Panel Discussion: EUCC Scheme
Gain a comprehensive understanding of what this new regulatory framework entails and how all stakeholders can effectively navigate the transition and future operations under the EUCC Scheme.
Save your Spot
The European Union Common Criteria (EUCC) Implementing Act was officially published in the EU's Official Journal on February 27th, 2024. This milestone marks a significant step forward in enhancing the cybersecurity landscape across the EU. However, with its adoption comes a period of preparation, transition, and numerous questions that must be addressed by the EU.
Our expert panelists will shed light on the responsibilities of all parties involved and explore the challenges and opportunities that lie ahead. Key topics will include the preparation process for vendors aiming to comply with the EUCC, the vital role that Conformity Assessment Bodies (CABs) play in supporting manufacturers, and the essential collaboration between CABs and the national authorities of the Member States. We aim to provide a comprehensive understanding of what this new regulatory framework entails and how all stakeholders can effectively navigate the transition and future operations under the EUCC scheme.
Date: Wednesday, 09 October 2024
Time: 11:00am – 12:00pm (CET)
Location: Online
Moderator
José Emilio Rico
Cybersecurity Strategy Leader in DEKRA
Master in computer science, CISA, he has worked in areas related to the information system development, safety software certification in the scope of aerospace technologies, IT system and product security evaluation under ITSEC and CC standards and FIPS 140-2 conformance testing of cryptographic modules. With more than 20 years of experience in the field, he started working in the security evaluation field in a Spanish government laboratory, and from 2007 to 2017 he was the technical manager of Epoche and Espri, an IT evaluation facility that provides evaluation services mostly under the Common Criteria, FIPS 140-2 and ISO/IEC 19790 standards. In October 2017, Epoche and Espri was acquired by DEKRA Testing and Certification, being now Jose Emilio, the Cybersecurity Global Leader for Cybersecurity Strategy in DEKRA.
Speakers
Petra Manche
Common Criteria Manager in CISCO
She brings 19 years of Common Criteria experience working both in a CC Laboratory and for vendors performing certification. She joined Cisco’s Global Certifications team in 2018 as a Compliance Engineer responsible for Common Criteria evaluations of many Cisco products. In 2020 Petra was elected chair of the Common Criteria Users Forum (CCUF) Management Group. She has been on the Management Group since 2012. The CCUF, provides a voice and communications channel amongst the Common Criteria community including the vendors, consultants, testing laboratories, Common Criteria organizational committees, national schemes, policy makers, and other interested parties.
Elżbieta Andrukiewicz
Head of Cybersecurity Department & ITSEF Manager in IŁ-PIB
Dr. Elżbieta Andrukiewicz is an expert on information security management systems. Her main areas of interest are methods for information and ICT security assessments and evaluations, information security management system development and implementation, methods, development and integration of the risk management systems in organizations, information and ICT security audits. She is a standardization expert of the ISO/IEC JTC1 Subcommittee SC27 „Information techniques – IT Security Techniques”, and editor of several International Standards for information and ICT security. Working recently for ENISA and the European Commission.
Rasma Araby
Managing Director in Atsec
Rasma Araby is Managing Director at Atsec information security AB. She has more than 16 years of experience related to security certification and security requirement specification addressing national and international security objectives. Throughout her career, she has been involved in numerous Common Criteria certification projects involving various types of IT-products, e.g. operating systems, firewalls, network devices, smartphones and data diodes. She is actively participating in the 5G assessment schemes and initiatives. As the Lead Auditor, she has been involved in performing Vendor Development and Product Life-cycle Process Audits in the NESAS scheme, jointly defined by global standards organisations 3GPP and GSMA. She is a member of the NESAS Oversight Board, GSMA NESAS Working Group and ENISA’s Working Group on the 5G Cybersecurity Certification (EU5G).
Xenia Kyriakidou
Head of National Cybersecurity Certification Authority in DSA
Xenia Kyriakidou is the Head of the National Cybersecurity Certification Authority (NCCA) in Cyprus, and she represents the authority in European Groups for EU Cybersecurity Certification matters. Her role involves overseeing the establishment of the NCCA, developing its procedures and processes, and adopting EU cybersecurity certification schemes. Previously, she worked as a technology consultant, providing strategic advice on cloud services and digital transformation. She also served as a Business Office Manager at an International Inspection and Certification Body, gaining extensive experience in the certification field.