Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Irish government launches CNI resilience plan | Computer Weekly

By Computer Weekly by By Computer Weekly
March 23, 2026
Home Uncategorized
Share on FacebookShare on Twitter


The Irish government has released a National Strategy on the Resilience of Critical Entities, a comprehensive framework designed to protect essential public services – including digital and web infrastructure and datacentres – and critical national infrastructure (CNI) from cyber attacks and other disruptions.

Owned by Ireland’s Department of Defence (An Roinn Cosanta) and Office of Emergency Planning, the document sets out an overarching vision and a set of strategic objectives aimed at strengthening resilience across Ireland.

It was devised to comply with the European Union’s (EU’s) Critical Entities Resilience (CER) Directive, which obliges Member States to take specific measures to ensure essential services for economic and social functions are protected. The provisions laid down in CER are to be transferred into national law across the EU by the middle of October 2026.

“A resilient society is essential for our national security, as well as our economic and social well-being,” said Helen McEntee, Ireland’s minister for defence.

“This resilience relies on the continuous availability of a wide range of essential services including the water we drink, the food we eat, the energy that lights and heats our homes, the transport we depend on, and the health services that keep us healthy. Certain entities that provide these services are vital to the functioning of our society and are therefore classified as critical.

“These Critical Entities are significant, and they are increasingly interconnected and interdependent,” she said. “Many of them are provided by private industry in partnership with the State. While the resilience of critical infrastructure has always been part of our emergency strategy in Ireland, we now recognise the need for a more strategic approach to enhance this area.”

At the core of the strategy lie five strategic goals: to enhance the national risk assessment methodology to identify essential services; to embed a governance and coordination framework for critical entity resilience; to drive appropriate improvements in the resilience of critical entities; to enhance the Department of Defence’s strategic oversight of critical infrastructure dependencies across all sectors; and to ensure consistency with cyber security, maintaining an approach to resilience that aligns with Ireland’s national cyber objectives, and its obligations under EU laws such as NIS 2, Dora and so on.

Dublin hopes that besides improving public service resilience based on a better understanding of the risks such bodies face, the framework will also ensure a national and sector-wide perspective on risk, and support critical entities in meeting their obligations.

People across Ireland experienced the devastation of a successful cyber attack on an essential public service in May 2021, when the Health Service Executive (HSE) infamously fell victim to a Conti ransomware attack causing significant disruption.

The incident forced frontline clinical staff to fall back on pen and paper amid cancelled appointments and, significantly, downed Ireland’s Covid-19 testing referral system.

It took months for Ireland’s health system to recover, with millions of Euros spent on response and remediation efforts.

Clarity on CNI is welcome

David Ferbrache, managing director at Beyond Blue, an Edinburgh-based cyber risk and resilience consultancy, said it was encouraging for Ireland to establish a clear plan for CER compliance, and the document demonstrated its commitment to protecting both CNI and citizens. Clarity on intent, he added, would be valuable for the government, regulators and service operators.

“The CER Directive is widely regarded as the sister regulation to NIS2,” he said. “However, it takes a broader, all-hazards approach to resilience, extending beyond cyber threats to also address physical risks and third parties supporting critical industries. This ultimately helps safeguard essential services against outages and disruption, regardless of how an incident occurs or who it is targeted at.

“This is a positive step, particularly as recent disruptions to critical national infrastructure have been varied in cause, spanning malicious action, technology failures and natural hazards.”

Holistic

While the EU’s CER Directive does not apply to the UK, Ferbrache said it raised an important question as to whether the UK should adopt a similar approach reflecting the reality of today’s interconnected world and recognising that disruption takes many forms, not just cyber.

“While the Cyber Security and Resilience Bill (CSRB) is currently progressing through Parliament, it places a strong emphasis on cyber security, but gives less attention to broader resilience concerns,” he said. “These concerns cannot be ignored, protecting the availability of critical infrastructure cannot be achieved by only looking through the cyber lens. A more holistic approach is needed which bridges the cyber security and operational resilience disciplines.

“This all-hazards approach may require broader legislation and alignment of regulatory expectations on operators of essential services and their suppliers,” said Ferbrache. “While it’s unlikely that such provisions will be incorporated into the CSRB at this late stage, the UK government cannot afford to overlook this challenge in future.”



Source link

By Computer Weekly

By Computer Weekly

Next Post
We Found Eight Attack Vectors Inside AWS Bedrock. Here’s What Attackers Can Do with Them

We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with Them

Recommended.

Gundam GQuuuuuuX Takes Center Stage at Anime Expo 2025

Gundam GQuuuuuuX Takes Center Stage at Anime Expo 2025

July 4, 2025
1 in 3 IT leaders pull back on AI investments: Asana

1 in 3 IT leaders pull back on AI investments: Asana

May 9, 2025

Trending.

Chai AI Announces Upcoming Rollout of Apple and Google Age Verification APIs to Enhance Platform Safety

Chai AI Announces Upcoming Rollout of Apple and Google Age Verification APIs to Enhance Platform Safety

March 10, 2026
Huawei lanceert Next Generation FAN-oplossing

Huawei lanceert Next Generation FAN-oplossing

March 7, 2026
Baidu Announces Fourth Quarter and Fiscal Year 2025 Results

Baidu Announces Fourth Quarter and Fiscal Year 2025 Results

February 26, 2026
Half of Google’s software development now AI-generated | Computer Weekly

Half of Google’s software development now AI-generated | Computer Weekly

February 5, 2026
Huawei uvádí na trh řešení FAN nové generace

Huawei uvádí na trh řešení FAN nové generace

March 6, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio