On 1 July 2026, your organisation must likely comply with ‘NIS2’. ‘Likely’ because the forthcoming NIS2 legislation not only applies to ‘critical entities’ (e.g., energy, transport, banking, healthcare) but extends to their entire supply chains. So, if you think it doesn’t apply to your organisation, think again.
NIS2 strengthens cybersecurity across the EU. NIS2 effectively:
- Professionalises ‘risk management’ in contracts
- Requires advanced contract lifecycle management of your suppliers.
Watch this 20-seconds video (below), showing how to implement NIS2 in only a few hours (enabling you to focus on learning what NIS2 is all about):
Weagree AI-tabular review
Upleveling your basics CLM to an enterprise-grade CLM may sound depressing if you remember your GDPR, KYC, DORA implementation projects. But those projects were not as easily supported by Weagree AI.
Over the past four weeks, we have developed AI contract review functionality that reviews hundreds or thousands of contracts in bulk, Weagree Tabular review:
- Categorises all your contracts, the AI suggests a contract sheet for each file, enabling you to cluster files (organising your CLM repositories by supplier or transaction).
- Based on the contract sheet, the AI extracts all key metadata from each document. If data are not found, fields will be red; if contract clauses are unfavourable, tags turn orange or red.
- AI-chat with all your contracts: ask which contracts contain critical parameters and let AI prioritise your follow-up action list. Of course, Weagree tabular review provides powerful validation tooling.
- Create a full report for management: NIS2 imposes immediate responsibility on the organisation’s management board.
Needless to say, Weagree AI-tabular review is where you can also start to CLM-manage your contracts for the parameters that characterise the type of relationship. From SaaS agreements, you would extract different metadata than from General purchasing agreements.
About your NIS2 opportunity
If you have not been involved in DORA or in your organisation’s ISO 27001 certifications, you will learn a lot. A bit more about your learning opportunity when implementing NIS2, the forthcoming legislation requires a high level of:
- Risk management and governance: organisations must implement proactive cybersecurity policies, including risk analysis, information system security, and basic cyber hygiene. Management is directly responsible for approving and overseeing this.
- Incident handling and reporting: a strict, mandatory reporting system for significant incidents is required, with initial alerts due within 24 hours to national authorities.
- Business continuity and supply chain security: organisations must ensure service continuity through backup management and crisis management, alongside addressing security risks in their direct supply chain.
The legislative implementation of the NIS2 directive will be adopted in the next weeks. NIS2 will come into force on 1 July 2026.
Weagree AI-tabular review and NIS2
Monitoring this is what Weagree CLM supports: elevate your basics CLM into enterprise-grade CLM, with embedded NIS2 register and automated monitoring notifications! Weagree does the heavy-lifting with AI: making it possible to fully implement NIS2 in hours, not months.
In the forthcoming days, we will publish a longer video showing in more detail how Weagree AI-tabular review works.