Regulation & Standards Flashcards
(3 cards)
Regulations v/s Standards
Regulations are mandatory, while
Standards are voluntary.
Limitations of Regulations
The growing number of enforced physical and cyber regulations but,
National cybersecurity strategies may or may not be in place.
Sector-specific cybersecurity plans may or may not exist.
Public-private partnership depends on the country and sector.
General agreement that no country or government can address cybersecurity in isolation.
Standards
Compliance and Conformance are voluntary.
Consensus collaborative approach is driven.
No one is required to use them unless contractual agreements make compliance with the standard mandatory, with a penalty for non-compliance or the country-specific regulation demands it.
Standard Contains Normative and Informative elements.
Normative = Shall/Must to comply.
Informative = should/may. Provides additional information or clarification