Netnod policy statements

Netnod provides expert input in policy, regulatory and governance discussions that directly impact the context within which we operate.
On May 15, 2026, Netnod commented on the Proposal for new regulations on security measures and training according to the Cybersecurity Act (2025:1506).
Netnod was invited by the Ministry of Finance (Finansdepartementet) to comment on the European Commission’s proposed Cloud and AI Development Act (COM(2026) 502 final).
On 15 January 2026, the Cybersecurity Act (Cybersäkerhetslagen) and the Cybersecurity Ordinance (Cybersäkerhetsförordningen) entered into force, thereby implementing NIS2 into Swedish law. For many businesses, this means stricter requirements on risk management measures, incident reporting, and governance/responsibility, while guidance and sector-specific regulations may be introduced gradually. Now that the Swedish implementation of the Cybersecurity Act (the NIS2 Directive) is in force, we analyse the current status and highlight the most important aspects for your business.
Overall, Netnod supports the Governance Document for the Recognition, Operation, and Derecognition of Regional Internet Registries (RIR Governance Document) Version 2.
Netnod has submitted its views on the government inquiry Samlade förmågor för ökad cybersäkerhet SOU 2025:79 (Combined Capabilities for Increased Cybersecurity).