CÓDIGO DE DERECHO DE LA CIBERSEGURIDAD
ÍNDICE SISTEMÁTICO
CAPÍTULO VII. Uso de la condición de laboratorio acreditado y de producto certificado . . . . . . . . . . . . . . . .
141
§ 8. Orden ESS/775/2014, de 7 de mayo, por la que se crea el Comité de Seguridad de los
Sistemas de Información de la Seguridad Social . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
146
Preámbulo . . . . . . . . . .
Artículos . . . . . . . . . . .
Disposiciones adicionales
Disposiciones finales . . .
.
.
.
.
146
147
148
148
§ 9. Orden TIN/3016/2011, de 28 de octubre, por la que se crea el Comité de Seguridad de las
Tecnologías de la Información y las Comunicaciones del Ministerio de Trabajo e Inmigración
149
Preámbulo . . . . . . . . . .
Artículos . . . . . . . . . . .
Disposiciones adicionales
Disposiciones finales . . .
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
– IX –
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
194
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
§ 12. Real Decreto 43/2021, de 26 de enero, por el que se desarrolla el Real Decreto-ley 12/2018, de
7 de septiembre, de seguridad de las redes y sistemas de información . . . . . . . . . . . . . . . . . .
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
173
177
179
180
183
185
188
189
192
193
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
Preámbulo . . . . . . . . . . . . . . . . . . . . . . . . . . . .
CAPÍTULO I. Disposiciones generales . . . . . . . .
CAPÍTULO II. Marco estratégico e institucional . . .
CAPÍTULO III. Requisitos de seguridad . . . . . . . .
CAPÍTULO IV. Gestión de incidentes de seguridad.
CAPÍTULO V. Supervisión . . . . . . . . . . . . . . . .
Disposiciones adicionales . . . . . . . . . . . . . . . . . .
Disposiciones transitorias . . . . . . . . . . . . . . . . . .
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
173
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
§ 11. Real Decreto-ley 12/2018, de 7 de septiembre, de seguridad de las redes y sistemas de
información . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
154
156
157
157
158
159
160
160
161
162
163
165
166
166
169
169
169
169
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
Preámbulo . . . . . . . . . . . . . . . . . . . . . . . . . . .
TÍTULO I. Disposiciones generales . . . . . . . . . . .
TÍTULO II. Servicios esenciales y servicios digitales
TÍTULO III. Marco estratégico e institucional . . . . .
TÍTULO IV. Obligaciones de seguridad . . . . . . . . .
TÍTULO V. Notificación de incidentes . . . . . . . . . .
TÍTULO VI. Supervisión . . . . . . . . . . . . . . . . . .
TÍTULO VII. Régimen sancionador . . . . . . . . . . .
Disposiciones adicionales . . . . . . . . . . . . . . . . .
Disposiciones finales . . . . . . . . . . . . . . . . . . . .
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
154
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
§ 10. Real Decreto 4/2010, de 8 de enero, por el que se regula el Esquema Nacional de
Interoperabilidad en el ámbito de la Administración Electrónica . . . . . . . . . . . . . . . . . . . . . . . .
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
149
150
153
153
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
Preámbulo . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
CAPÍTULO I. Disposiciones generales . . . . . . . . . . . . . . . . . . . . .
CAPÍTULO II. Principios básicos . . . . . . . . . . . . . . . . . . . . . . . . .
CAPÍTULO III. Interoperabilidad organizativa . . . . . . . . . . . . . . . . .
CAPÍTULO IV. Interoperabilidad semántica . . . . . . . . . . . . . . . . . .
CAPÍTULO V. Interoperabilidad técnica . . . . . . . . . . . . . . . . . . . . .
CAPÍTULO VI. Infraestructuras y servicios comunes. . . . . . . . . . . . .
CAPÍTULO VII. Comunicaciones de las Administraciones públicas . . .
CAPÍTULO VIII. Reutilización y transferencia de tecnología . . . . . . . .
CAPÍTULO IX. Firma electrónica y certificados . . . . . . . . . . . . . . . .
CAPÍTULO X. Recuperación y conservación del documento electrónico
CAPÍTULO XI. Normas de conformidad . . . . . . . . . . . . . . . . . . . . .
CAPÍTULO XII. Actualización . . . . . . . . . . . . . . . . . . . . . . . . . . .
Disposiciones adicionales . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
Disposiciones transitorias . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
Disposiciones derogatorias . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
Disposiciones finales . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .
ANEXO. Glosario de términos . . . . . . . . . . . . . . . . . . . . . . . . . . . .
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
194
196
197
200
202
205
206
207