The blog
Cybersecurity and regulatory news in Switzerland, decoded for SME managers. What's changing, what it means concretely for your company, and what to remember. No jargon, with official sources.
NIS2: why this European directive also concerns Swiss SMEs
Think European cyber regulation doesn't concern you because you're in Switzerland? NIS2 travels down the supply chain, and many Swiss SMEs will find out through their clients.
Read the articleThe NCSC report: what the second half of 2025 tells us about the threats
The NCSC's semi-annual report, published at the end of March 2026, paints a picture of the threats seen in the second half of 2025. Ransomware, voice phishing and new techniques all feature prominently.
Read the articleFADP: what the FDPIC's latest report reveals for SMEs
The Federal Data Protection and Information Commissioner has published its activity report. Behind the figures lies a useful reminder: in Switzerland, it is individuals, not the company, who risk the criminal fine.
Read the articleCyber Resilience Act: the new mandatory step for Swiss manufacturers that export
The European Cyber Resilience Act also applies to Swiss manufacturers who sell into the EU. The first deadlines arrive in 2026, and Switzerland is preparing its own law.
Read the articleNext-generation CEO fraud: when AI imitates your boss's voice
A company in the canton of Schwyz lost several million francs after a phone call whose voice, generated by artificial intelligence, imitated that of a manager. CEO fraud is entering a new era.
Read the articleQuishing: when a simple QR code becomes a trap, in Switzerland too
A fake Swiss Post notice in your letterbox, a sticker on a parking meter: quishing hijacks QR codes to steal your data. A closer look at a rapidly spreading scam.
Read the articleMandatory reporting of cyberattacks to the NCSC: what changes, even for SME subcontractors
Since 1 April 2025, operators of critical infrastructures have a legal obligation to report cyberattacks. An SME may be affected without knowing it, at the end of the chain.
Read the articleA new cyberattack on the Réseau radiologique romand: what SMEs should take away from it
In late April 2026, the Réseau radiologique romand suffered its second cyberattack in a year. A concrete case that shows why healthcare, and the SMEs around it, are prime targets.
Read the article