Portugal implements critical regulations covering 10 strategic sectors. Each sector faces specific compliance requirements with the Digital Operational Resilience Act (DORA), Network and Information Security Directive 2 (NIS2), General Data Protection Regulation (GDPR) and specialized sectoral legislation.
π¦
Financial Services
Regulations: DORA + NIS2 + GDPR + MiCA + PSD2
Critical
Key Challenges:
- Compliance with DORA (Digital Operational Resilience Act)
- Integration of cybersecurity into critical operations
- Protection against cryptographic threats
- PSD2 compliance for digital payments
π₯
Healthcare
Regulations: NIS2 + GDPR + AI Act + MDR/IVDR
Critical
Key Challenges:
- Protection of sensitive patient data
- Compliance with medical device regulations
- Secure implementation of AI in diagnostics
- Critical information systems
β‘
Energy
Regulations: NIS2 + CER + CRA + ESG
High
Key Challenges:
- Protection of critical energy infrastructure
- Cyber Resilience Regulation compliance
- Implementation of environmental compliance
- Integration of renewables with security
π‘
Telecommunications
Regulations: NIS2 + GDPR + EECC
High
Key Challenges:
- Security of 5G/6G networks
- European Electronic Communications Code compliance
- Protection of user data
- Critical communication infrastructures
π
Transport
Regulations: NIS2 + CER + AI Act
High
Key Challenges:
- Safety of autonomous transport systems
- Protection of mobility infrastructure
- AI regulation compliance
- Critical operational resilience
ποΈ
Public Administration
Regulations: NIS2 + GDPR + AI Act + Interop
High
Key Challenges:
- Security of public digital services
- Interoperability Regulation compliance
- AI governance in public decisions
- Protection of state critical infrastructure
π‘οΈ
Insurance
Regulations: DORA + Solvency II + GDPR
Medium
Key Challenges:
- Digital operational resilience
- Solvency II compliance with digital components
- Cybersecurity risk management in claims
- Protection of customer data
π
Manufacturing
Regulations: NIS2 + CRA + Machinery Reg + ESG
Medium
Key Challenges:
- IoT operational systems security
- CRA (Cyber Resilience Act) compliance
- Intelligent machinery regulation
- Environmental and sustainability compliance
π§
Water and Waste
Regulations: NIS2 + CER + Environmental
Medium
Key Challenges:
- Protection of critical water infrastructure
- Cybersecurity resilience of supply systems
- Digital environmental compliance
- Intelligent monitoring systems
π°οΈ
Space and Defence
Regulations: NIS2 + CER + sector-specific
Critical
Key Challenges:
- Protection of critical space infrastructure
- Compliance with defence regulations
- Security of sensitive communications
- Resilience against state-sponsored threats