EU Draft Reports Proposed Cybersecurity Overhaul
New draft reports introduced by Markéta Gregorová aim to unify security standards across the European Union.
Updated on Oct. 8, 2026 in Cybersecurity

Live Poll
Should the EU mandate technology certification to improve cybersecurity standards across all member states?
Markéta Gregorová has presented draft reports to the ITRE Committee that would consolidate 27 national cybersecurity systems into a single EU framework. The proposal suggests making equipment certification mandatory by default to better address supply-chain risks.
Why it matters
The proposal seeks to streamline incident notification processes and close security gaps by harmonizing reporting timelines. By consolidating these frameworks, the initiative aims to reduce the administrative burden on entities while strengthening regional defense.
The draft report targets a wide range of hardware, including inverters, smart meters, home routers, port cranes, and medical imaging devices. It also introduces a single entry point for reporting cyber incidents.
The players
Markéta Gregorová
She serves as the rapporteur for the European Parliament in charge of the cybersecurity legislative reports.
ITRE Committee
This is the European Parliament Committee on Industry, Research and Energy which oversees technological and industrial policy.
European Commission
This is the executive branch of the European Union responsible for proposing legislation and implementing decisions.
The details
The draft reports for Cybersecurity Act 2 and the NIS2 Directive revision aim to mitigate rule circumvention through licensing, white-label products, and intermediaries. It additionally shifts the assessment of high-risk suppliers to an individual basis.
Timeline
January 2026: The European Commission presented the Cybersecurity Act 2 proposal.
October 8, 2026: Markéta Gregorová presented her draft reports to the ITRE Committee.
The Tech Race
This move represents a major transition toward a centralized digital security architecture within the European Union. It replaces fragmented national approaches with a unified framework designed to counter modern supply-chain vulnerabilities.
Businesses and manufacturers will need to prepare for stricter certification requirements for devices like smart meters and home routers. The shift toward a single reporting entry point aims to simplify compliance for entities operating across multiple member states.
The takeaway
The proposed changes reflect a broader push to standardize digital safety protocols across complex international supply chains. Organizations should monitor these updates closely to ensure their hardware and notification processes align with upcoming EU standards.
Further reading
Learn more about the latest developments in Cybersecurity.
Source note: This article includes information reported by Agence Europe.
Live Poll
Should the EU mandate technology certification to improve cybersecurity standards across all member states?







