FR · Framework

LPM — Loi de Programmation Militaire

The Military Programming Act places binding cybersecurity obligations on France's operators of vital importance (Opérateurs d'Importance Vitale, OIV), supervised by the national agency ANSSI.

What it is

The Military Programming Act places binding cybersecurity obligations on France's operators of vital importance (Opérateurs d'Importance Vitale, OIV), supervised by the national agency ANSSI.

France · LPM 2024-2030 in force

Who it binds

Roughly three hundred designated OIV across vital sectors: energy, transport, water, health, finance and telecoms.

Key obligations

  • Implement the ANSSI security baseline for critical information systems
  • Declare security incidents to ANSSI
  • Deploy qualified detection products and service providers
  • Submit to ANSSI inspection and control

How CCI addresses it

Sovereignty-first audits and CySSURANCE map the ANSSI baseline to your systems; EviGen evidences the detection and logging controls ANSSI expects.

Audit services →

Official source

Loi n° 2023-703 (LPM 2024-2030); Code de la défense, art. L.1332-6-1 et seq.

https://cyber.gouv.fr/reglementation/cybersecurite-systemes-dinformation/directives-nis-nis2-et-dispositif-saiv/dispositif-saiv/

The linked text is the authoritative legal or standards source. CCI maps to it; it is not a CCI publication.

← All frameworks