Skip to main content

Nixon Peabody LLP

  • People
  • Capabilities
  • Insights
  • About
Trending Topics
    • People
    • Capabilities
    • Insights
    • About
    • Locations
    • Events
    • Careers
    • Alumni
    Practices

    View All

    • Affordable Housing
    • Community Development Finance
    • Corporate & Finance
    • Cybersecurity & Privacy
    • Entertainment & Media
    • Environmental
    • Franchising & Distribution
    • Government Investigations & White Collar Defense
    • Healthcare
    • Intellectual Property
    • International Services
    • Labor, Employment, and Benefits
    • Litigation
    • Private Wealth & Advisory
    • Project Finance
    • Public Finance
    • Real Estate
    • Regulatory & Government Relations
    Industries

    View All

    • Aviation
    • Cannabis
    • Consumer
    • Energy
    • Financial Services
    • Healthcare
    • Higher Education
    • Infrastructure
    • Manufacturing
    • Nonprofit Organizations
    • Real Estate
    • Sports & Stadiums
    • Technology
    Value-Added Services

    View All

    • Alternative Fee Arrangements

      Developing innovative pricing structures and alternative fee agreement models that deliver additional value for our clients.

    • Continuing Education

      Advancing professional knowledge and offering credits for attorneys, staff and other professionals.

    • Crisis Advisory

      Helping clients respond correctly when a crisis occurs.

    • DEI Strategic Services

      Providing our clients with legal, strategic, and practical advice to make transformational changes in their organizations.

    • eDiscovery

      Leveraging law and technology to deliver sound solutions.

    • Environmental, Social, and Governance (ESG)

      We help clients create positive return on investments in people, products, and the planet.

    • Global Services

      Delivering seamless service through partnerships across the globe.

    • Innovation

      Leveraging leading-edge technology to guide change and create seamless, collaborative experiences for clients and attorneys.

    • IPED

      Industry-leading conferences focused on affordable housing, tax credits, and more.

    • Legal Project Management

      Providing actionable information to support strategic decision-making.

    • Legally Green

      Teaming with clients to advance sustainable projects, mitigate the effects of climate change, and protect our planet.

    • Nixon Peabody Trust Company

      Offering a range of investment management and fiduciary services.

    • NP Capital Connector

      Bringing together companies and investors for tomorrow’s new deals.

    • NP Second Opinion

      Offering fresh insights on cases that are delayed, over budget, or off-target from the desired resolution.

    • NP Trial

      Courtroom-ready lawyers who can resolve disputes early on clients’ terms or prevail at trial before a judge or jury.

    • Social Impact

      Creating positive impact in our communities through increasing equity, access, and opportunity.

    • Women in Dealmaking

      We provide strategic counsel on complex corporate transactions and unite dynamic women in the dealmaking arena.

    1. Home
    2. Insights
    3. Videos
    4. Cybersecurity in the EU beyond the GDPR

      Videos

    Cybersecurity in the EU beyond the GDPR

    Dec 29, 2023

    LinkedInX (Twitter)EmailCopy URL

    By Jason Kravitz and Jenny Holmes

    Stefano Mele shares insight on EU cybersecurity regulations beyond GDPR, including Italian cybersecurity laws. 

    Stefano Mele is a partner at Gianni & Origoni, a law firm in Rome, Italy, and is the Chair of the firm’s Cybersecurity and Space Law practice. Stefano joins us on A Little Privacy, Please!® to discuss cybersecurity in the EU beyond the GDPR.

    Watch the full episode of A Little Privacy, Please!

    Those of us in the US who practice in the privacy and cybersecurity space are familiar with the GDPR. What other European cybersecurity regulations should American companies be aware of?

    There is an impressive number of European Union regulations about cybersecurity.

    NIS Directive One in 2018 was the first European Union cybersecurity regulation. NIS2 Directive entered into force on January 17, 2023, and is a key evolution of NIS Directive One, broadening its scope and trying to align provisions throughout European Union member states. NIS2 has strengthened the security requirements of the supply chain, reporting obligations about cyber incidents, and introduced stronger supervisory measures and stricter enforcement requirements, including consistent sanctions around the European Union.

    We also have the Digital Operational Resilience Act (DORA) regulation for financial institutions and operators. DORA entered into force on January 17, 2023, and imposes rules for the protection, detection, containment, recovery, and repair capabilities against Information and Communication Technologies (ICT)-related incidents. DORA explicitly refers to ICT risk and sets rules on ICT risk management, incident reporting, operational resilience testing, and ICT third-party risk monitoring.

    We also have the EU Cyber Resilience Act and EU Cyber Security Act. The Cyber Security Act creates a certification framework for products and services sold within European Union boundaries. The Cyber Resilience Act, which is still a proposal within the European Union Legislature, will likely introduce security requirements for software and hardware producers.

    What are some privacy or cybersecurity laws for Italian businesses or businesses doing business in Italy?

    The Italian National Cyber Security Perimeter Regulation (Perimeter Law) can affect US hardware and software manufacturers. That is because companies and public administrations within the National Cyber Security Perimeter must abide by specific security requirements, including the local hosting of ICT assets essential to perform functions and services relevant to Italian national security.

    The Perimeter Law is focused on Italian national security, whereas NIS2 is focused on the resilience of the supply chain and essential services for European Union citizens.

    Public entities and companies in the EU can no longer select a vendor solely based on the most economical choice or cutting-edge technology. They must now check security levels and warranties the vendor can provide. That is why it is important, in my opinion, for United States companies to understand the security requirements of Italian Cyber Security Perimeter laws.

    Tell us more about the launch of the Gianni & Origoni space law economics practice.

    Some of the ways we are approaching space economy law are:

    • Space-to-space, space-to-Earth, and Earth-to-space cyberattacks
    • Insurance policies for space risk
    • Litigation related to launch debris
    • The extraction of raw materials and rare leads from other planets
    A Little Privacy, Please!

    Practices

    Cybersecurity & Privacy

    Insights And Happenings

    • Video

      Cybersecurity risk and public finance credit ratings

      Cybersecurity & Privacy
      April 22, 2024
    • Video

      What’s driving the increase in CIPA class action litigation?

      Cybersecurity & Privacy
      March 20, 2024
    • Alert

      California AG delivers DoorDash a broad interpretation of the CCPA

      March 6, 2024
    The foregoing has been prepared for the general information of clients and friends of the firm. It is not meant to provide legal advice with respect to any specific matter and should not be acted upon without professional counsel. If you have any questions or require any further information regarding these or other related matters, please contact your regular Nixon Peabody LLP representative. This material may be considered advertising under certain rules of professional conduct.

    Subscribe to stay informed of the latest legal news, alerts, and business trends.Subscribe

    • People
    • Capabilities
    • Insights
    • About
    • Locations
    • Events
    • Careers
    • Alumni
    • Cookie Preferences
    • Privacy Policy
    • Terms of Use
    • Accessibility Statement
    • Statement of Client Rights
    • Purchase Order Terms & Conditions
    • Nixon Peabody International LLC
    • PAL
    © 2025 Nixon Peabody. All rights reserved