In 2022, the U.N. embarked on an ambitious journey to adopt – over only a period of two years – a global cybercrime treaty. Skeptics have cited concerns over fragmentation given existing related legal instruments like the Budapest Cybercrime Convention, as well as the risk of authoritarian influence on treaty development, and provisions that might erode global human rights.
Negotiations have been marked by fervent debate around cybercrime definitions, as well as the scope and objectives of the convention. In the summer of 2023, the first negotiated draft of the convention was made public. In the coming weeks, UN member states will start negotiations to reach consensus on a final draft by September 1, 2023.
To discuss the significance of the proposed convention, the Center for Cybersecurity Policy & Law’s Alex Botting and Jen Ellis sat down with Kaja Ciglic, the Senior Director for Digital Diplomacy at Microsoft. Ciglic leads Microsoft’s work on issues related to international peace and stability to advance trust in the computing ecosystem. Previously, she led Microsoft’s international cybersecurity policy work in an effort to develop policies that support development, growth, and innovation, and advance security, privacy, and trust in the information age.
Find the podcast on Spotify and Apple.
Read Next
What States Can Learn from North Carolina’s Approach to Securing Government
As states across the country grapple with how to adopt AI responsibly, North Carolina offers a compelling case study - not because it has all the answers, but because it has built the institutional muscle to learn, adapt, and lead.
Developing a National Cybersecurity Strategy
Developing a national cybersecurity strategy is a critical investment a government can make to secure its future. This paper outlines the components and offers a framework with the tools to design, implement, and improve their strategies.
FedRAMP Signals Acceleration of Requirements for Machine-Readable Packages in the Rev5 Process
FedRAMP has proposed modifications to the Rev5 process in the newly published RFCs that could enact major changes and require Cloud Service Offerings to provide authorization packages in a “machine-readable format.”
