Záznamy události: Stanovení doby uchování a implementace komplexních požadavků v organizaci

Warning

This publication doesn't include Institute of Computer Science. It includes Faculty of Law. Official publication website can be found on muni.cz.
Title in English Event Records: Determining Retention Periods and Implementing Complex Requirements within the Organization
Authors

SAUER Jakub ŠPAČEK Stanislav FRÁŇA Patrik DRAPPANOVÁ Denisa HARAŠTA Jakub

Year of publication 2025
Type Peer-reviewed scientific article
Magazine / Source Revue pro právo a technologie
MU Faculty or unit

Faculty of Law

Citation
web Open access článku
Doi https://doi.org/10.5817/RPT2025-2-5
Keywords Data retention; security event logs; SIEM; compliance
Description Security Information and Event Management (SIEM) is a standard part of the infrastructure of many organizations. It is a tool used to monitor the operation of systems and networks, correlate events and store this data for later use. It is a way to collect and consolidate event records and other relevant information from various sources. In principle, SIEM allows for a more flexible response to cyber events and incidents, but it also contributes to more efficient management of operated systems and networks. SIEM can be implemented by an organization, among other things, to comply with legislative requirements that may affect the organization (e.g. the obligation to monitor and evaluate cyber security incidents). This is associated with many problematic aspects that may be difficult to identify, both for IT professionals working with the aforementioned tools and for legal experts who may not always be aware of the complexity of the technological solution. The article focuses on the interpretation and implementation of legislative requirements that affect SIEM in a way that allows SIEM to be used while minimizing the legal risk arising from insufficient implementation. The aim of this text is to (1) define the requirements arising from overlapping legislation in the areas of cybersecurity, personal data protection and electronic communications, (2) identify areas where they overlap or conflict, and (3) propose procedures to ensure SIEM compliance with legal requirements.
Related projects:

You are running an old browser version. We recommend updating your browser to its latest version.

More info