Defining Critical Information Infrastructure in the Context of Cyber Threats: The Privacy Perspective
Tikk Eneken · NATO science for peace and security series. Sub-series E, Human and societal dynamics · 2009
While the two organisations, the EU and NATO, share interest in the field of Critical Infrastructure Information (“CII”) protection, and while the interests of these organisations have developed significant overlaps, personal data protection in the EU legal framework may become a factor that could hinder the creation of effective cyber defence, unless timely and duly attended to by the interested nations and entities. This article will provide insight into personal data protection issues that relate to the exchange of information concerning cyber incidents and, based on considerations pertinent to national approaches, it will provide guidance on how to minimise the related legal risks that come with cyber incident management.