Italian National Framework for Cybersecurity and Data Protection

被引:3
作者
Angelini, Marco [1 ,2 ]
Ciccotelli, Claudio [1 ,2 ]
Franchina, Luisa [2 ]
Marchetti-Spaccamela, Alberto [1 ,2 ]
Querzoni, Leonardo [1 ,2 ]
机构
[1] Sapienza Univ Rome, Dept Comp Control & Management Engn CIS, Rome, Italy
[2] CINI Cybersecur Natl Lab, Rome, Italy
来源
PRIVACY TECHNOLOGIES AND POLICY, APF 2020 | 2020年 / 12121卷
关键词
Cybersecurity; Data protection; GDPR;
D O I
10.1007/978-3-030-55196-4_8
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Data breaches have been one of the most common source of concerns related to cybersecurity in the last few years for many organizations. The General Data Protection Regulation (GDPR) in Europe, strongly impacted this scenario, as organizations operating with EU citizens now have to comply with strict data protection rules. In this paper we present the Italian National Framework for Cybersecurity and Data Protection, a framework derived from the NIST Cybersecurity Framework, that includes elements and tools to appropriately take into account data protection aspects in a way that is coherent and integrated with cybersecurity aspects. The goal of the proposed Framework is to provide organizations of different sizes and nature with a flexible and unified tool for the implementation of comprehensive cybersecurity and data protection programs.
引用
收藏
页码:127 / 142
页数:16
相关论文
共 19 条
  • [11] ENISA, 2019, Guidance and gaps analysis for European standardisation.
  • [12] ENISA, 2020, Inventory of risk management/risk assessment tools.
  • [13] Lachaud E., 2020, ISO/IEC 27701
  • [14] National Institute of Standards and Technology (NIST), 2018, FRAMEWORK IMPROVING
  • [15] NIST, 2017, NIST Interagency Report 8062
  • [16] NIST, 2013, SP 800-53 Rev. 4
  • [17] NIST, 2020, NIST Privacy Framework.
  • [18] NIST, Risk management framework overview.
  • [19] Zaras D., 2018, Impact Makers Report.