Watch a video lesson on copyright law, personal data protection, and cybersecurity.
Legislative regulations encompass laws related to copyright and related rights, data protection (such as the General Data Protection Regulation (GDPR)), and cybersecurity to protect the rights of individuals and the security of digital systems. These regulations define the responsibilities of organizations in the collection, processing, and protection of data, and they sanction violations and security breaches. Compliance with regulations is crucial for legal accountability and maintaining user trust. In today's digital environment, understanding legislative regulations is essential for the safe and responsible use of technology. This video lesson will provide an overview of three important Croatian laws: Copyright and Related Rights Act, the Act on the Implementation of the General Data Protection Regulation, and the Cybersecurity Act. We will explore the rights and responsibilities of individuals and organizations, and measures that ensure the lawful use of digital content, privacy protection, and resilience against cyber threats. Legislative regulations play a crucial role in the field of cybersecurity by providing a legal framework that requires organizations and individuals to protect information, systems, and digital identities. In an era of increasing digitalization, laws and regulations set security behaviour standards, define responsibilities in the event of incidents, and impose obligations such as reporting data breaches or implementing specific technical and organizational measures. Regulations also protect users' rights, particularly regarding privacy and the use of personal data. Without clear legal frameworks, cybersecurity remains subject to arbitrary practices, increasing the risk of abuses, fraud, and serious security incidents. Copyright and Related Rights Act: Protects the rights of authors and holders of related rights, regulating the use of copyrighted works and rights in both digital and physical environments. Act on the Implementation of the General Data Protection Regulation (GDPR): Regulates the implementation of GDPR in Croatia, defining the competent authority, rules for processing personal data, and the rights of data subjects. Cybersecurity Act: Establishes rules and obligations for critical and important entities in ensuring cybersecurity at the national level, in line with the NIS2 Directive. Cybersecurity Regulation: Specifies detailed technical and organizational measures required to achieve and maintain an adequate level of cybersecurity for entities covered by the Act. The Copyright Act protects original works resulting from intellectual authorship, such as books, music, computer programs, photographs, or films, regardless of their format. Copyright is divided into moral rights, which protect the relationship between the author and the work, and commercial (property) rights, which allow the author to exploit the work commercially. Commercial rights last for 70 years after the author's death, while moral rights can, in some cases, last indefinitely. The law permits limited use of a work without the author's approval, such as for personal use, education, quoting, or parody, provided that the source is acknowledged. It also protects related rights of performers and producers, allows for collective management of rights through organizations like HDS ZAMP, and is adapted to the digital age by regulating DRM technologies and the responsibilities of platforms. Penalties and legal protection are provided for violations of these rights. In the Republic of Croatia, all entities that process the personal data of EU citizens are required to comply with the General Data Protection Regulation (GDPR). The Personal Data Protection Act regulates specific areas such as the processing of employee data, data of minors, and data for journalistic or artistic purposes. The Agency for the Protection of Personal Data (AZOP) is responsible for enforcement, monitoring, advising, and imposing penalties. Employers may process employee data only if legally justified, while parental consent is required for children under the age of 16. Citizens have the right to access, correct, delete, and object to the processing of their data, and violations can result in fines of up to €20 million or 4% of annual revenue. The Cybersecurity Act covers key sectors, such as energy, healthcare, finance, and transportation, expanding the scope of entities required to implement security measures. Entities are classified as either essential or important, depending on their impact on society and the economy, with varying levels of obligations and oversight. They must report serious cybersecurity incidents within 72 hours and submit additional reports as needed. Essential entities conduct compliance assessments, while important entities perform self-assessments. The Act strengthens collaboration between the public and private sectors, promotes education and resilience against threats, and provides for penalties in case of non-compliance with regulations. The Cybersecurity Regulation was adopted by the Croatian government to strengthen national resilience against cybersecurity threats and align with EU Directive 2022/2555 (NIS2). The digital transformation of society and the economy, the increasing number and complexity of cyberattacks, and the need to protect critical infrastructure have necessitated an updated and comprehensive approach to security. Legal regulations in the field of cybersecurity are crucial for the protection of individuals, organizations, and society in the digital environment. Primarily, they protect citizens' privacy by ensuring the lawful and transparent processing of personal data. Furthermore, they enable the protection of critical infrastructure, reducing the risk of incidents that could endanger public health, the economy, or national security. The regulation also protects intellectual property, encourages innovation, and ensures fair market conditions. By aligning with European Union regulations, it facilitates international cooperation and enhances resilience to global threats. Ultimately, these laws foster trust in digital services, which is crucial for a successful digital transformation. For this reason, the legislative framework is not a barrier, but rather the foundation for a secure and responsible digital future.
Background Colour
Font Face
Font Size
Text Colour
Font Kerning
Image Visibility
Letter Spacing
Line Height
Link Highlight