NIS2 compliance and data processing: new challenges in practice

The introduction of the NIS2 Directive brings not only cyber security and IT controls into the life of organisations, but also has significant consequences for data processing. During compliance, a number of new or strengthened measures are introduced that directly affect the processing of employees’ personal data. In many cases, these measures appear as mandatory, audited requirements, meaning that companies must reconsider certain aspects of their operations not only from a technical perspective, but also from a legal and data protection perspective.

The social security booklet will be phased out – what does this mean for employers and employees?

The social security booklet (TB-kiskönyv), a document long established in the Hungarian legal system for recording social security entitlements, will soon become a thing of the past. In May 2025, the Hungarian Parliament adopted a legislative amendment that provides for the phasing out of the social security booklet. The aim is to reduce administrative burdens and prioritize digital data processing. According to the new law, the paper-based social security booklet will be discontinued and fully replaced by an electronic register, the so-called “e-social security booklet,” which will include an expanded data set compared to the traditional booklet.