17 controls
2 frameworks share controls with it
European Union
verified against its source document
Every control below is one this framework asks for. The right hand column counts how
many other frameworks in our corpus carry the same control, which is the difference between
doing this work once and doing it again for the next standard.
EU Electricity Cybersecurity Network Code (NCCS) Evidence & Implementation Kit
17 controls is the documentation set somebody has to write. This is that set,
already written: an adopt-ready artifact for every control in policy and procedure text you
edit rather than draft, and the evidence checklist an auditor asks for against each.
See what is in it, $249
The same set every buyer of this kit receives. Nothing here is produced on request.
What you already have
Frameworks whose controls overlap this one, most first. If you run any of them, the
count is roughly what you have already evidenced.
Every control
| Code | Control | Also in |
NCCS-Art.17 | Union-wide cybersecurity risk assessment (NCCS Articles 17-19) - first level of the cascade | 0 |
NCCS-Art.1_2_3 | Subject matter, scope and definitions (NCCS Articles 1-3) | 0 |
NCCS-Art.23_24 | Regional cybersecurity risk assessment (NCCS Articles 23-24) - second level of the cascade | 0 |
NCCS-Art.25_26 | Member State cybersecurity risk assessment (NCCS Articles 25-26) - third level of the cascade | 0 |
NCCS-Art.27_28 | Entity-level cybersecurity risk assessment (NCCS Articles 27-28) - fourth level of the cascade | 0 |
NCCS-Art.29_30_31 | Common electricity cybersecurity framework and minimum cybersecurity controls (NCCS Articles 29-31) - for high-impact entities | 1 |
NCCS-Art.32_33_34 | Advanced cybersecurity controls (NCCS Articles 32-34) - for critical-impact entities | 0 |
NCCS-Art.37_38_39 | Cross-border verification and mutual recognition (NCCS Articles 37-39) | 0 |
NCCS-Art.44_45_46 | Cybersecurity incident reporting (NCCS Articles 44-46) | 1 |
NCCS-Art.47_48 | Crisis management and Cyber Solidarity Act coordination (NCCS Articles 47-48) | 1 |
NCCS-Art.48_49_50 | Information protection and classification (NCCS Articles 48-50) | 1 |
NCCS-Art.4_5 | Entity classification - high-impact and critical-impact entities (NCCS Articles 4-5) | 0 |
NCCS-Art.54_55_56 | Supply chain cybersecurity (NCCS Articles 54-56) | 0 |
NCCS-Art.57_58 | Coordination with NIS2 + CER Directive + horizontal cybersecurity regimes (NCCS Articles 57-58) | 0 |
NCCS-Art.59_60 | Penalties, audits and entry into force (NCCS Articles 59-60) | 0 |
NCCS-Art.6_7 | Competent authorities + coordination (NCCS Articles 6-7) | 0 |
NCCS-Art.8 | ENTSO-E and EU DSO Entity joint methodology (NCCS Article 8) | 0 |
Tell me when EU Network Code on Cybersecurity for the Electricity Sector files something new
One email when a public company newly discloses something this framework governs, naming the company and what our corpus says it puts in scope. Nothing else, and one click to stop.
What this page is
A control-level reference for EU Network Code on Cybersecurity for the Electricity Sector, drawn from our framework corpus. Control codes and
titles are references to the standard, not reproductions of it. The overlap counts and the
auditor artefacts are our own work and are the part you will not find elsewhere.
Measure this against what you already run ·
All frameworks · Today's edition