Cybersecurity

A legal framework that protects organizations from cyber threats and sanctions from supervisory authorities.

We help organizations in ICT and XIoT establish cybersecurity processes and documentation that comply with legal regulations and work in practice. We focus on the Cybersecurity Act and European standards, handling cybersecurity incidents, cyber risk insurance, and security in the supply chain.

kyberneticka-bezpecnost-hero.jpg

What we do for you

Cybersecurity Act

We conduct identification of obligated entities, assessment of management responsibility, and GAP analysis, recommend specific steps, and help with the implementation of obligations arising from the Cybersecurity Act (based on NIS 2 Directive), implementing regulations, and related legal norms.

ISMS and security documentation

We establish or revise information security management systems in accordance with legal requirements and technical standards (e.g., ISO 27001 or MITRE ATT&CK).

SOC, SIEM, EDR, SASE

We provide comprehensive legal support for the operation of security monitoring services, including SOC, SIEM, EDR, and SASE, with emphasis on proper setting of contractual obligations and responsibilities.

Response to cybersecurity incidents

We prepare preventive internal procedures, help with legal evaluation of occurred cybersecurity incidents, and ensure the correct process for reporting to supervisory authorities.

Supply chain management

We establish processes for selection, evaluation, and control of suppliers from a cybersecurity and legal requirements perspective, including recommended contractual provisions.

Cyber risk insurance

We advise on the selection of cyber risk insurance, whether as stand-alone or add-on insurance, review contractual terms, and establish processes for fulfilling obligations to insurers.

Contact us
kyberneticka-bezpecnost-photo-2-min.jpg

How we work

  • We combine law and technical know-how

    We understand infrastructure, incident management, and regulation.

  • Clearly and effectively

    We formulate recommendations clearly and comprehensibly.

  • Security as a process

    We design solutions that organizations actually use.

When companies most often contact us

  • They need to fulfill obligations from the Cybersecurity Act.

  • They are handling or have just handled a cybersecurity incident.

  • They are preparing for an audit or inspection.

  • They are implementing ISMS or other security standards.

  • They need to manage suppliers and appropriately adjust contracts.

  • They are negotiating cyber risk insurance.

kyberneticka-bezpecnost-photo-3-min.jpg

Do you have legal questions in the above-mentioned areas?

Contact Us

[email protected]

+420 227 023 217

CTIBOR LEGAL v.o.s., advokátní kancelář

The Flow Building

Václavské náměstí 2132/47

110 00 Praha

Czech Republic

ID No. 17851165, VAT No. CZ17851165

By submitting the form, you agree to
processing of personal data.

Message sent successfully

We will get back to you as soon as possible

CTIBOR LEGAL v.o.s., law firm

The Flow Building

Wenceslas Square 2132/47

110 00 Prague

Company ID: 17851165, Tax ID: CZ17851165