The common EU approach to personal data and cybersecurity regulation
Autor: | Giuseppe Vaciago, Maria Samantha Esposito, Nicole Monte, Alessandro Mantelero |
---|---|
Rok vydání: | 2020 |
Předmět: |
eIDAS Regulation
050502 law data protection Payment Services Directive cybersecurity NIS Directive 05 social sciences Library and Information Sciences Computer security computer.software_genre data protection cybersecurity Payment Services Directive GDPR eIDAS Regulation NIS Directive Business GDPR Law computer 0505 law |
Zdroj: | International Journal of Law and Information Technology. 28:297-328 |
ISSN: | 1464-3693 0967-0769 |
Popis: | Several sector-specific studies on EU data protection and cybersecurity frameworks can be found in the literature, but their differing legal domains has hindered the development of a common analysis of the different sets of provisions from a business perspective. This article sets out to bridge this gap, providing a systematic review and a cross-cutting operational analysis of the main legal instruments that constitute the common European approach to personal data and cybersecurity regulation for the business sector. We aim to demonstrate the existence of a core of common principles and procedural approaches referring to specific cybersecurity and data security technologies. Analysis reveals a coordinated regulatory model based on five pillars: risk-based approach, by-design approach, reporting obligations, resilience and certification schemes. We also highlight the relationship between the main directives and regulations. |
Databáze: | OpenAIRE |
Externí odkaz: |