An Ontological Approach to Compliance Verification of the NIS 2 Directive

Fuente: arXiv
Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: Castiglione, Gianpietro, Santamaria, Daniele Francesco, Bella, Giampaolo
Format: Preprint
Veröffentlicht: 2023
Schlagworte:
Online-Zugang:
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
_version_ 1866912117110603776
author Castiglione, Gianpietro
Santamaria, Daniele Francesco
Bella, Giampaolo
author_facet Castiglione, Gianpietro
Santamaria, Daniele Francesco
Bella, Giampaolo
contents Cybersecurity, which notoriously concerns both human and technological aspects, is becoming more and more regulated by a number of textual documents spanning several pages, such as the European GDPR Regulation and the NIS Directive. This paper introduces an approach that leverages techniques of semantic representation and reasoning, hence an ontological approach, towards the compliance check with the security measures that textual documents prescribe. We choose the ontology instrument to achieve two fundamental objectives: domain modelling and resource interrogation. The formalisation of entities and relations from the directive, and the consequent improved structuring with respect to sheer prose is dramatically helpful for any organisation through the hard task of compliance verification. The semantic approach is demonstrated with two articles of the new European NIS 2 directive.
format Preprint
id arxiv_https___arxiv_org_abs_2306_17494
institution arXiv
publishDate 2023
record_format arxiv
spellingShingle An Ontological Approach to Compliance Verification of the NIS 2 Directive
Castiglione, Gianpietro
Santamaria, Daniele Francesco
Bella, Giampaolo
Cryptography and Security
Cybersecurity, which notoriously concerns both human and technological aspects, is becoming more and more regulated by a number of textual documents spanning several pages, such as the European GDPR Regulation and the NIS Directive. This paper introduces an approach that leverages techniques of semantic representation and reasoning, hence an ontological approach, towards the compliance check with the security measures that textual documents prescribe. We choose the ontology instrument to achieve two fundamental objectives: domain modelling and resource interrogation. The formalisation of entities and relations from the directive, and the consequent improved structuring with respect to sheer prose is dramatically helpful for any organisation through the hard task of compliance verification. The semantic approach is demonstrated with two articles of the new European NIS 2 directive.
title An Ontological Approach to Compliance Verification of the NIS 2 Directive
topic Cryptography and Security
url https://arxiv.org/abs/2306.17494