Pressure mounts in EU to treat Facebook and Twitter as critical infrastructure

The move would subject them to the rules on network protection and data breach notification as banks and energy networks.

Flags in front of the European Commission headquarters in Brussels on June 17, 2015

Flags in front of the European Commission headquarters in Brussels on June 17, 2015

Pressure is mounting in the European Union to subject companies including Google, Twitter, eBay and Facebook to the same critical IT infrastructure security requirements as banks or energy networks.

EU lawmakers want providers of essential services in industries including banking, health care, transport and energy to protect their networks from hackers, and to disclose data breaches to the authorities.

The European Commission, which proposed the draft Network and Information Security Directive two years ago, also wants it to cover enablers of key Internet services, such as e-commerce platforms, Internet payment gateways, social networks, search engines, cloud computing services and app stores. The European Parliament, however, rejected their inclusion in the critical infrastructure rules last year.

On Wednesday ambassadors of the EU member states sided with the Commission and gave their go-ahead for the Council of the EU, the third body with a say in the shape of the law, to continue negotiations with the Commission and Parliament on Monday.

Treating social media and e-commerce companies as critical parts of the Internet infrastructure will impose additional costs on them for meeting the same stringent security rules as other essential services. At the same time, social media users stand to benefit because their personal data should be better protected, and they would receive quicker notification in the event their data were stolen.

One point open for debate is how to define which companies are critical infrastructure.

Internet companies want to play down their importance so as to avoid additional regulatory constraints on their businesses. The Computer and Communications Industry Association, representing Amazon.com, eBay, Facebook, Google and others, wants the rules to apply only to things such as nuclear power plants and transportation facilities.

Parliament removed these companies from its draft of the law in March 2014, as Members of the European Parliament had too many questions about how the rules would apply.

The Council of the EU, composed of representatives of the member states, wants these digital platforms to remain within the scope of the law, a Council official said Wednesday. However, it wants to subject Internet companies to a different -- as yet undefined -- set of rules than those governing banks and payment services.

Meanwhile, the Parliament still does not want to include Internet companies in the directive's scope, a Parliament official said.

Another source in the Parliament expected Monday's negotiations to focus on the definition of critical infrastructures and how to identify them, rather than on whether Internet companies should be included, an opinion echoed by the Council official, who predicts at least one more meeting will be needed.

Loek is Amsterdam Correspondent and covers online privacy, intellectual property, online payment issues as well as EU technology policy and regulation for the IDG News Service. Follow him on Twitter at @loekessers or email tips and comments to loek_essers@idg.com

Join the newsletter!

Error: Please check your email address.
Rocket to Success - Your 10 Tips for Smarter ERP System Selection

Tags Council of the European Unionsecurityeuropean commissiontwitterEuropean ParliamentFacebook

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Loek Essers, Peter Sayer

IDG News Service
Show Comments

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

Ben Ramsden

Sharp PN-40TC1 Huddle Board

Brainstorming, innovation, problem solving, and negotiation have all become much more productive and valuable if people can easily collaborate in real time with minimal friction.

Sarah Ieroianni

Brother QL-820NWB Professional Label Printer

The print quality also does not disappoint, it’s clear, bold, doesn’t smudge and the text is perfectly sized.

Ratchada Dunn

Sharp PN-40TC1 Huddle Board

The Huddle Board’s built in program; Sharp Touch Viewing software allows us to easily manipulate and edit our documents (jpegs and PDFs) all at the same time on the dashboard.

George Khoury

Sharp PN-40TC1 Huddle Board

The biggest perks for me would be that it comes with easy to use and comprehensive programs that make the collaboration process a whole lot more intuitive and organic

David Coyle

Brother PocketJet PJ-773 A4 Portable Thermal Printer

I rate the printer as a 5 out of 5 stars as it has been able to fit seamlessly into my busy and mobile lifestyle.

Kurt Hegetschweiler

Brother PocketJet PJ-773 A4 Portable Thermal Printer

It’s perfect for mobile workers. Just take it out — it’s small enough to sit anywhere — turn it on, load a sheet of paper, and start printing.

Featured Content

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?