home.social

#eucs — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #eucs, aggregated by home.social.

  1. Wie geht es weiter bei #Cloud #Cybersecurity?

    Wo die EU in 5 Jahren nicht in der Lage war, sich auf ein einheitliches Zertifizierungsschema für Cloud (#EUCS) zu einigen, kann man davon ausgehen, dass zumindest der neue C5 die Themen Datensicherheit und Cloud #Souveränität stärker adressiert als bislang - dies betrifft u.a. die Aspekte der Lieferkettensicherheit, (Post Quanten)-#Kryptografie, Confidential Computing sowie die örtlichen Belegenheit von verarbeiteten Daten:

    background.tagesspiegel.de/it-

  2. CNIL: Actuellement, le projet #EUCS ne permet plus aux fournisseurs de démontrer qu’ils protègent les données stockées contre tout accès par une puissance étrangère contrairement à #SecNumCloud. La CNIL appelle à rehausser le niveau de protection 👉 lnkd.in/eTTV6xrv

  3. Actuellement, le projet #EUCS ne permet plus aux fournisseurs de démontrer qu’ils protègent les données stockées contre tout accès par une puissance étrangère contrairement à #SecNumCloud. La CNIL appelle à rehausser le niveau de protection 👉 cnil.fr/fr/cloud-les-risques-d

  4. How should #Europe protect its digital ☁️ infrastructure from third-country actors?

    The EU's cloud certification scheme #EUCS aims to set criteria for certifying cloud providers over their security attributes.

    Is there such thing as too sovereign?

    euractiv.com/section/data-priv

  5. Zuerst #Hardliner, nun #Warmduscher? #EUCS

    Seit drei Jahren nun schon verhandelt man über ein europäisches #Cloud Cybersecurity Certification Scheme - und schon 2022 hatte ich der EU-Kommission in einem Gutachten geschrieben, dass die im Entwurf skizzierten Cloud-Souveränitätsanforderungen nicht in der Lage sind, nachhaltig Technologiesouveränität herzustellen. Nun fliegen sie offensichtlich raus.

    background.tagesspiegel.de/dig

  6. RT @BertuzLuca
    The Commission chose US hyperscaler Oracle as the cloud provider for EU institutions for the next 6 years. I wonder what
    @ThierryBreton & the strategic autonomy advocates think about this. Would Oracle meet the sovereignty requirements in #EUCS?

    oracle.com/emea/news/announcem

  7. Talked #compliance, the #EUCS and #OPA at #Google in #Stockholm this evening. A surprising amount of people attending actually gave a fuck.

  8. It's hot outside, but you know what's even hotter? The #CloudNative meetup taking place at the Google office in #Stockholm this evening. I'll be talking about how to translate "real" policy, like the upcoming #EUCS framework into #PolicyAsCode using #OpenPolicyAgent and #Rego. Also, my buddy Abdel to present on ambient service mesh and #Istio. Good times!

    community.cncf.io/events/detai

    #CloudNativeNordics #CNCF #DevOps #DevSecOps #Code

  9. Die EU COM hat mich beauftragt zu prüfen, welche Anforderungen in das EUCS eingeführt werden sollen. Das Gutachten wird in der heutigen Ausgabe vom Tagesspiegel zitiert. -> Das EUCS hat in der aktuellen Fassung inhaltlich noch einen langen Weg vor sich.

    background.tagesspiegel.de/cyb

    #eucs #csa #cybersecurity #politik #kommission #enisa #bmi

  10. My #KubeCon talk from Amsterdam a few weeks ago is now up on YouTube! The #EUCS — a compliance certification scheme for service providers in the cloud — is on its way, and will have a big impact on how organizations work with #security, #compliance and #automation. A holistic framework like the EUCS provides #policy controls applicable to the whole stack. How would we codify and enforce such rules?

    #OPA #PolicyAsCode #Rego #OSCAL @enisa_eu

    youtube.com/watch?v=XoWf4QcSbD

  11. 15:25 today at #KubeCon, I’ll talk about the upcoming #EUCS scheme for cloud service providers, and how #OpenPolicyAgent and other #CloudNative technologies can help solve #compliance and certification challenges across organizations. Join in, it’ll be fun!

    kccnceu2023.sched.com/event/1H

  12. Studying the #EUCS framework pending my upcoming talk on the topic at #KubeCon in two weeks. Some of the rules around #identity and #IAM seem rather dubious to me. Like the requirement to automatically block users after certain period of inactivity (2 months), or X number of failed authentication attempts, with "approval from authorised personnel" required to unlock them. What could possibly go wrong..

  13. Nice introduction
    ---
    RT @enisa_eu
    ✅Want to know more about EU Cybersecurity Certification?

    #ENISA has launched a mini-site to promote and disseminate information related to #cybersecurity #certification and the schemes in progress.

    Check it out 🌐europa.eu/!dBYHDD
    #EUCC #EUCS #EU5G
    twitter.com/enisa_eu/status/16

  14. ✅Want to know more about EU Cybersecurity Certification?

    #ENISA has launched a mini-site to promote and disseminate information related to #cybersecurity #certification and the schemes in progress.

    Check it out 🌐europa.eu/!dBYHDD
    #EUCC #EUCS #EU5G

    🐦🔗: n.respublicae.eu/enisa_eu/stat

  15. Looks like #KubeCon EU will be a real #OpenPolicyAgent event this year! 😍 Maintainer track with @charlieegan3, Conftest talk by @NYTimes devs, #OPA for #EUCS compliance with me and Robert Ficcaglia, a contribfest session, *and* OPA and #Styra booths! And as a cherry on top, @Peteroneilljr doing a lightning talk on how to level up in the #CNCF RPG.

    Can't wait 🚀

    #KubeConEU #CloudNative #OpenSource

  16. Joint industry communication on the #EUCS :
    ---
    RT @CCIAeurope
    Press release 📑 Cybersecurity: EU #Cloud Requirements Risk Excluding International Suppliers, Global Businesses Warn

    🗨️ "The #EUCS proposed by ENISA would severely restrict competition and customer choice, but also undermine #cybersecurity."

    👇 #TTC
    ccianet.org/2022/12/cybersecur
    twitter.com/CCIAeurope/status/