CLOUD COMPUTING LAW

Salvatore SICA CLOUD COMPUTING LAW

0522700003
COMPUTER SCIENCE
EQF7
CYBERSECURITY AND CLOUD TECHNOLOGIES
2024/2025

OBBLIGATORIO
YEAR OF COURSE 1
YEAR OF DIDACTIC SYSTEM 2023
AUTUMN SEMESTER
CFUHOURSACTIVITY
648LESSONS
ExamDate
APPELLO PROF. SICA15/01/2025 - 11:00
APPELLO PROF. SICA15/01/2025 - 11:00
Objectives
GENERAL GOAL
THE COURSE AIMS TO INTRODUCE NON-LEGAL STUDENTS TO A CORRECT UNDERSTANDING OF THE MAIN LEGAL ISSUES RELATED TO NEW TECHNOLOGIES AND IN PARTICULAR TO CLOUD TECHNOLOGIES, PROVIDING KNOWLEDGE CONCERNING DIRECTIVES, REGULATIONS AND STANDARDS RELATING TO THE SECURE AND CONFIDENTIAL TREATMENT OF COMPUTER DATA AND OF PERSONAL DATA AND KNOWLEDGE OF THE MAIN CYBER-CRIMES.

KNOWLEDGE AND UNDERSTANDING (DUBLIN DESCRIPTOR 1)
UPON SUCCESSFUL COMPLETION OF THE COURSE, THE STUDENT WILL HAVE KNOWLEDGE AND UNDERSTANDING OF:
- LEGAL ASPECTS (DIRECTIVES, REGULATIONS AND STANDARDS) RELATING TO THE SAFE AND CONFIDENTIAL TREATMENT, CONSERVATION AND TRANSMISSION OF COMPUTER DATA, WITH PARTICULAR REFERENCE TO SENSITIVE DATA (E.G. BIO-MEDICAL), AS WELL AS THE MAIN COMPUTER CRIMES
- EUROPEAN CYBERSECURITY CERTIFICATION AND COMPLIANCE FRAMEWORK, HOW THE GDPR AND THE NIS DIRECTIVE APPLY TO CLOUD SERVICES AND WHAT CLOUD SERVICE PROVIDERS AND THEIR CUSTOMERS SHOULD DO TO COMPLY
- INTELLECTUAL PROPERTY RIGHTS IN THE IT FIELD
- KEY CHARACTERISTICS OF CONTRACTS BETWEEN CLOUD SERVICE PROVIDERS AND THEIR CUSTOMERS (SERVICE LEVEL AGREEMENTS) WITH PARTICULAR REGARD TO PERFORMANCE AND SECURITY ASPECTS
- PROTECTION OF TRADE SECRETS AND COPYRIGHTED WORKS STORED IN THE CLOUD
- ETHICAL ASPECTS RELATING TO THE ACQUISITION, STORAGE, ANALYSIS, PRODUCTION AND TRANSMISSION OF DATA, WITH PARTICULAR REFERENCE TO BIOMETRIC AND AI TECHNIQUES

ABILITY TO APPLY KNOWLEDGE AND UNDERSTANDING (DUBLIN DESCRIPTOR 2)
AFTER SUCCESSFULLY COMPLETING THE COURSE, THE STUDENT WILL BE ABLE TO:
• PROCESS THE DATA IN ACCORDANCE WITH CURRENT LEGISLATION ON THE SUBJECT, IDENTIFY DATA CONTROLLERS AND PROCESSORS, DESCRIBE THEIR ROLES AND RESPONSIBILITIES
• IDENTIFY THE SCOPE OF APPLICABILITY OF DIRECTIVES, REGULATIONS AND LEGISLATION WITH RESPECT TO THE SCENARIOS OF INTEREST, HOW THE GDPR CAN BE APPLIED TO CLOUD SERVICE PROVIDERS AND THEIR CUSTOMERS ANYWHERE IN THE WORLD, AND HOW RESTRICTIONS ON INTERNATIONAL TRANSFERS APPLY TO SERVICES CLOUD
• IDENTIFY THE DUTIES OF CLOUD SERVICE PROVIDERS (NOTIFY SECURITY BREACHES AND KEEP THEIR SERVICES SECURE) AND APPLY THESE DUTIES TO CASE STUDIES
• SUPPORT, IN COMPLIANCE WITH CURRENT LEGISLATION, AN IT INVESTIGATION OR A DEFENSIVE INVESTIGATION IN THE FIELD OF IT CRIMES AND COMMON CRIMES WHOSE EVIDENCE CONSISTS OF DIGITAL DATA OR DATA CONVEYED BY IT SYSTEMS
• IDENTIFY SAFETY AND PERFORMANCE REQUIREMENTS FOR THE DEFINITION/CONTRACTING OF SERVICE LEVEL AGREEMENTS


MAKING JUDGMENTS (DESCRIPTOR 3 DUBLIN)
AFTER SUCCESSFULLY COMPLETING THE COURSE, THE STUDENT WILL BE ABLE TO:
DEVELOP AUTONOMOUS AND INDEPENDENT REASONING AND REFLECTIONS TAKING INTO ACCOUNT REGULATORY REFERENCES, STANDARDS
AND ETHICAL CONSIDERATIONS

COMMUNICATION SKILLS (DESCRIPTOR 4 DUBLIN)
AFTER SUCCESSFULLY COMPLETING THE COURSE, THE STUDENT WILL BE ABLE TO:
COMMUNICATE CLEARLY AND EFFECTIVELY, IN WRITTEN AND ORAL FORM, TO CONVEY KNOWLEDGE, IDEAS, PROBLEMS, SOLUTIONS AND THE UNDERLYING RATIONALE, ADAPTING THE METHODS OF EXPRESSION TO THE CULTURAL AND PROFESSIONAL CHARACTERISTICS OF THE RECIPIENTS OF THE COMMUNICATION

LEARNING SKILLS (DESCRIPTOR 5 DUBLIN)
AFTER SUCCESSFULLY COMPLETING THE COURSE, THE STUDENT WILL BE ABLE TO:
AUTONOMOUSLY DEEPEN THEIR TRAINING AND KEEP THEIR SKILLS UP TO DATE AT THE STATE OF THE ART.
Prerequisites
NOTHING
Contents
- THE EU FRAMEWORK ON PERSONAL DATA PROCESSING AND SECURITY (12 HOURS);
- THE PROCESSING OF PARTICULAR CATEGORIES OF PERSONAL DATA (4 HOURS);
- CYBERCRIMES, LAW AND LIABILITIES (6 HOURS);
- THE EU FRAMEWORK FOR IT SECURITY CERTIFICATION AND COMPLIANCE (4 HOURS);
- IT AND IP RIGHTS;
- CONTRACTS BETWEEN CLOUD SERVICE PROVIDERS AND THEIR USERS (SERVICE LEVEL AGREEMENT) (6 HOURS);
- TRADE SECRETS AND COPYRIGHT ENFORCEMENT IN THE CLOUD (6 HOURS);
- ETHICAL ASPECTS OF THE ACQUISITION, STORAGE, ANALYSIS, PROCESSING AND TRANSMISSION OF DATA, WITH PARTICULAR REFERENCE TO BIOMETRIC AND AI (4 HOURS).
Teaching Methods
THE TEACHING IS MADE UP OF 48 HOURS DIVIDED INTO: LECTURES ABOUT ALL COURSE TOPICS; DISCUSSION OF CASE LAW; SEMINARS HELD ALSO BY LECTURERS FROM FOREIGN UNIVERSITIES AND PRACTITIONERS.
Verification of learning
FINAL ORAL EXAM WITH A MAX-RATING OF THIRTY. GREAT ATTENTION ON ACTIVE STUDENT'S PARTECIPATION.

STANDARDS OF JUDGEMENT ARE:
1. ABILITY OF AN ORGANIC AND CONSISTENT SPEECH, UNDERSTANDING FOR EVERY TYPE OF RECIPIENT, WITH TECHNICAL LANGUAGE AND CLARITY OF IDEAS;
2. ABILITY OF SYSTEMATIC FRAMEWORK, SELECTION OF PROBLEMS AND ARGUMENTATION;
3. MATURITY OF CRITICAL PROCESSING, LEGAL THEORIES AND JUDICIAL TRENDS IN CASES LAW.
THE MAXIMUM EVALUATION OF 30/30 IS AWARDED WHEN THE STUDENT ARGUES A COMPLETE AND IN-DEPTH KNOWLEDGE OF THE THEORETICAL CONTENTS, AS WELL AS AN ABILITY TO LINK THE LEGISLATIVE REFERENCES TO THE STUDY CONTEXT. PRAISE IS GIVEN WHEN THE STUDENT SHOWS A SIGNIFICANT MASTERY OF THE THEORETICAL AND OPERATIONAL CONTENT, PRESENTING THE TOPICS WITH CONSIDERABLE OWNERSHIP OF LANGUAGE AND AUTONOMOUS PROCESSING SKILLS, EVEN IN CONTEXTS DIFFERENT FROM THOSE PROPOSED BY THE PROFESSOR.
Texts
S. SICA - V. D'ANTONIO - G.M. RICCIO, LA NUOVA DISCIPLINA EUROPEA DELLA PRIVACY, CEDAM, PADOVA, 2016 (CAP. I; II, III, IV, V, VII; XII).

ADDITIONAL EDUCATIONAL MATERIAL WILL BE PROVIDED BY THE TEACHERS.

More Information
THE TEACHING LANGUAGE IS THE ITALIAN TONGUE.
Lessons Timetable

  BETA VERSION Data source ESSE3 [Ultima Sincronizzazione: 2024-11-29]