EU drops sovereignty requirements in cybersecurity certification scheme, document shows

Posted on:
Key Points

BRUSSELS (Reuters) Amazon, Alphabets Google and Microsoft may find it easier to bid for EU cloud computing contracts after draft cybersecurity labelling rules scrapped a requirement that vendors should be independent from non-EU laws, according to the document seen by Reuters...

The European Union has struggled to agree to a cybersecurity certification scheme (EUCS) to vouch for the cybersecurity of cloud services and help governments and companies in the bloc to select a secure and trusted vendor for their business...

The move comes as Big Tech looks to the lucrative government cloud market to spur growth..

One draft circulated to EU governments last year required U.S. tech giants to set up a joint venture with an EU-based company and store and process customer data in the bloc to qualify for the EU cybersecurity label...

The latest draft dated March 22 removed such requirements, with cloud vendors only obliged to provide information about the location of the storage and processing of their customers data and about applicable laws...

You might be interested in

EU mulls wider scope for cybersecurity certification scheme - paper

24, Nov, 23

The European Union is considering broadening the scope of proposed cybersecurity labelling rules that would affect not just Amazon (AMZN.O), Alphabet's (GOOGL.O) Google and Microsoft (MSFT.O) but also banks and airlines, according to the latest draft of the rules.