Introduction to Cyber Security Law and Policy

Module Code

LA7135

ECTS weighting

10

Semester/term taught

1

Lecturer

Dr Maria Grazia Porcedda

Cybersecurity has evolved from a specialised technological concern addressed within computer science, engineering and information security circles, to an exciting novel field of law that is being shaped as you read this blurb. This is no surprise: network and information technologies have taken centre stage in economic growth, the fight against crime, defence and diplomacy. Cybersecurity is now regarded as essential for discharging the duties of the state and the endeavours of economic and civil society actors.

In this highly technical, hands-on module, we will critically engage with what cybersecurity means legally, how and why the law has morphed into its current shape, as well as who is responsible to deliver cybersecurity. In the first half of the module we will analyse whether the existing international solutions to cybersecurity can meet the challenge of protecting infrastructure and society. In the second half of the module we will shift our attention to the EU, learn about its cybersecurity policy and focus on flagship instruments, such as the Network and Information Systems Directive 2, the Cybersecurity Act (with its proposed amendment) and the Cyber Resilience Act.

The classes will feature a combination of lectures, invited lectures, seminar-style debates and group presentations, allowing for the in-depth analysis of the legal frameworks and the discussion of case studies, case law and policy documents. Participants will cover a broad range of legal instruments that have a bearing on cybersecurity, including soft law. Students will gain the necessary knowledge to appraise the effectiveness of such instruments, their interaction and the affordances of cybersecurity law. The module further aims to enable students to identify policy trends in cybersecurity as they unfold and analyse current legal developments.

Priority will be given to students registered for the LL.M Intellectual Property and Information Technology Law degree programme.

Learning Outcomes:

On successful completion of this module, students should be able to:

  • Understand the different meanings of cybersecurity and other key terms and how these affect the interpretation of cybersecurity law and policy
  • Apply relevant national, regional and international sources of primary, secondary and soft law to a given case
  • Analyse the impact of technological, economic and political developments on cybersecurity law and policy
  • Evaluate the tensions between areas of cybersecurity policy and the effectiveness of applicable laws
  • Critically engage with cybersecurity scholarship by leading authors.

Assessment:

  • 60%: In-class exam (coursework)
  • 35%: Group assignment (coursework)
  • 5%: Participation

Back to LL.M module table