ISACA

ISACA

As an independent, nonprofit, global association, ISACA engages in the development, adoption and use of globally accepted, industry-leading knowledge and practices for information systems.

Lobbying Activity

Response to The EU Cybersecurity Act

5 Jun 2025

ISACA welcomes the CSA revision as a key opportunity to harmonise EU cybersecurity rules, enhance ENISAs mandate, and build digital resilience. It calls for a stronger role for ENISA in policy implementation, technical coordination, and skills development. ISACA supports making cybersecurity certification more structured and tailored, including professional certifications to close the cyber skills gap. The CSA should address growing ICT supply chain risks by covering non-technical threats and ensuring certified procurement. Finally, simplification efforts must preserve security while reducing regulatory burden through harmonised templates, automated reporting, and a common risk management framework.
Read full response

Meeting with Javier Moreno Sánchez (Member of the European Parliament, Shadow rapporteur)

31 Jan 2025 · Talent Pool proposal

Meeting with Lina Gálvez (Member of the European Parliament, Rapporteur)

18 Jul 2024 · EU Cybersecurity Skills Academy

Response to Evaluation of the European Union Agency for Cybersecurity (ENISA) and the European Cybersecurity Certification Framework

15 Sept 2023

ISACA welcomes the European Commission's call for evidence to evaluate the European Union Agency for Cybersecurity (ENISA) and the EU cybersecurity certification framework. As a recognized global non-profit cybersecurity professionals association, ISACA has consistently demonstrated its commitment to European initiatives, as evidenced by our recent response to the amendment of the Cybersecurity Act concerning managed security services. We firmly believe that the success of ENISAs objectives will be based on a collaborative approach, drawing on the expertise of key stakeholders, including ISACA. Therefore, this response will delve into four primary areas of focus: 1. The urgency to bolster ENISA's resources and mandate to address the digital and cybersecurity skills gap. 2. The relevance to draft a framework for the certification of cybersecurity skills 3. The need for a flexible ENISA Certification Framework rooted in proven practices. 4. The imperative for ENISA to foster a collaborative ecosystem with consistent stakeholder engagement. Further details can be found in the attached response document.
Read full response

Response to The Cyber Skills Proposal Amendment

20 Jul 2023

ISACA, an independent, globally recognized professional association specializing in technology and cybersecurity, warmly welcomes the proposal by the Commission on a Regulation updating the Cybersecurity Act. The goal to establish future European cybersecurity certification schemes for managed security services will enhance the quality, comparability of these services, and assist in the selection process for providers required under Directive (EU) 2022/2555, leading to a less fragmented European market. ISACAs answers attached identify three crucial points: creating a strong, flexible EU Certification Scheme; clarifying the scope of managed security services; and enhancing the goals of the Certification Scheme. The answer attached below is based on ISACA's extensive experience in cybersecurity certification with over 520,000 certified professionals and 145,000 members across 180 countries since its creation in 1969. ISACA stands ready to contribute to the harmonization of cybersecurity certification schemes across the EU, based on its experience with our comprehensive certifications and the Capability Maturity Model Integration (CMMI) to lend their extensive expertise.
Read full response

Meeting with Axel Voss (Member of the European Parliament, Shadow rapporteur) and EuroCommerce

1 Mar 2022 · AI Act

Response to Review of ENISA Regulation and laying down a EU ICT security certification and labelling

6 Dec 2017

To Whom It May Concern, I am providing comments on behalf of ISACA on the Cybersecurity Package. Please contact me, jgremmels@isaca.org, with any questions. Best, Jen Gremmels
Read full response

Meeting with Carl-Christian Buhr (Cabinet of Commissioner Mariya Gabriel)

5 Dec 2017 · Cybersecurity