Italian National Framework for Cybersecurity and Data Protection

被引:3
作者
Angelini, Marco [1 ,2 ]
Ciccotelli, Claudio [1 ,2 ]
Franchina, Luisa [2 ]
Marchetti-Spaccamela, Alberto [1 ,2 ]
Querzoni, Leonardo [1 ,2 ]
机构
[1] Sapienza Univ Rome, Dept Comp Control & Management Engn CIS, Rome, Italy
[2] CINI Cybersecur Natl Lab, Rome, Italy
来源
PRIVACY TECHNOLOGIES AND POLICY, APF 2020 | 2020年 / 12121卷
关键词
Cybersecurity; Data protection; GDPR;
D O I
10.1007/978-3-030-55196-4_8
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Data breaches have been one of the most common source of concerns related to cybersecurity in the last few years for many organizations. The General Data Protection Regulation (GDPR) in Europe, strongly impacted this scenario, as organizations operating with EU citizens now have to comply with strict data protection rules. In this paper we present the Italian National Framework for Cybersecurity and Data Protection, a framework derived from the NIST Cybersecurity Framework, that includes elements and tools to appropriately take into account data protection aspects in a way that is coherent and integrated with cybersecurity aspects. The goal of the proposed Framework is to provide organizations of different sizes and nature with a flexible and unified tool for the implementation of comprehensive cybersecurity and data protection programs.
引用
收藏
页码:127 / 142
页数:16
相关论文
共 19 条
  • [1] Accenture and Ponemon Institute, 2017, Cost of cybercrime study.
  • [2] Angelini M., 2017, 2017 IEEE S VIS CYB, P1, DOI [10.1109/VIZSEC.2017.8062194, DOI 10.1109/VIZSEC.2017.8062194]
  • [3] [Anonymous], 2016, Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data, and repealing Directive 95/46/EC, P1
  • [4] [Anonymous], 2017, HITRUST CSF
  • [5] [Anonymous], 2018, ISO/IEC 27000:2018
  • [6] [Anonymous], 2012, COBIT 5
  • [7] Center for Internet Security, Critical Security Controls for Effective Cyber Defense (CIS Controls).
  • [8] CIS Sapienza, 2016, 2015 Italian Cyber Security Report: Un Framework Nazionale per la Cybersecurity
  • [9] CIS Sapienza, 2020, Tool for the implementation of Italian Cybersecurity Framework.
  • [10] CIS Sapienza, 2019, Framework Nazionale per la Cybersecurity e la Data Protection.