-se em tr\u00eas grandes blocos<\/span><\/span><span data-path-to-node=\"35,3\">:<\/span><\/p>\n<h3 id=\"p-rc_93305a23f9fabdf2-79\" data-path-to-node=\"36\"><span data-path-to-node=\"36,1\"><span class=\"citation-112\">1. Medidas b\u00e1sicas de gest\u00e3o de riscos<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-80\" data-path-to-node=\"37\"><span data-path-to-node=\"37,1\"><span class=\"citation-111\">A legisla\u00e7\u00e3o estabelece um &#8220;m\u00ednimo obrigat\u00f3rio&#8221; que todas as empresas devem cumprir<\/span><\/span><span data-path-to-node=\"37,3\">:<\/span><\/p>\n<ul data-path-to-node=\"38\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-81\" data-path-to-node=\"38,0,1\"><span data-path-to-node=\"38,0,1,0\"><b data-path-to-node=\"38,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-110\">Pol\u00edticas de an\u00e1lise de riscos e seguran\u00e7a:<\/span><\/b><span class=\"citation-110\"> documentar como se identificam e gerem as amea\u00e7as<\/span><\/span><span data-path-to-node=\"38,0,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-82\" data-path-to-node=\"38,1,1\"><span data-path-to-node=\"38,1,1,0\"><b data-path-to-node=\"38,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-109\">Gest\u00e3o de incidentes:<\/span><\/b><span class=\"citation-109\"> protocolos claros de dete\u00e7\u00e3o, resposta e recupera\u00e7\u00e3o ap\u00f3s um ataque<\/span><\/span><span data-path-to-node=\"38,1,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-83\" data-path-to-node=\"38,2,1\"><span data-path-to-node=\"38,2,1,0\"><b data-path-to-node=\"38,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-108\">Continuidade do neg\u00f3cio:<\/span><\/b><span class=\"citation-108\"> planos de conting\u00eancia (<\/span><i data-path-to-node=\"38,2,1,0\" data-index-in-node=\"49\"><span class=\"citation-108\">backups<\/span><\/i><span class=\"citation-108\">), recupera\u00e7\u00e3o de desastres e gest\u00e3o de crises para que a empresa n\u00e3o pare<\/span><\/span><span data-path-to-node=\"38,2,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-84\" data-path-to-node=\"38,3,1\"><span data-path-to-node=\"38,3,1,0\"><b data-path-to-node=\"38,3,1,0\" data-index-in-node=\"0\"><span class=\"citation-107\">Seguran\u00e7a na cadeia de abastecimento:<\/span><\/b><span class=\"citation-107\"> avaliar a ciberseguran\u00e7a dos fornecedores (um ponto cr\u00edtico na NIS2)<\/span><\/span><span data-path-to-node=\"38,3,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-85\" data-path-to-node=\"38,4,1\"><span data-path-to-node=\"38,4,1,0\"><b data-path-to-node=\"38,4,1,0\" data-index-in-node=\"0\"><span class=\"citation-106\">Seguran\u00e7a na aquisi\u00e7\u00e3o e desenvolvimento:<\/span><\/b><span class=\"citation-106\"> assegurar que os sistemas e aplica\u00e7\u00f5es s\u00e3o seguros &#8220;desde a sua conce\u00e7\u00e3o&#8221; (<\/span><i data-path-to-node=\"38,4,1,0\" data-index-in-node=\"117\"><span class=\"citation-106\">by design<\/span><\/i><span class=\"citation-106\">)<\/span><\/span><span data-path-to-node=\"38,4,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-86\" data-path-to-node=\"38,5,1\"><span data-path-to-node=\"38,5,1,0\"><b data-path-to-node=\"38,5,1,0\" data-index-in-node=\"0\"><span class=\"citation-105\">Avalia\u00e7\u00e3o da efic\u00e1cia:<\/span><\/b><span class=\"citation-105\"> realizar auditorias e controlos peri\u00f3dicos para comprovar que as medidas funcionam<\/span><\/span><span data-path-to-node=\"38,5,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-87\" data-path-to-node=\"38,6,1\"><span data-path-to-node=\"38,6,1,0\"><b data-path-to-node=\"38,6,1,0\" data-index-in-node=\"0\"><span class=\"citation-104\">Ciber-higiene e forma\u00e7\u00e3o:<\/span><\/b><span class=\"citation-104\"> forma\u00e7\u00e3o obrigat\u00f3ria em ciberseguran\u00e7a para todos os colaboradores, incluindo a gest\u00e3o de topo<\/span><\/span><span data-path-to-node=\"38,6,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-88\" data-path-to-node=\"38,7,1\"><span data-path-to-node=\"38,7,1,0\"><b data-path-to-node=\"38,7,1,0\" data-index-in-node=\"0\"><span class=\"citation-103\">Criptografia e encripta\u00e7\u00e3o:<\/span><\/b><span class=\"citation-103\"> uso de ferramentas para proteger os dados sens\u00edveis<\/span><\/span><span data-path-to-node=\"38,7,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-89\" data-path-to-node=\"38,8,1\"><span data-path-to-node=\"38,8,1,0\"><b data-path-to-node=\"38,8,1,0\" data-index-in-node=\"0\"><span class=\"citation-102\">Seguran\u00e7a dos recursos humanos:<\/span><\/b><span class=\"citation-102\"> controlo de acessos, gest\u00e3o de ativos e pol\u00edticas de &#8220;privil\u00e9gio m\u00ednimo&#8221;<\/span><\/span><span data-path-to-node=\"38,8,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-90\" data-path-to-node=\"38,9,1\"><span data-path-to-node=\"38,9,1,0\"><b data-path-to-node=\"38,9,1,0\" data-index-in-node=\"0\"><span class=\"citation-101\">Autentica\u00e7\u00e3o multifator (MFA):<\/span><\/b><span class=\"citation-101\"> uso de solu\u00e7\u00f5es de verifica\u00e7\u00e3o em dois passos e comunica\u00e7\u00f5es seguras<\/span><\/span><span data-path-to-node=\"38,9,1,2\">.<\/span><\/p>\n<\/li>\n<\/ul>\n<h3 id=\"p-rc_93305a23f9fabdf2-91\" data-path-to-node=\"39\"><span data-path-to-node=\"39,1\"><span class=\"citation-100\">2. Obriga\u00e7\u00e3o de notifica\u00e7\u00e3o de incidentes<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-92\" data-path-to-node=\"40\"><span data-path-to-node=\"40,1\"><span class=\"citation-99\">Ambas as classifica\u00e7\u00f5es t\u00eam o mesmo dever de informar as autoridades competentes em Portugal sobre qualquer incidente significativo, seguindo este cronograma<\/span><\/span><span data-path-to-node=\"40,3\">:<\/span><\/p>\n<ul data-path-to-node=\"41\">\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-93\" data-path-to-node=\"41,0,1\"><span data-path-to-node=\"41,0,1,0\"><b data-path-to-node=\"41,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-98\">Alerta precoce (24 horas):<\/span><\/b><span class=\"citation-98\"> notifica\u00e7\u00e3o inicial indicando se o incidente \u00e9 grave ou causado por atos il\u00edcitos<\/span><\/span><span data-path-to-node=\"41,0,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-94\" data-path-to-node=\"41,1,1\"><span data-path-to-node=\"41,1,1,0\"><b data-path-to-node=\"41,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-97\">Notifica\u00e7\u00e3o do incidente (72 horas):<\/span><\/b><span class=\"citation-97\"> atualiza\u00e7\u00e3o da informa\u00e7\u00e3o, avalia\u00e7\u00e3o inicial da gravidade e impacto<\/span><\/span><span data-path-to-node=\"41,1,1,2\">.<\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_93305a23f9fabdf2-95\" data-path-to-node=\"41,2,1\"><span data-path-to-node=\"41,2,1,0\"><b data-path-to-node=\"41,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-96\">Relat\u00f3rio final (1 m\u00eas):<\/span><\/b><span class=\"citation-96\"> descri\u00e7\u00e3o detalhada, causa raiz e medidas corretivas aplicadas<\/span><\/span><span data-path-to-node=\"41,2,1,2\">.<\/span><\/p>\n<\/li>\n<\/ul>\n<h3 id=\"p-rc_93305a23f9fabdf2-96\" data-path-to-node=\"42\"><span data-path-to-node=\"42,1\"><span class=\"citation-95\">3. Responsabilidade da gest\u00e3o de topo<\/span><\/span><\/h3>\n<p id=\"p-rc_93305a23f9fabdf2-97\" data-path-to-node=\"43\"><span data-path-to-node=\"43,1\"><span class=\"citation-94\">Os \u00f3rg\u00e3os de gest\u00e3o em Portugal (Administradores e Conselhos de Administra\u00e7\u00e3o) devem aprovar as medidas de ciberseguran\u00e7a, supervisionar a sua implementa\u00e7\u00e3o e s\u00e3o respons\u00e1veis diretos em caso de incumprimento<\/span><\/span><span data-path-to-node=\"43,3\">. <\/span><span data-path-to-node=\"43,5\"><span class=\"citation-93\">Al\u00e9m disso, t\u00eam a obriga\u00e7\u00e3o de receber forma\u00e7\u00e3o espec\u00edfica em ciberseguran\u00e7a<\/span><\/span><span data-path-to-node=\"43,7\">.<\/span><\/p>\n<p data-path-to-node=\"43\">\ud83d\udccc Descubra as <a href=\"https:\/\/factorialhr.pt\/blog\/sancoes-nis2\/\">multas por incumprimento da diretiva NIS2<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A diretiva NIS2 marca um antes e um depois nas obriga\u00e7\u00f5es de ciberseguran\u00e7a para milhares de empresas na Europa. Embora todas as organiza\u00e7\u00f5es afetadas devam cumprir um n\u00edvel de prote\u00e7\u00e3o elevado e medidas de seguran\u00e7a uniformes, a legisla\u00e7\u00e3o introduz uma distin\u00e7\u00e3o fundamental entre entidades essenciais e entidades importantes. Esta classifica\u00e7\u00e3o n\u00e3o afeta tanto as medidas<a href=\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\" class=\"read-more\"> [&#8230;]<\/a><\/p>\n","protected":false},"author":352,"featured_media":187605,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1055],"tags":[],"class_list":["post-187603","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-nis2"],"acf":{"topics":"factorial-it"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v21.5 (Yoast SEO v21.9.1) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Empresas essenciais vs importantes na diretiva NIS2 | Factorial<\/title>\n<meta name=\"description\" content=\"N\u00e3o sabe a diferen\u00e7a entre entidades essenciais e importantes na diretiva NIS2? Explicamos o que precisa de saber. Descubra!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\" \/>\n<meta property=\"og:locale\" content=\"pt_PT\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Empresas essenciais vs importantes na diretiva NIS2\" \/>\n<meta property=\"og:description\" content=\"N\u00e3o sabe a diferen\u00e7a entre entidades essenciais e importantes na diretiva NIS2? Explicamos o que precisa de saber. Descubra!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\" \/>\n<meta property=\"og:site_name\" content=\"Factorial\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/people\/Factorial\/100064908455810\/\" \/>\n<meta property=\"article:published_time\" content=\"2026-04-24T17:09:34+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-04-24T17:26:53+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/factorialhr.com\/wp-content\/uploads\/2026\/04\/24183202\/empresas-essenciais-vs-importantes-nis2.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1800\" \/>\n\t<meta property=\"og:image:height\" content=\"976\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Enrique Quiroga\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@factorialapp\" \/>\n<meta name=\"twitter:site\" content=\"@factorialapp\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Enrique Quiroga\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"7 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\"},\"author\":{\"name\":\"Enrique Quiroga\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/576a40f0f266777ab73068c097d59014\"},\"headline\":\"Empresas essenciais vs importantes na diretiva NIS2\",\"datePublished\":\"2026-04-24T17:09:34+00:00\",\"dateModified\":\"2026-04-24T17:26:53+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\"},\"wordCount\":1706,\"publisher\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/#organization\"},\"articleSection\":[\"NIS2\"],\"inLanguage\":\"pt-PT\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\",\"url\":\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\",\"name\":\"Empresas essenciais vs importantes na diretiva NIS2 | Factorial\",\"isPartOf\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/#website\"},\"datePublished\":\"2026-04-24T17:09:34+00:00\",\"dateModified\":\"2026-04-24T17:26:53+00:00\",\"description\":\"N\u00e3o sabe a diferen\u00e7a entre entidades essenciais e importantes na diretiva NIS2? Explicamos o que precisa de saber. Descubra!\",\"inLanguage\":\"pt-PT\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\"]}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#website\",\"url\":\"https:\/\/factorialhr.pt\/blog\/\",\"name\":\"Factorial\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/factorialhr.pt\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"pt-PT\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#organization\",\"name\":\"All-in-one business management software - Factorial\",\"url\":\"https:\/\/factorialhr.pt\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-PT\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/factorialhr.pt\/wp-content\/uploads\/2023\/07\/18155144\/factorial-logo.png\",\"contentUrl\":\"https:\/\/factorialhr.pt\/wp-content\/uploads\/2023\/07\/18155144\/factorial-logo.png\",\"width\":946,\"height\":880,\"caption\":\"All-in-one business management software - Factorial\"},\"image\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/people\/Factorial\/100064908455810\/\",\"https:\/\/twitter.com\/factorialapp\",\"https:\/\/www.linkedin.com\/company\/factorialhr\",\"https:\/\/www.youtube.com\/@factorialmedia\",\"https:\/\/www.instagram.com\/factorial\/#\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/576a40f0f266777ab73068c097d59014\",\"name\":\"Enrique Quiroga\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-PT\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/fcc26a14dc327372e37434cfc64f3917?s=96&d=identicon&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/fcc26a14dc327372e37434cfc64f3917?s=96&d=identicon&r=g\",\"caption\":\"Enrique Quiroga\"},\"url\":\"https:\/\/factorialhr.pt\/blog\/author\/enrique-quiroga\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Empresas essenciais vs importantes na diretiva NIS2 | Factorial","description":"N\u00e3o sabe a diferen\u00e7a entre entidades essenciais e importantes na diretiva NIS2? Explicamos o que precisa de saber. Descubra!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/","og_locale":"pt_PT","og_type":"article","og_title":"Empresas essenciais vs importantes na diretiva NIS2","og_description":"N\u00e3o sabe a diferen\u00e7a entre entidades essenciais e importantes na diretiva NIS2? Explicamos o que precisa de saber. Descubra!","og_url":"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/","og_site_name":"Factorial","article_publisher":"https:\/\/www.facebook.com\/people\/Factorial\/100064908455810\/","article_published_time":"2026-04-24T17:09:34+00:00","article_modified_time":"2026-04-24T17:26:53+00:00","og_image":[{"width":1800,"height":976,"url":"https:\/\/factorialhr.com\/wp-content\/uploads\/2026\/04\/24183202\/empresas-essenciais-vs-importantes-nis2.png","type":"image\/png"}],"author":"Enrique Quiroga","twitter_card":"summary_large_image","twitter_creator":"@factorialapp","twitter_site":"@factorialapp","twitter_misc":{"Written by":"Enrique Quiroga","Est. reading time":"7 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/#article","isPartOf":{"@id":"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/"},"author":{"name":"Enrique Quiroga","@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/576a40f0f266777ab73068c097d59014"},"headline":"Empresas essenciais vs importantes na diretiva NIS2","datePublished":"2026-04-24T17:09:34+00:00","dateModified":"2026-04-24T17:26:53+00:00","mainEntityOfPage":{"@id":"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/"},"wordCount":1706,"publisher":{"@id":"https:\/\/factorialhr.pt\/blog\/#organization"},"articleSection":["NIS2"],"inLanguage":"pt-PT"},{"@type":"WebPage","@id":"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/","url":"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/","name":"Empresas essenciais vs importantes na diretiva NIS2 | Factorial","isPartOf":{"@id":"https:\/\/factorialhr.pt\/blog\/#website"},"datePublished":"2026-04-24T17:09:34+00:00","dateModified":"2026-04-24T17:26:53+00:00","description":"N\u00e3o sabe a diferen\u00e7a entre entidades essenciais e importantes na diretiva NIS2? Explicamos o que precisa de saber. Descubra!","inLanguage":"pt-PT","potentialAction":[{"@type":"ReadAction","target":["https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/"]}]},{"@type":"WebSite","@id":"https:\/\/factorialhr.pt\/blog\/#website","url":"https:\/\/factorialhr.pt\/blog\/","name":"Factorial","description":"","publisher":{"@id":"https:\/\/factorialhr.pt\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/factorialhr.pt\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"pt-PT"},{"@type":"Organization","@id":"https:\/\/factorialhr.pt\/blog\/#organization","name":"All-in-one business management software - Factorial","url":"https:\/\/factorialhr.pt\/blog\/","logo":{"@type":"ImageObject","inLanguage":"pt-PT","@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/factorialhr.pt\/wp-content\/uploads\/2023\/07\/18155144\/factorial-logo.png","contentUrl":"https:\/\/factorialhr.pt\/wp-content\/uploads\/2023\/07\/18155144\/factorial-logo.png","width":946,"height":880,"caption":"All-in-one business management software - Factorial"},"image":{"@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/people\/Factorial\/100064908455810\/","https:\/\/twitter.com\/factorialapp","https:\/\/www.linkedin.com\/company\/factorialhr","https:\/\/www.youtube.com\/@factorialmedia","https:\/\/www.instagram.com\/factorial\/#"]},{"@type":"Person","@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/576a40f0f266777ab73068c097d59014","name":"Enrique Quiroga","image":{"@type":"ImageObject","inLanguage":"pt-PT","@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/fcc26a14dc327372e37434cfc64f3917?s=96&d=identicon&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/fcc26a14dc327372e37434cfc64f3917?s=96&d=identicon&r=g","caption":"Enrique Quiroga"},"url":"https:\/\/factorialhr.pt\/blog\/author\/enrique-quiroga\/"}]}},"_links":{"self":[{"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/posts\/187603"}],"collection":[{"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/users\/352"}],"replies":[{"embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/comments?post=187603"}],"version-history":[{"count":4,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/posts\/187603\/revisions"}],"predecessor-version":[{"id":187631,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/posts\/187603\/revisions\/187631"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/media\/187605"}],"wp:attachment":[{"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/media?parent=187603"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/categories?post=187603"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/tags?post=187603"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}