{"id":187607,"date":"2026-04-24T19:10:26","date_gmt":"2026-04-24T17:10:26","guid":{"rendered":"https:\/\/factorialhr.com\/blog\/?p=187607"},"modified":"2026-04-24T19:29:53","modified_gmt":"2026-04-24T17:29:53","slug":"faq-nis2","status":"publish","type":"post","link":"https:\/\/factorialhr.pt\/blog\/faq-nis2\/","title":{"rendered":"FAQ sobre a diretiva NIS2 em Portugal"},"content":{"rendered":"<p><span data-path-to-node=\"0,1\"><span class=\"citation-389\">A nova diretiva NIS2 \u00e9 <\/span><b data-path-to-node=\"0,1\" data-index-in-node=\"23\"><span class=\"citation-389\">um antes e um depois na ciberseguran\u00e7a na Europa<\/span><\/b><span class=\"citation-389\">, e h\u00e1 muitas empresas em Portugal que n\u00e3o sabem como as vai afetar nem o que devem fazer exatamente. <\/span><\/span><\/p>\n<p><span data-path-to-node=\"0,4\"><span class=\"citation-388\">\u00c9 obrigado a cumpri-la? <\/span><\/span><span data-path-to-node=\"0,7\"><span class=\"citation-387\">Quais s\u00e3o os riscos se n\u00e3o o fizer? <\/span><\/span><span data-path-to-node=\"0,10\"><span class=\"citation-386\">Por onde come\u00e7ar?<\/span><\/span><\/p>\n<p><span data-path-to-node=\"0,13\"><span class=\"citation-385\">Esta FAQ oferece <\/span><b data-path-to-node=\"0,13\" data-index-in-node=\"17\"><span class=\"citation-385\">respostas claras e r\u00e1pidas \u00e0s perguntas mais frequentes<\/span><\/b><span class=\"citation-385\"> sobre a diretiva NIS2 em Portugal, para que perceba como o impacta e que passos deve come\u00e7ar a dar o quanto antes.<\/span><\/span><\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-99\" data-path-to-node=\"1\"><span data-path-to-node=\"1,1\"><span class=\"citation-384\">1. O que \u00e9 a diretiva NIS2 e qual \u00e9 o seu objetivo?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-100\" data-path-to-node=\"2\"><span data-path-to-node=\"2,1\"><span class=\"citation-383\">A <a href=\"https:\/\/factorialhr.pt\/blog\/nis2-portugal\/\">diretiva NIS2<\/a> \u00e9 uma regulamenta\u00e7\u00e3o europeia que tem o prop\u00f3sito de melhorar a ciberseguran\u00e7a em toda a Uni\u00e3o Europeia. <\/span><\/span><span data-path-to-node=\"2,4\"><span class=\"citation-382\">O seu objetivo principal \u00e9 proteger melhor as empresas e servi\u00e7os essenciais contra ciberataques, estabelecendo requisitos comuns de seguran\u00e7a e gest\u00e3o de riscos. <\/span><\/span><\/p>\n<p data-path-to-node=\"2\"><span data-path-to-node=\"2,7\"><span class=\"citation-381\">Al\u00e9m disso, pretende refor\u00e7ar a coopera\u00e7\u00e3o entre os pa\u00edses e assegurar que as organiza\u00e7\u00f5es reajam rapidamente aos incidentes de seguran\u00e7a.<\/span><\/span><\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-101\" data-path-to-node=\"3\"><span data-path-to-node=\"3,1\"><span class=\"citation-380\">2. O que muda com a NIS2 em rela\u00e7\u00e3o \u00e0 NIS1?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-102\" data-path-to-node=\"4\"><span data-path-to-node=\"4,1\"><span class=\"citation-379\">Por um lado, a NIS2 amplia o \u00e2mbito de aplica\u00e7\u00e3o da regulamenta\u00e7\u00e3o anterior (NIS1), <\/span><b data-path-to-node=\"4,1\" data-index-in-node=\"84\"><span class=\"citation-379\">abrangendo muitas mais empresas e setores<\/span><\/b><span class=\"citation-379\">. <\/span><\/span><span data-path-to-node=\"4,4\"><span class=\"citation-378\">Por outro, estabelece regras mais rigorosas em mat\u00e9ria de gest\u00e3o de riscos, notifica\u00e7\u00e3o de incidentes e supervis\u00e3o. <\/span><\/span><\/p>\n<p data-path-to-node=\"4\"><span data-path-to-node=\"4,7\"><span class=\"citation-377\">Outra diferen\u00e7a fundamental \u00e9 que aumenta a responsabilidade da dire\u00e7\u00e3o das empresas e agrava as san\u00e7\u00f5es em caso de incumprimento.<\/span><\/span><\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-103\" data-path-to-node=\"5\"><span data-path-to-node=\"5,1\"><span class=\"citation-376\">3. Quando entra em vigor a NIS2 em Portugal?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-104\" data-path-to-node=\"6\"><span data-path-to-node=\"6,1\"><span class=\"citation-375\">A diretiva NIS2 entrou em vigor a n\u00edvel europeu no in\u00edcio do ano de 2023 e marcava uma data limite inegoci\u00e1vel para todos os pa\u00edses: 17 de outubro de 2024. <\/span><\/span><\/p>\n<p data-path-to-node=\"6\"><span data-path-to-node=\"6,4\"><span class=\"citation-374\">Embora Portugal tenha arrancado com atraso face ao prazo europeu (o que motivou a abertura de procedimentos de infra\u00e7\u00e3o por parte da Comiss\u00e3o Europeia no final de 2024), o pa\u00eds j\u00e1 concluiu a transposi\u00e7\u00e3o. <\/span><\/span><span data-path-to-node=\"6,7\"><span class=\"citation-373\">A diretiva foi integrada no ordenamento jur\u00eddico portugu\u00eas atrav\u00e9s do <\/span><b data-path-to-node=\"6,7\" data-index-in-node=\"70\"><span class=\"citation-373\">Decreto-Lei n.\u00ba 125\/2025<\/span><\/b><span class=\"citation-373\">, publicado a 4 de dezembro de 2025. <\/span><\/span><\/p>\n<p data-path-to-node=\"6\"><span data-path-to-node=\"6,10\"><span class=\"citation-372\">Ap\u00f3s um per\u00edodo de transi\u00e7\u00e3o de 120 dias, este novo Regime Jur\u00eddico da Seguran\u00e7a do Ciberespa\u00e7o <\/span><b data-path-to-node=\"6,10\" data-index-in-node=\"96\"><span class=\"citation-372\">entrou oficialmente em vigor a 3 de abril de 2026<\/span><\/b><span class=\"citation-372\">. <\/span><\/span><span data-path-to-node=\"6,13\"><span class=\"citation-371\">Isto significa que a lei j\u00e1 \u00e9 plenamente aplic\u00e1vel e que as medidas de ciberseguran\u00e7a s\u00e3o de cumprimento obrigat\u00f3rio para as entidades afetadas.<\/span><\/span><\/p>\n<p data-path-to-node=\"6\">\ud83d\udccc Saiba mais sobre <a href=\"https:\/\/factorialhr.pt\/blog\/nis2-entrada-vigor-portugal\/\">quando entra em vigor a diretiva NIS2 em Portugal<\/a>.<\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-105\" data-path-to-node=\"7\"><span data-path-to-node=\"7,1\"><span class=\"citation-370\">4. Que empresas s\u00e3o obrigadas a cumprir a NIS2 em Portugal?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-106\" data-path-to-node=\"8\"><span data-path-to-node=\"8,1\"><span class=\"citation-369\">A diretiva NIS2 aplica-se a empresas que operam em Portugal e que s\u00e3o consideradas entidades &#8220;essenciais&#8221; ou &#8220;importantes&#8221;. <\/span><\/span><span data-path-to-node=\"8,4\"><span class=\"citation-368\">Trata-se de organiza\u00e7\u00f5es que desenvolvem atividades em setores cr\u00edticos ou que t\u00eam um impacto significativo na economia ou na sociedade portuguesa.<\/span><\/span><\/p>\n<p data-path-to-node=\"8\"><span data-path-to-node=\"8,7\"><span class=\"citation-367\">Seguindo o crit\u00e9rio da Uni\u00e3o Europeia, afeta principalmente m\u00e9dias e grandes empresas (com mais de 50 colaboradores ou uma fatura\u00e7\u00e3o anual superior a 10 milh\u00f5es de euros). <\/span><\/span><span data-path-to-node=\"8,10\"><span class=\"citation-366\">No entanto, o Centro Nacional de Ciberseguran\u00e7a (CNCS) de Portugal pode designar organiza\u00e7\u00f5es mais pequenas como sujeitos obrigados se a sua atividade for vital para a seguran\u00e7a nacional ou para a continuidade de servi\u00e7os b\u00e1sicos.<\/span><\/span><\/p>\n<p data-path-to-node=\"8\">\ud83d\udccc Saiba mais sobre <a href=\"https:\/\/factorialhr.pt\/blog\/a-quem-afeta-nis2\/\">a quem afeta a diretiva NIS2 em Portugal<\/a>.<\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-107\" data-path-to-node=\"9\"><span data-path-to-node=\"9,1\"><span class=\"citation-365\">5. Que setores s\u00e3o afetados pela NIS2?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-108\" data-path-to-node=\"10\"><span data-path-to-node=\"10,1\"><span class=\"citation-364\">Em Portugal, a regulamenta\u00e7\u00e3o mant\u00e9m a distin\u00e7\u00e3o europeia entre setores de alta criticidade (entidades essenciais) e outros setores cr\u00edticos (entidades importantes).<\/span><\/span><\/p>\n<p id=\"p-rc_8f86cffae10898a0-109\" data-path-to-node=\"12\"><span data-path-to-node=\"12,0\"><b data-path-to-node=\"12,0\" data-index-in-node=\"0\"><span class=\"citation-363\">Setores de alta criticidade:<\/span><\/b><\/span><\/p>\n<ul data-path-to-node=\"13\">\n<li>\n<p id=\"p-rc_8f86cffae10898a0-110\" data-path-to-node=\"13,0,0\"><span data-path-to-node=\"13,0,0,1\"><span class=\"citation-362\">Energia (eletricidade, petr\u00f3leo, g\u00e1s, hidrog\u00e9nio).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-111\" data-path-to-node=\"13,1,0\"><span data-path-to-node=\"13,1,0,1\"><span class=\"citation-361\">Transportes (a\u00e9reo, ferrovi\u00e1rio, mar\u00edtimo e rodovi\u00e1rio).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-111\" data-path-to-node=\"13,1,0\">Banca e infraestruturas dos mercados financeiros.<\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-113\" data-path-to-node=\"13,3,0\"><span data-path-to-node=\"13,3,0,1\"><span class=\"citation-359\">Sa\u00fade.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-114\" data-path-to-node=\"13,4,0\"><span data-path-to-node=\"13,4,0,1\"><span class=\"citation-358\">Fornecimento e distribui\u00e7\u00e3o de \u00e1gua pot\u00e1vel e \u00e1guas residuais.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-115\" data-path-to-node=\"13,5,0\"><span data-path-to-node=\"13,5,0,1\"><span class=\"citation-357\">Infraestruturas digitais.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-116\" data-path-to-node=\"13,6,0\"><span data-path-to-node=\"13,6,0,1\"><span class=\"citation-356\">Gest\u00e3o de servi\u00e7os TIC (prestadores de servi\u00e7os geridos).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-117\" data-path-to-node=\"13,7,0\"><span data-path-to-node=\"13,7,0,1\"><span class=\"citation-355\">Administra\u00e7\u00e3o p\u00fablica.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-118\" data-path-to-node=\"13,8,0\"><span data-path-to-node=\"13,8,0,1\"><span class=\"citation-354\">Espa\u00e7o.<\/span><\/span><\/p>\n<\/li>\n<\/ul>\n<p id=\"p-rc_8f86cffae10898a0-119\" data-path-to-node=\"15\"><span data-path-to-node=\"15,0\"><b data-path-to-node=\"15,0\" data-index-in-node=\"0\"><span class=\"citation-353\">Outros setores cr\u00edticos:<\/span><\/b><\/span><\/p>\n<ul data-path-to-node=\"16\">\n<li>\n<p id=\"p-rc_8f86cffae10898a0-120\" data-path-to-node=\"16,0,0\"><span data-path-to-node=\"16,0,0,1\"><span class=\"citation-352\">Servi\u00e7os postais e de correio.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-121\" data-path-to-node=\"16,1,0\"><span data-path-to-node=\"16,1,0,1\"><span class=\"citation-351\">Gest\u00e3o de res\u00edduos.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-122\" data-path-to-node=\"16,2,0\"><span data-path-to-node=\"16,2,0,1\"><span class=\"citation-350\">Fabrico, produ\u00e7\u00e3o e distribui\u00e7\u00e3o de produtos qu\u00edmicos.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-123\" data-path-to-node=\"16,3,0\"><span data-path-to-node=\"16,3,0,1\"><span class=\"citation-349\">Produ\u00e7\u00e3o, transforma\u00e7\u00e3o e distribui\u00e7\u00e3o de alimentos.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-124\" data-path-to-node=\"16,4,0\"><span data-path-to-node=\"16,4,0,1\"><span class=\"citation-348\">Fabrico (incluindo maquinaria, ve\u00edculos, eletr\u00f3nica, etc.).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-125\" data-path-to-node=\"16,5,0\"><span data-path-to-node=\"16,5,0,1\"><span class=\"citation-347\">Fornecedores digitais (marketplaces, motores de busca, redes sociais).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-126\" data-path-to-node=\"16,6,0\"><span data-path-to-node=\"16,6,0,1\"><span class=\"citation-346\">Investiga\u00e7\u00e3o.<\/span><\/span><\/p>\n<\/li>\n<\/ul>\n<div class=\"factorial-banner inline-banner banner-other category-nis2\"\n    data-banner-id=\"187216\"\n    data-banner-type=\"other\"\n    data-category=\"NIS2\">\n    <div class=\"banner-content\">\n        <div class=\"banner-text\">\n                            <h4>Prepare-se para a NIS2 com mais controlo e menos caos<\/h4>\n            \n                            <p>Centralize dispositivos, acessos e processos de IT num \u00fanico local para reduzir tarefas manuais e ganhar visibilidade operacional.<\/p>\n            \n                            <a href=\"https:\/\/factorialhr.pt\/nis2-factorial-it#factorial-it-demo-form-nis2\"\n                    class=\"factorial-cta-button not-prose freebie\" data-cta=\"other\" data-cta-position=\"inline-banner\">\n                    Saber mais                <\/a>\n                    <\/div>\n\n        <div class=\"banner-image has-image\">\n            <img decoding=\"async\" src=\"https:\/\/factorialhr.com\/wp-content\/uploads\/2026\/04\/21114414\/PT-sidebar-1-nis-iso.png\" class=\"not-prose\" \/>\n        <\/div>\n    <\/div>\n<\/div>\n<h2 id=\"p-rc_8f86cffae10898a0-127\" data-path-to-node=\"17\"><span data-path-to-node=\"17,1\"><span class=\"citation-345\">6. A NIS2 afeta as PME portuguesas ou apenas as grandes empresas?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-128\" data-path-to-node=\"18\"><span data-path-to-node=\"18,1\"><span class=\"citation-344\">Embora o foco principal esteja nas m\u00e9dias e grandes empresas, o tecido empresarial em Portugal, composto maioritariamente por PME, n\u00e3o \u00e9 imune \u00e0 regulamenta\u00e7\u00e3o. <\/span><\/span><\/p>\n<p data-path-to-node=\"18\"><span data-path-to-node=\"18,4\"><span class=\"citation-343\">Muitas pequenas empresas ser\u00e3o afetadas indiretamente por fazerem parte da cadeia de abastecimento de grandes entidades essenciais. <\/span><\/span><span data-path-to-node=\"18,7\"><span class=\"citation-342\">Uma vez que a NIS2 obriga as empresas abrangidas a garantir a seguran\u00e7a dos seus fornecedores, as PME em Portugal come\u00e7ar\u00e3o a receber requisitos de ciberseguran\u00e7a contratuais por parte dos seus clientes para poderem continuar a operar com eles.<\/span><\/span><\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-129\" data-path-to-node=\"19\"><span data-path-to-node=\"19,1\"><span class=\"citation-341\">7. O que s\u00e3o entidades essenciais e importantes?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-130\" data-path-to-node=\"20\"><span data-path-to-node=\"20,1\"><span class=\"citation-340\">A diretiva NIS2 classifica as empresas sob jurisdi\u00e7\u00e3o portuguesa em dois grandes grupos:<\/span><\/span><\/p>\n<ul data-path-to-node=\"21\">\n<li>\n<p id=\"p-rc_8f86cffae10898a0-131\" data-path-to-node=\"21,0,1\"><span data-path-to-node=\"21,0,1,0\"><b data-path-to-node=\"21,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-339\">Entidades essenciais:<\/span><\/b><span class=\"citation-339\"> s\u00e3o organiza\u00e7\u00f5es de setores de alta criticidade (como energia, transportes ou sa\u00fade) e est\u00e3o sujeitas a um maior n\u00edvel de supervis\u00e3o, tanto proativa como reativa, por parte das autoridades.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-132\" data-path-to-node=\"21,1,1\"><span data-path-to-node=\"21,1,1,0\"><b data-path-to-node=\"21,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-338\">Entidades importantes:<\/span><\/b><span class=\"citation-338\"> pertencem a outros setores cr\u00edticos relevantes, mas com um n\u00edvel de criticidade um pouco menor. <\/span><\/span><span data-path-to-node=\"21,1,1,3\"><span class=\"citation-337\">O seu n\u00edvel de supervis\u00e3o costuma ser principalmente reativo (ap\u00f3s a ocorr\u00eancia de um incidente).<\/span><\/span><\/p>\n<\/li>\n<\/ul>\n<p>\ud83d\udccc Saiba mais sobre<a href=\"https:\/\/factorialhr.pt\/blog\/empresas-essenciais-vs-importantes-nis2\/\"> a diferen\u00e7a entre entidades essenciais e importantes<\/a>.<\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-133\" data-path-to-node=\"22\"><span data-path-to-node=\"22,1\"><span class=\"citation-336\">8. Se sou fornecedor ou parte da cadeia de abastecimento, a NIS2 afeta-me em Portugal?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-134\" data-path-to-node=\"23\"><span data-path-to-node=\"23,1\"><span class=\"citation-335\">Sim, embora a sua empresa n\u00e3o esteja diretamente obrigada pela lei, a diretiva NIS2 pode afet\u00e1-la igualmente se fizer parte da cadeia de abastecimento de uma entidade essencial ou importante que opera em Portugal. <\/span><\/span><\/p>\n<p data-path-to-node=\"23\"><span data-path-to-node=\"23,4\"><span class=\"citation-334\">As organiza\u00e7\u00f5es abrangidas t\u00eam o dever legal de garantir a seguran\u00e7a de toda a sua cadeia de abastecimento. <\/span><\/span><span data-path-to-node=\"23,7\"><span class=\"citation-333\">Por isso, j\u00e1 \u00e9 comum come\u00e7arem a exigir medidas de ciberseguran\u00e7a, auditorias ou certifica\u00e7\u00f5es espec\u00edficas aos seus fornecedores e parceiros para cumprir a regulamenta\u00e7\u00e3o. <\/span><\/span><\/p>\n<p data-path-to-node=\"23\"><span data-path-to-node=\"23,10\"><span class=\"citation-332\">Na pr\u00e1tica, muitas empresas (tanto portuguesas como estrangeiras que prestam servi\u00e7os no pa\u00eds) ter\u00e3o de se adaptar \u00e0 NIS2 de forma indireta para n\u00e3o perderem contratos e poderem continuar a trabalhar com os seus clientes.<\/span><\/span><\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-135\" data-path-to-node=\"24\"><span data-path-to-node=\"24,1\"><span class=\"citation-331\">9. Que obriga\u00e7\u00f5es imp\u00f5e a NIS2 \u00e0s empresas?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-136\" data-path-to-node=\"25\"><span data-path-to-node=\"25,1\"><span class=\"citation-330\">A regulamenta\u00e7\u00e3o estabelece um conjunto de obriga\u00e7\u00f5es centradas na gest\u00e3o proativa da ciberseguran\u00e7a e na mitiga\u00e7\u00e3o de riscos. <\/span><\/span><span data-path-to-node=\"25,4\"><span class=\"citation-329\">Entre as principais, destacam-se:<\/span><\/span><\/p>\n<ul data-path-to-node=\"26\">\n<li>\n<p id=\"p-rc_8f86cffae10898a0-137\" data-path-to-node=\"26,0,1\"><span data-path-to-node=\"26,0,1,0\"><b data-path-to-node=\"26,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-328\">Governa\u00e7\u00e3o e responsabilidade corporativa:<\/span><\/b><span class=\"citation-328\"> a alta dire\u00e7\u00e3o \u00e9 a principal respons\u00e1vel pela ciberseguran\u00e7a, devendo aprovar as medidas e definir pap\u00e9is claros (podendo assumir responsabilidade legal direta em caso de neglig\u00eancia grave).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-138\" data-path-to-node=\"26,1,1\"><span data-path-to-node=\"26,1,1,0\"><b data-path-to-node=\"26,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-327\">Gest\u00e3o de riscos de ciberseguran\u00e7a:<\/span><\/b><span class=\"citation-327\"> avaliar e gerir de forma cont\u00ednua os riscos que afetam os sistemas inform\u00e1ticos, as redes e os ambientes f\u00edsicos.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-139\" data-path-to-node=\"26,2,1\"><span data-path-to-node=\"26,2,1,0\"><b data-path-to-node=\"26,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-326\">Medidas de seguran\u00e7a t\u00e9cnica e organizativa:<\/span><\/b><span class=\"citation-326\"> implementar controlos rigorosos de acesso, autentica\u00e7\u00e3o multifator (MFA), encripta\u00e7\u00e3o de dados, prote\u00e7\u00e3o da infraestrutura e higiene cibern\u00e9tica b\u00e1sica.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-140\" data-path-to-node=\"26,3,1\"><span data-path-to-node=\"26,3,1,0\"><b data-path-to-node=\"26,3,1,0\" data-index-in-node=\"0\"><span class=\"citation-325\">Gest\u00e3o da cadeia de abastecimento:<\/span><\/b><span class=\"citation-325\"> assegurar que os fornecedores diretos e prestadores de servi\u00e7os cumpram requisitos de ciberseguran\u00e7a equivalentes, para evitar ataques com origem em terceiros.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-141\" data-path-to-node=\"26,4,1\"><span data-path-to-node=\"26,4,1,0\"><b data-path-to-node=\"26,4,1,0\" data-index-in-node=\"0\"><span class=\"citation-324\">Notifica\u00e7\u00e3o de incidentes:<\/span><\/b><span class=\"citation-324\"> reportar amea\u00e7as graves e incidentes de seguran\u00e7a \u00e0s autoridades competentes (no caso de Portugal, ao <\/span><b data-path-to-node=\"26,4,1,0\" data-index-in-node=\"129\"><span class=\"citation-324\">Centro Nacional de Ciberseguran\u00e7a &#8211; CNCS<\/span><\/b><span class=\"citation-324\">) cumprindo rigorosamente os prazos legais: alerta precoce em 24 horas, notifica\u00e7\u00e3o de incidente em 72 horas e relat\u00f3rio final em 1 m\u00eas.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-142\" data-path-to-node=\"26,5,1\"><span data-path-to-node=\"26,5,1,0\"><b data-path-to-node=\"26,5,1,0\" data-index-in-node=\"0\"><span class=\"citation-323\">Testes e auditorias:<\/span><\/b><span class=\"citation-323\"> realizar avalia\u00e7\u00f5es peri\u00f3dicas, auditorias de seguran\u00e7a e simulacros para medir a efic\u00e1cia das medidas implementadas.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-143\" data-path-to-node=\"26,6,1\"><span data-path-to-node=\"26,6,1,0\"><b data-path-to-node=\"26,6,1,0\" data-index-in-node=\"0\"><span class=\"citation-322\">Consciencializa\u00e7\u00e3o e forma\u00e7\u00e3o:<\/span><\/b><span class=\"citation-322\"> formar de forma obrigat\u00f3ria e peri\u00f3dica todo o pessoal (incluindo a alta dire\u00e7\u00e3o) em ciberseguran\u00e7a e boas pr\u00e1ticas.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-144\" data-path-to-node=\"26,7,1\"><span data-path-to-node=\"26,7,1,0\"><b data-path-to-node=\"26,7,1,0\" data-index-in-node=\"0\"><span class=\"citation-321\">Planos de continuidade e recupera\u00e7\u00e3o:<\/span><\/b><span class=\"citation-321\"> garantir que a empresa possa continuar a operar e recuperar rapidamente ap\u00f3s um incidente grave (atrav\u00e9s de planos de recupera\u00e7\u00e3o de desastres e c\u00f3pias de seguran\u00e7a seguras).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-145\" data-path-to-node=\"26,8,1\"><span data-path-to-node=\"26,8,1,0\"><b data-path-to-node=\"26,8,1,0\" data-index-in-node=\"0\"><span class=\"citation-320\">Relat\u00f3rios e documenta\u00e7\u00e3o:<\/span><\/b><span class=\"citation-320\"> manter um registo documentado de todas as pol\u00edticas, medidas adotadas, evid\u00eancias e avalia\u00e7\u00f5es de riscos.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-146\" data-path-to-node=\"26,9,1\"><span data-path-to-node=\"26,9,1,0\"><b data-path-to-node=\"26,9,1,0\" data-index-in-node=\"0\"><span class=\"citation-319\">Coopera\u00e7\u00e3o com as autoridades:<\/span><\/b><span class=\"citation-319\"> colaborar ativamente com o CNCS e participar em redes de partilha de informa\u00e7\u00e3o sobre ciberamea\u00e7as.<\/span><\/span><\/p>\n<\/li>\n<\/ul>\n<h2 id=\"p-rc_8f86cffae10898a0-147\" data-path-to-node=\"27\"><span data-path-to-node=\"27,1\"><span class=\"citation-318\">10. Como devem ser notificados os incidentes de seguran\u00e7a?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-148\" data-path-to-node=\"28\"><span data-path-to-node=\"28,1\"><span class=\"citation-317\">A NIS2 \u00e9 extremamente rigorosa com os tempos de resposta. <\/span><\/span><span data-path-to-node=\"28,4\"><span class=\"citation-316\">Obriga as empresas a notificar o <\/span><b data-path-to-node=\"28,4\" data-index-in-node=\"33\"><span class=\"citation-316\">Centro Nacional de Ciberseguran\u00e7a (CNCS)<\/span><\/b><span class=\"citation-316\">, habitualmente atrav\u00e9s da sua equipa de resposta <\/span><b data-path-to-node=\"28,4\" data-index-in-node=\"123\"><span class=\"citation-316\">CERT.PT<\/span><\/b><span class=\"citation-316\">, sobre qualquer incidente significativo, seguindo um modelo por fases inalter\u00e1vel:<\/span><\/span><\/p>\n<ul data-path-to-node=\"29\">\n<li>\n<p id=\"p-rc_8f86cffae10898a0-149\" data-path-to-node=\"29,0,1\"><span data-path-to-node=\"29,0,1,0\"><b data-path-to-node=\"29,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-315\">Alerta precoce:<\/span><\/b><span class=\"citation-315\"> num prazo m\u00e1ximo de 24 horas a partir do momento em que se tem conhecimento do incidente, deve ser emitido um primeiro aviso (mesmo que ainda n\u00e3o se tenham todos os detalhes).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-150\" data-path-to-node=\"29,1,1\"><span data-path-to-node=\"29,1,1,0\"><b data-path-to-node=\"29,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-314\">Notifica\u00e7\u00e3o formal:<\/span><\/b><span class=\"citation-314\"> num m\u00e1ximo de 72 horas, deve ser enviada uma atualiza\u00e7\u00e3o que inclua uma avalia\u00e7\u00e3o inicial do incidente, a sua gravidade e o seu impacto.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-151\" data-path-to-node=\"29,2,1\"><span data-path-to-node=\"29,2,1,0\"><b data-path-to-node=\"29,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-313\">Relat\u00f3rio final:<\/span><\/b><span class=\"citation-313\"> no prazo m\u00e1ximo de 1 m\u00eas, \u00e9 necess\u00e1rio entregar um documento detalhando a an\u00e1lise completa do ciberataque, as consequ\u00eancias reais e as medidas de mitiga\u00e7\u00e3o adotadas.<\/span><\/span><\/p>\n<\/li>\n<\/ul>\n<h2 id=\"p-rc_8f86cffae10898a0-152\" data-path-to-node=\"30\"><span data-path-to-node=\"30,1\"><span class=\"citation-312\">11. A dire\u00e7\u00e3o da empresa tem responsabilidade legal com a NIS2?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-153\" data-path-to-node=\"31\"><span data-path-to-node=\"31,1\"><span class=\"citation-311\">Sim, total e absoluta. <\/span><\/span><span data-path-to-node=\"31,4\"><span class=\"citation-310\">A NIS2 acaba pela raiz com a desculpa de que &#8220;a ciberseguran\u00e7a \u00e9 apenas um problema do departamento inform\u00e1tico&#8221; e coloca a responsabilidade diretamente sobre os ombros do conselho de administra\u00e7\u00e3o e da alta dire\u00e7\u00e3o. <\/span><\/span><span data-path-to-node=\"31,7\"><span class=\"citation-309\">Isto traduz-se em duas obriga\u00e7\u00f5es cr\u00edticas:<\/span><\/span><\/p>\n<ul data-path-to-node=\"32\">\n<li>\n<p id=\"p-rc_8f86cffae10898a0-154\" data-path-to-node=\"32,0,1\"><span data-path-to-node=\"32,0,1,0\"><b data-path-to-node=\"32,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-308\">Forma\u00e7\u00e3o obrigat\u00f3ria:<\/span><\/b><span class=\"citation-308\"> os diretores est\u00e3o obrigados a formar-se regularmente em ciberseguran\u00e7a para compreenderem os riscos tecnol\u00f3gicos do seu setor e poderem avaliar corretamente as medidas implementadas.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-155\" data-path-to-node=\"32,1,1\"><span data-path-to-node=\"32,1,1,0\"><b data-path-to-node=\"32,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-307\">Responsabilidade direta por neglig\u00eancia:<\/span><\/b><span class=\"citation-307\"> se uma empresa sofrer um incidente grave por n\u00e3o ter aprovado ou aplicado as medidas exigidas, os diretores podem ser responsabilizados legalmente a n\u00edvel pessoal.<\/span><\/span><\/p>\n<\/li>\n<\/ul>\n<p id=\"p-rc_8f86cffae10898a0-156\" data-path-to-node=\"33\"><span data-path-to-node=\"33,1\"><span class=\"citation-306\">De facto, no caso das entidades essenciais, as autoridades portuguesas podem chegar a suspender temporariamente os altos cargos das suas fun\u00e7\u00f5es diretivas.<\/span><\/span><\/p>\n<h2 id=\"p-rc_8f86cffae10898a0-157\" data-path-to-node=\"34\"><span data-path-to-node=\"34,1\"><span class=\"citation-305\">12. Como come\u00e7ar a cumprir a NIS2?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-158\" data-path-to-node=\"35\"><span data-path-to-node=\"35,1\"><span class=\"citation-304\">A adapta\u00e7\u00e3o \u00e0 NIS2 n\u00e3o se faz da noite para o dia. <\/span><\/span><span data-path-to-node=\"35,4\"><span class=\"citation-303\">As empresas deveriam seguir este roteiro:<\/span><\/span><\/p>\n<ul data-path-to-node=\"36\">\n<li>\n<p id=\"p-rc_8f86cffae10898a0-159\" data-path-to-node=\"36,0,1\"><span data-path-to-node=\"36,0,1,0\"><b data-path-to-node=\"36,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-302\">Classifica\u00e7\u00e3o e \u00e2mbito:<\/span><\/b><span class=\"citation-302\"> Identificar formalmente se a empresa est\u00e1 obrigada pela lei em Portugal e em que categoria se enquadra (entidade essencial ou importante).<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-160\" data-path-to-node=\"36,1,1\"><span data-path-to-node=\"36,1,1,0\"><b data-path-to-node=\"36,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-301\">Envolvimento da dire\u00e7\u00e3o:<\/span><\/b><span class=\"citation-301\"> informar a alta dire\u00e7\u00e3o sobre as suas novas responsabilidades legais e assegurar o or\u00e7amento necess\u00e1rio para a adapta\u00e7\u00e3o.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-161\" data-path-to-node=\"36,2,1\"><span data-path-to-node=\"36,2,1,0\"><b data-path-to-node=\"36,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-300\">Auditoria inicial:<\/span><\/b><span class=\"citation-300\"> avaliar o estado atual da ciberseguran\u00e7a na empresa face \u00e0s exig\u00eancias da NIS2, para detetar as lacunas existentes e avaliar a criticidade dos sistemas.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-162\" data-path-to-node=\"36,3,1\"><span data-path-to-node=\"36,3,1,0\"><b data-path-to-node=\"36,3,1,0\" data-index-in-node=\"0\"><span class=\"citation-299\">Plano de a\u00e7\u00e3o:<\/span><\/b><span class=\"citation-299\"> implementar as solu\u00e7\u00f5es necess\u00e1rias para colmatar essas lacunas: seguran\u00e7a de redes, c\u00f3pias de seguran\u00e7a imut\u00e1veis, controlo de acessos (MFA), encripta\u00e7\u00e3o, etc.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-163\" data-path-to-node=\"36,4,1\"><span data-path-to-node=\"36,4,1,0\"><b data-path-to-node=\"36,4,1,0\" data-index-in-node=\"0\"><span class=\"citation-298\">Protocolos de resposta e notifica\u00e7\u00e3o:<\/span><\/b><span class=\"citation-298\"> definir e documentar processos claros para saber como atuar perante um ataque e assegurar que \u00e9 poss\u00edvel notificar o CNCS nas primeiras 24 horas.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-164\" data-path-to-node=\"36,5,1\"><span data-path-to-node=\"36,5,1,0\"><b data-path-to-node=\"36,5,1,0\" data-index-in-node=\"0\"><span class=\"citation-297\">Blindar a cadeia de abastecimento:<\/span><\/b><span class=\"citation-297\"> rever os contratos com fornecedores tecnol\u00f3gicos e prestadores de servi\u00e7os, exigindo-lhes que cumpram requisitos de ciberseguran\u00e7a equivalentes.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-165\" data-path-to-node=\"36,6,1\"><span data-path-to-node=\"36,6,1,0\"><b data-path-to-node=\"36,6,1,0\" data-index-in-node=\"0\"><span class=\"citation-296\">Consciencializa\u00e7\u00e3o cont\u00ednua:<\/span><\/b><span class=\"citation-296\"> formar periodicamente todo o pessoal (incluindo os diretores) para criar uma verdadeira cultura de ciberseguran\u00e7a e evitar erros humanos.<\/span><\/span><\/p>\n<\/li>\n<\/ul>\n<div class=\"factorial-banner inline-banner banner-other category-nis2\"\n    data-banner-id=\"187216\"\n    data-banner-type=\"other\"\n    data-category=\"NIS2\">\n    <div class=\"banner-content\">\n        <div class=\"banner-text\">\n                            <h4>Prepare-se para a NIS2 com mais controlo e menos caos<\/h4>\n            \n                            <p>Centralize dispositivos, acessos e processos de IT num \u00fanico local para reduzir tarefas manuais e ganhar visibilidade operacional.<\/p>\n            \n                            <a href=\"https:\/\/factorialhr.pt\/nis2-factorial-it#factorial-it-demo-form-nis2\"\n                    class=\"factorial-cta-button not-prose freebie\" data-cta=\"other\" data-cta-position=\"inline-banner\">\n                    Saber mais                <\/a>\n                    <\/div>\n\n        <div class=\"banner-image has-image\">\n            <img decoding=\"async\" src=\"https:\/\/factorialhr.com\/wp-content\/uploads\/2026\/04\/21114414\/PT-sidebar-1-nis-iso.png\" class=\"not-prose\" \/>\n        <\/div>\n    <\/div>\n<\/div>\n<h2 id=\"p-rc_8f86cffae10898a0-166\" data-path-to-node=\"37\"><span data-path-to-node=\"37,1\"><span class=\"citation-295\">13. Existem softwares espec\u00edficos para cumprir a diretiva NIS2?<\/span><\/span><\/h2>\n<p id=\"p-rc_8f86cffae10898a0-167\" data-path-to-node=\"38\"><span data-path-to-node=\"38,1\"><span class=\"citation-294\">Sim, existem ferramentas desenhadas para facilitar o cumprimento da NIS2, embora n\u00e3o exista um \u00fanico software oficial. <\/span><\/span><span data-path-to-node=\"38,4\"><span class=\"citation-293\">Estas solu\u00e7\u00f5es ajudam a gerir riscos, documentar controlos e assegurar que se cumprem os requisitos da diretiva. <\/span><\/span><span data-path-to-node=\"38,7\"><span class=\"citation-292\">Entre as mais destacadas:<\/span><\/span><\/p>\n<ul data-path-to-node=\"39\">\n<li>\n<p id=\"p-rc_8f86cffae10898a0-168\" data-path-to-node=\"39,0,1\"><span data-path-to-node=\"39,0,1,0\"><b data-path-to-node=\"39,0,1,0\" data-index-in-node=\"0\"><span class=\"citation-291\">Plataformas GRC (Governance, Risk &amp; Compliance):<\/span><\/b><span class=\"citation-291\"> permitem centralizar a gest\u00e3o de riscos, pol\u00edticas e auditorias.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-169\" data-path-to-node=\"39,1,1\"><span data-path-to-node=\"39,1,1,0\"><b data-path-to-node=\"39,1,1,0\" data-index-in-node=\"0\"><span class=\"citation-290\">Software espec\u00edfico NIS2:<\/span><\/b><span class=\"citation-290\"> ferramentas que ajudam a documentar medidas de seguran\u00e7a, incidentes e evid\u00eancias de cumprimento normativo.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-170\" data-path-to-node=\"39,2,1\"><span data-path-to-node=\"39,2,1,0\"><b data-path-to-node=\"39,2,1,0\" data-index-in-node=\"0\"><span class=\"citation-289\">Solu\u00e7\u00f5es t\u00e9cnicas de ciberseguran\u00e7a:<\/span><\/b><span class=\"citation-289\"> SIEM, EDR e monitoriza\u00e7\u00e3o de redes para detetar e responder a incidentes em tempo real.<\/span><\/span><\/p>\n<\/li>\n<li>\n<p id=\"p-rc_8f86cffae10898a0-171\" data-path-to-node=\"39,3,1\"><span data-path-to-node=\"39,3,1,0\"><b data-path-to-node=\"39,3,1,0\" data-index-in-node=\"0\"><span class=\"citation-288\">Consultorias ou recursos externos:<\/span><\/b><span class=\"citation-288\"> servi\u00e7os especializados que ajudam a adaptar processos t\u00e9cnicos e legais, bem como a formar o pessoal no cumprimento da regulamenta\u00e7\u00e3o. <\/span><\/span><\/p>\n<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>A nova diretiva NIS2 \u00e9 um antes e um depois na ciberseguran\u00e7a na Europa, e h\u00e1 muitas empresas em Portugal que n\u00e3o sabem como as vai afetar nem o que devem fazer exatamente. \u00c9 obrigado a cumpri-la? Quais s\u00e3o os riscos se n\u00e3o o fizer? Por onde come\u00e7ar? Esta FAQ oferece respostas claras e r\u00e1pidas<a href=\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/\" class=\"read-more\"> [&#8230;]<\/a><\/p>\n","protected":false},"author":352,"featured_media":187608,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1055],"tags":[],"class_list":["post-187607","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-nis2"],"acf":{"topics":"factorial-it"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v21.5 (Yoast SEO v21.9.1) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>FAQ sobre a diretiva NIS2 em Portugal | Factorial<\/title>\n<meta name=\"description\" content=\"Tem d\u00favidas sobre a diretiva NIS2 em Portugal? Esclarecemos as principais d\u00favidas sobre a NIS2. Entre e descubra!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/\" \/>\n<meta property=\"og:locale\" content=\"pt_PT\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"FAQ sobre a diretiva NIS2 em Portugal\" \/>\n<meta property=\"og:description\" content=\"Tem d\u00favidas sobre a diretiva NIS2 em Portugal? Esclarecemos as principais d\u00favidas sobre a NIS2. Entre e descubra!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/\" \/>\n<meta property=\"og:site_name\" content=\"Factorial\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/people\/Factorial\/100064908455810\/\" \/>\n<meta property=\"article:published_time\" content=\"2026-04-24T17:10:26+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-04-24T17:29:53+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/factorialhr.com\/wp-content\/uploads\/2026\/04\/24184104\/faq-diretiva-nis2.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1800\" \/>\n\t<meta property=\"og:image:height\" content=\"976\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Enrique Quiroga\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@factorialapp\" \/>\n<meta name=\"twitter:site\" content=\"@factorialapp\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Enrique Quiroga\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"9 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/\"},\"author\":{\"name\":\"Enrique Quiroga\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/576a40f0f266777ab73068c097d59014\"},\"headline\":\"FAQ sobre a diretiva NIS2 em Portugal\",\"datePublished\":\"2026-04-24T17:10:26+00:00\",\"dateModified\":\"2026-04-24T17:29:53+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/\"},\"wordCount\":2035,\"publisher\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/#organization\"},\"articleSection\":[\"NIS2\"],\"inLanguage\":\"pt-PT\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/\",\"url\":\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/\",\"name\":\"FAQ sobre a diretiva NIS2 em Portugal | Factorial\",\"isPartOf\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/#website\"},\"datePublished\":\"2026-04-24T17:10:26+00:00\",\"dateModified\":\"2026-04-24T17:29:53+00:00\",\"description\":\"Tem d\u00favidas sobre a diretiva NIS2 em Portugal? Esclarecemos as principais d\u00favidas sobre a NIS2. Entre e descubra!\",\"inLanguage\":\"pt-PT\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/factorialhr.pt\/blog\/faq-nis2\/\"]}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#website\",\"url\":\"https:\/\/factorialhr.pt\/blog\/\",\"name\":\"Factorial\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/factorialhr.pt\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"pt-PT\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#organization\",\"name\":\"All-in-one business management software - Factorial\",\"url\":\"https:\/\/factorialhr.pt\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-PT\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/factorialhr.pt\/wp-content\/uploads\/2023\/07\/18155144\/factorial-logo.png\",\"contentUrl\":\"https:\/\/factorialhr.pt\/wp-content\/uploads\/2023\/07\/18155144\/factorial-logo.png\",\"width\":946,\"height\":880,\"caption\":\"All-in-one business management software - Factorial\"},\"image\":{\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/people\/Factorial\/100064908455810\/\",\"https:\/\/twitter.com\/factorialapp\",\"https:\/\/www.linkedin.com\/company\/factorialhr\",\"https:\/\/www.youtube.com\/@factorialmedia\",\"https:\/\/www.instagram.com\/factorial\/#\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/576a40f0f266777ab73068c097d59014\",\"name\":\"Enrique Quiroga\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"pt-PT\",\"@id\":\"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/fcc26a14dc327372e37434cfc64f3917?s=96&d=identicon&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/fcc26a14dc327372e37434cfc64f3917?s=96&d=identicon&r=g\",\"caption\":\"Enrique Quiroga\"},\"url\":\"https:\/\/factorialhr.pt\/blog\/author\/enrique-quiroga\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"FAQ sobre a diretiva NIS2 em Portugal | Factorial","description":"Tem d\u00favidas sobre a diretiva NIS2 em Portugal? Esclarecemos as principais d\u00favidas sobre a NIS2. Entre e descubra!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/factorialhr.pt\/blog\/faq-nis2\/","og_locale":"pt_PT","og_type":"article","og_title":"FAQ sobre a diretiva NIS2 em Portugal","og_description":"Tem d\u00favidas sobre a diretiva NIS2 em Portugal? Esclarecemos as principais d\u00favidas sobre a NIS2. Entre e descubra!","og_url":"https:\/\/factorialhr.pt\/blog\/faq-nis2\/","og_site_name":"Factorial","article_publisher":"https:\/\/www.facebook.com\/people\/Factorial\/100064908455810\/","article_published_time":"2026-04-24T17:10:26+00:00","article_modified_time":"2026-04-24T17:29:53+00:00","og_image":[{"width":1800,"height":976,"url":"https:\/\/factorialhr.com\/wp-content\/uploads\/2026\/04\/24184104\/faq-diretiva-nis2.png","type":"image\/png"}],"author":"Enrique Quiroga","twitter_card":"summary_large_image","twitter_creator":"@factorialapp","twitter_site":"@factorialapp","twitter_misc":{"Written by":"Enrique Quiroga","Est. reading time":"9 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/factorialhr.pt\/blog\/faq-nis2\/#article","isPartOf":{"@id":"https:\/\/factorialhr.pt\/blog\/faq-nis2\/"},"author":{"name":"Enrique Quiroga","@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/576a40f0f266777ab73068c097d59014"},"headline":"FAQ sobre a diretiva NIS2 em Portugal","datePublished":"2026-04-24T17:10:26+00:00","dateModified":"2026-04-24T17:29:53+00:00","mainEntityOfPage":{"@id":"https:\/\/factorialhr.pt\/blog\/faq-nis2\/"},"wordCount":2035,"publisher":{"@id":"https:\/\/factorialhr.pt\/blog\/#organization"},"articleSection":["NIS2"],"inLanguage":"pt-PT"},{"@type":"WebPage","@id":"https:\/\/factorialhr.pt\/blog\/faq-nis2\/","url":"https:\/\/factorialhr.pt\/blog\/faq-nis2\/","name":"FAQ sobre a diretiva NIS2 em Portugal | Factorial","isPartOf":{"@id":"https:\/\/factorialhr.pt\/blog\/#website"},"datePublished":"2026-04-24T17:10:26+00:00","dateModified":"2026-04-24T17:29:53+00:00","description":"Tem d\u00favidas sobre a diretiva NIS2 em Portugal? Esclarecemos as principais d\u00favidas sobre a NIS2. Entre e descubra!","inLanguage":"pt-PT","potentialAction":[{"@type":"ReadAction","target":["https:\/\/factorialhr.pt\/blog\/faq-nis2\/"]}]},{"@type":"WebSite","@id":"https:\/\/factorialhr.pt\/blog\/#website","url":"https:\/\/factorialhr.pt\/blog\/","name":"Factorial","description":"","publisher":{"@id":"https:\/\/factorialhr.pt\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/factorialhr.pt\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"pt-PT"},{"@type":"Organization","@id":"https:\/\/factorialhr.pt\/blog\/#organization","name":"All-in-one business management software - Factorial","url":"https:\/\/factorialhr.pt\/blog\/","logo":{"@type":"ImageObject","inLanguage":"pt-PT","@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/factorialhr.pt\/wp-content\/uploads\/2023\/07\/18155144\/factorial-logo.png","contentUrl":"https:\/\/factorialhr.pt\/wp-content\/uploads\/2023\/07\/18155144\/factorial-logo.png","width":946,"height":880,"caption":"All-in-one business management software - Factorial"},"image":{"@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/people\/Factorial\/100064908455810\/","https:\/\/twitter.com\/factorialapp","https:\/\/www.linkedin.com\/company\/factorialhr","https:\/\/www.youtube.com\/@factorialmedia","https:\/\/www.instagram.com\/factorial\/#"]},{"@type":"Person","@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/576a40f0f266777ab73068c097d59014","name":"Enrique Quiroga","image":{"@type":"ImageObject","inLanguage":"pt-PT","@id":"https:\/\/factorialhr.pt\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/fcc26a14dc327372e37434cfc64f3917?s=96&d=identicon&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/fcc26a14dc327372e37434cfc64f3917?s=96&d=identicon&r=g","caption":"Enrique Quiroga"},"url":"https:\/\/factorialhr.pt\/blog\/author\/enrique-quiroga\/"}]}},"_links":{"self":[{"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/posts\/187607"}],"collection":[{"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/users\/352"}],"replies":[{"embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/comments?post=187607"}],"version-history":[{"count":4,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/posts\/187607\/revisions"}],"predecessor-version":[{"id":187633,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/posts\/187607\/revisions\/187633"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/media\/187608"}],"wp:attachment":[{"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/media?parent=187607"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/categories?post=187607"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/factorialhr.pt\/blog\/wp-json\/wp\/v2\/tags?post=187607"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}