Skip to content

CCPA / CPRANIS2 crosswalk

A control-by-control mapping between California Consumer Privacy Act (as amended by CPRA) and NIS2 Directive (EU 2022/2555). 2 mappings.

CCPA / CPRANIS2RelationshipNotes
§1798.100
Consumers' right to know and notice at collection
Art. 21(2)(a)
Risk analysis and information system security policies
RelatedCurated
Gouvernance et politique de sécurité
§1798.150
Duty to implement reasonable security
Art. 21(2)(a)
Risk analysis and information system security policies
RelatedCurated
Évaluation et gestion des risques

Mappings marked “Official” derive from standards-body informative references; “Curated” mappings are authored by Cyber Compliance and provided for guidance only.