Computer & Communication Industry Association

New EU Cybersecurity Rules Should Promote Security Mitigation, Avoid Compliance Red Tape

Brussels, BELGIUM — The European Commission published today a legislative proposal to update the 2016 Network and Information Security Directive. 

The proposal aims to reduce regulatory inconsistencies across the EU’s internal market and it encourages security information sharing to help companies effectively address future cybersecurity risks. But the proposal also suggests that cloud computing providers, data centres, electronic communications services, and Content Delivery Network providers be supervised in the same way that more high risk electricity and gas suppliers are. The proposal also sets out a minimum threshold for sanctions and fines of up to 2 percent of annual turnover.

Today’s proposal is part of a broader EU Strategy to address cybersecurity risks. The package also includes a review of the Critical Infrastructure Protection directive, plans to increase actionable information sharing among Member States and stakeholders (“Cyber Shield”), and the creation of a Joint Cyber Unit. The plans also propose made-in-Europe solutions that would exclude non-EU service providers from supporting the EU’s efforts on keeping critical communications and data assets secure. The EU is finally looking to support the emergence of a public European DNS resolver service, and the introduction of a possible duty of care for IoT hardware manufacturers and service providers that risk departing from globally accepted norms. 

On the Network and Information Security Directive proposal the following can be attributed to Alexandre Roure, CCIA Public Policy Senior Manager:

“It is positive that the proposal seeks to harmonise national rules and encourage information sharing for companies to better manage security risks across Europe. However, we hope the final rules will better support companies’ cybersecurity preparedness while avoiding unnecessary compliance burdens.”

News

Commission’s First DMA Evaluation Presents Unbalanced Picture, Overlooking Negative Impacts on Consumers and Innovation

Brussels, BELGIUM – The European Commission’s first statutory evaluation of the Digital Markets Act (DMA), published today, presents an unbalanced picture of enforcement to date.  The Comp...
reading-tablet
  • Press Releases
    Competition
News

CCIA Urges Court to Affirm Fair Use Protections for Generative AI Training

Washington — The Computer & Communications Industry Association today filed an amicus brief urging the Northern District of California court to confirm that training generative artificial intell...
reading-tablet
  • Press Releases
    Artificial Intelligence
News

CCIA Urges U.S. Action on Australia’s Discriminatory News Tax Proposal

Washington – On April 27, the Australian government released draft legislation for comment to establish a “News Media Bargaining Incentive.” Under the proposal, a narrow set of predominantly for...
reading-tablet
  • Press Releases
    Link Taxes
News

CCIA Raises Concerns as Florida Senate Takes Up AI Bill of Rights During Special Session

Washington – The Computer & Communications Industry Association today raised concerns as Florida lawmakers prepare to revisit the proposed Artificial Intelligence Bill of Rights during the state...
reading-tablet
  • Press Releases
  • Artificial Intelligence