Cloud Computing Law: Data Protection and Cybersecurity

所在平台: Coursera

课程主页: https://www.coursera.org/learn/cloud-computing-law-data-protection-and-cybersecurity

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称: 云计算法律:数据保护与网络安全 课程概述: 在云环境中,巨量的个人信息被处理。但是,谁在法律上对这些“个人数据”负责呢?像亚马逊、微软和谷歌这样的云服务提供商有哪些义务?作为个人,您在数据保护法下可以行使哪些权利?如果您想了解这些问题,那么这门课程非常适合您! 本课程首先将探讨欧盟的《通用数据保护条例》(GDPR)如何规范云服务中的个人数据处理。 课程大纲: 1. 保护云中的个人数据 - 本周您将学习数据保护法如何规范云服务中的个人数据处理。重点关注云服务提供商及其作为“处理者”和“控制者”的客户在GDPR下的规则。探讨必须遵守的原则、合法处理个人数据的依据,以及个人如何行使其权利,以及云服务提供商未能遵守义务可能面临的后果。课程结束时,您将能够识别受监管的个人数据,并分析云服务提供商及其客户必须采取哪些措施以确保符合GDPR。 2. 国际数据转移与云服务 - 本周您将学习GDPR如何适用于云计算中的国际数据转移。首先,我们将考察GDPR在云计算中的广泛地域适用性。然后将探讨GDPR如何限制云数据的国际转移;可能依赖的合法机制来证明受监管转移,以及可能的转移限制例外情况。课程结束时,您将能够解释GDPR的国际适用性及其数据转移规则如何应用于云服务提供商及其客户。 3. 网络安全、云与关键基础设施 - 本周,您将学习根据《网络与信息安全指令》(NIS指令)对云服务作为关键基础设施的监管。首先,我们将审查哪些云服务需要遵守该指令。然后,回顾保持云服务安全和向监管机构报告安全事件的义务。课程结束时,您将能够描述云服务提供商如何符合NIS指令的要求,以及违反规则可能面临的处罚。

课程大纲

Name:Protecting Personal Data in the Cloud

Description:This week, you'll learn how data protection laws regulate the processing of personal data in cloud services. We will focus, in particular, on the rules applying to cloud service providers and their customers as 'processors' and 'controllers' under the EU's General Data Protection Regulation (GDPR). We will explore the principles that must be followed and consider the legal grounds for processing personal data in the cloud, as well as how individuals might exercise their rights and the potential consequences for cloud providers of failing to comply with their obligations. By the end of this week, you'll be able to identify what is regulated as personal data and analyse what cloud providers and their customers must do to ensure compliance with the GDPR.

Name:International Data Transfers and Cloud Services

Description:This week, you'll learn how the GDPR applies to international transfers of data in cloud computing. First, we will examine the broad territorial scope of the GDPR in the context of cloud computing. Then we will explore how GDPR may restrict international transfers of cloud data; the legal mechanisms that may be relied on to justify regulated transfers; and possible exceptions to the transfer restriction. By the end of this week, you'll be able to explain the international reach of GDPR and how its data transfer rules apply to cloud providers and their customers.

Name:Cybersecurity, Cloud, and Critical Infrastructure

Description:This week, you'll learn about the regulation of cloud services as critical infrastructure under the Network and Information Security ('NIS') Directive. First, we'll look which cloud services need to comply with this Directive. Then, we'll review the obligations to keep cloud services secure and to report security incidents to a regulator. By the end of this week, you'll be able to describe how a cloud provider can comply with the NIS Directive, as well as the possible penalties for breaking the rules.

课程评论(0条)

课程详情

Vast amounts of personal information are processed in the cloud. But who is legally responsible for such ‘personal data’ in cloud environments? What duties do cloud providers like Amazon, Microsoft, and Google have? And what rights can you, as an individual, exercise under data protection law? If you’d like to find out, then this course is for you! First, we’ll look at how the European Union’s ‘General Data Protection Regulation’ (‘GDPR’) regulates the processing of personal data in cloud serv

课程标签

0人关注该课程

主题相关的课程