National Repository of Grey Literature 2 records found  Search took 0.01 seconds. 
Analysis of Regulatory Requirements in Cyber Security
Valenta, Lukáš ; Loutocký, Pavel (referee) ; Harašta, Jakub (advisor)
This thesis focuses on assessing the impact of NIS2, DORA and GDPR on regulated entities and evaluates the degree of overlap between their regulatory requirements. One of the objectives is the theoretical definition of regulatory overlaps. This overlay is then practically evaluated in the form of a GAP analysis in a selected model company, which compares the current level of cyber security, against the requirements of NIS2, DORA and GDPR. In case of non-compliance, corrective measures are proposed according to best practices. The results of the differential analysis are reflected in the application for a general assessment of the compliance rate in the assessed company.
Analysis of the state of Disaster Recovery Management in a particular company, analysis of incidents and suggestion of measures
Novák, Martin ; Bruckner, Tomáš (advisor) ; Žalčík, Hynek (referee)
This thesis focuses on the topics of Business Continuity Management and Disaster Recov-ery Management in the context of small and medium sized businesses which offer or use IT services in the cloud. The aim of this thesis is to carry out a theoretical research of BCM and DRM in the aforementioned context and to analyze situation in a specific company based on the results of the research. This includes analysis of specific incidents that hap-pened in the company, analysis of how the company reacts to the incidents and how are the incidents logged and reported. The analysis identifies weak spots in the company and their potentials of improvement. The most serious weak spot discovered is that BCM and DRM are not implemented in the company. In the last part this thesis suggests measures to im-prove the situation in the specific company. That includes both specifying general goals and procedures and also defining specific policies, plans and reaction schemes. Specifically those are politics handling the incidents categorization, warning and communication, inci-dent reporting and performing maintenance.

Interested in being notified about new results for this query?
Subscribe to the RSS feed.