
Threat Talks · 2026-04-14 · 34 min
We always worried about lock-in. But the real risk is getting locked out - of your cloud. Your data may sit in Europe. Your systems may run on trusted platforms. But if access is restricted tomorrow - by a provider, a government, or a legal decision - what actually happens? Can you still operate? In this episode of Threat Talks , Lieuwe Jan Koning (co-founder and CTO at ON2IT Cybersecurity) speaks with Lokke Moerel (Professor of Global ICT Law at Tilburg University and leading expert in EU cybersecurity regulation) to break down what data sovereignty really means- beyond the illusion of control. Because sovereignty doesn’t fail where you think it does. It breaks in four places: Storage - where your data lives Access - who can reach it (and revoke it) Operations - whether you can keep running without your provider Jurisdiction - which laws override your control Most organizations only solve the first - and that’s where the real risk starts: dependency on providers you don’t control. As cloud and AI deepen that dependency, the question isn’t where your data sits, but who decides what happens to it tomorrow.
Other episodes covering the same guests and topics, from across The B2B Podcast Index.