Dr. Natallia Karniyevich is a partner in the Privacy & Cybersecurity practice and advises multinational companies across the full spectrum of cybersecurity and data protection law.
Based in Düsseldorf, Natallia guides clients through the evolving European cybersecurity regulatory landscape - from the strategic design of compliance programs to the management of cybersecurity incidents. She regularly leads complex multijurisdictional projects on the implementation of the NIS2 Directive and the Critical Entities Resilience Directive, and advises on the Cyber Resilience Act and DORA. A particular dimension of her practice is the intersection of cybersecurity and artificial intelligence, including the cybersecurity requirements of the EU AI Act. Her clients include providers of digital infrastructure and digital services, operators of critical infrastructure, and companies across the manufacturing, food, transport, and health sectors.
Natallia is a frequent author and speaker on current developments in cybersecurity law. She recently co-authored the International Comparative Legal Guide Cybersecurity 2026 (ninth edition) and the Casebook European Data Law – Ten Years of the GDPR: A Milestone in EU Data Regulation (Nomos, 2026), and a guest lecturer at the Frankfurt School of Finance & Management.