Cybersecurity Law and Management

4 ECTS / 24h / English
This course provides a comprehensive overview of the fundamental pillars of information security, including confidentiality, integrity, and availability. Students will explore the definition of cybersecurity and understand key guidelines such as ISO/IEC standards.
The course will also cover important EU laws, including Regulation (EU) 2019/881, Directive (EU) 2022/2555, and Regulation (EU) 2024/2847.
Participants will learn how to set up effective cybersecurity policies in a business context, ensuring robust protection against cyber threats. Through case studies and practical exercises, students will gain the skills needed to navigate the complex legal landscape of cybersecurity and effectively manage cybersecurity initiatives within organizations.

The course’s objective is:
  • to acquire knowledge of the fundamental pillars of information security, including confidentiality, integrity, and availability. 
     
  • to understand the definition of cybersecurity and critically analyze key guidelines such as ISO/IEC standards. 
     
  • to engage with the complexities of EU laws and discuss strategies for effective management and enforcement of cybersecurity policies in a business context. 

This will be achieved through two missions:
 
  • Mission 1 (week 1 & 2): Design a cybersecurity strategy for the largest company working in the health sector in an EU Member-State
     
  • Mission 2 (week 3): Manage a cybersecurity incident

Faculty

Professor
Assistant Professor at the Porto Law School of Universidade Católica Portuguesa. Ph.D. in Criminal Law from the University of Minho.