Podcast · YouTube

Cybersecurity at the European Commission with Lorena Boix

On the channel we’ve looked at cybersecurity jobs in companies, at INCIBE and in the security forces, but Spain is part of something bigger, and from the European Union a lot of what affects us is regulated. To tell the story I’m joined by Lorena Boix, Director for Cybersecurity at the European Commission.

Lorena first clears up the confusion we all have: the Commission drafts and enforces the legislation, while the Parliament and the Council negotiate it. From there we move on to the specifics: ENISA, with which she meets almost daily, the shortage of talent (people talk of hundreds of thousands of unfilled positions in Europe) and why ransomware and supply chain attacks are the big concern, because you can have your own company locked down and still fall through a supplier.

She also explains the new Cyber Resilience Act, which aims to impose minimum security requirements on any connected product before it’s sold in Europe, and her bet for the future: a European shield, a network of SOCs that shares threat information, because you don’t get out of this on your own. She comes across optimistic and with clear ideas about where Europe is heading.