CYBER SECURITY. Marcin Olender Head of Unit Information Society Department

Similar documents
REPUBLIC OF POLAND Ministry of Administration and Digitisation, Internal Security Agency CYBERSPACE PROTECTION POLICY OF THE REPUBLIC OF POLAND

Cyberspace Situational Awarness in National Security System

Government Decision No. 1139/2013 (21 March) on the National Cyber Security Strategy of Hungary

Cyber Security Strategy of Georgia

NATIONAL CYBERSECURITY STRATEGIES: AUSTRALIA AND CANADA

Cyber Security Strategy

CYBER SECURITY LEGISLATION AND POLICY INITIATIVES - UGANDA CASE

2. Cyber legislation harmonization process in Central Africa

Michael Yakushev PIR-Center, Moscow (Russia)

OUTCOME OF PROCEEDINGS

Government Decision No. 1139/2013 (21 March) on the National Cyber Security Strategy of Hungary

Cyber Stability 2015 Geneva, 09 July African Union Perspectives on Cybersecurity and Cybercrime Issues.

Cybersecurity Strategy of the Republic of Cyprus

ESTABLISHING A NATIONAL CYBERSECURITY SYSTEM IN THE CONTEXT OF NATIONAL SECURITY AND DEFENCE SECTOR REFORM

Achieving Global Cyber Security Through Collaboration

Cyber Diplomacy A New Component of Foreign Policy 6

EU Priorities in Cybersecurity. Steve Purser Head of Core Operations Department June 2013

The UK cyber security strategy: Landscape review. Cross-government

How To Understand And Understand The European Priorities In Information Security

Cybersecurity and the Romanian business environment in the regional and European context

On the European experience in critical infrastructure protection

How To Write An Article On The European Cyberspace Policy And Security Strategy

Council Conclusions on a Concerted Work Strategy and Practical Measures Against Cybercrime

CYBER SECURITY STRATEGY OF THE CZECH REPUBLIC FOR THE PERIOD

The internet and digital technologies play an integral part

Cyber Security Strategy for Germany

Honourable members of the National Parliaments of the EU member states and candidate countries,

Enhancing Cyber Security in Europe Dr. Cédric LÉVY-BENCHETON NIS Expert Cyber Security Summit 2015 Milan 16 April 2015

E-SECURITY REVIEW 2008 DISCUSSION PAPER FOR PUBLIC CONSULTATION

National Cyber Security Strategies

ITU GLOBAL CYBERSECURITY AGENDA AND CHILD ONLINE PROTECTION. International Telecommunication Union

Cyber security Country Experience: Establishment of Information Security Projects.

Romanian National Computer Security Incident Response Team CERT-RO.

National Cyber Security Strategy of Afghanistan (NCSA)

EU Cybersecurity: Ensuring Trust in the European Digital Economy

Finnish Cyber Security Strategy. Permanent Secretary, LTG Arto Räty Chairman of the Security Committee , Geneva

Executive Director Centre for Cyber Victim Counselling /

2 Gabi Siboni, 1 Senior Research Fellow and Director,

Cyber security Indian perspective & Collaboration With EU

As global mobile internet penetration increases the cybercrime and cyberterrorism vector is extended

CERT.AZ description as per RfC 2350

ASEAN s Cooperation on Cybersecurity and against Cybercrime

National Cyber Security Strategy

Commonwealth Approach to Cybergovernance and Cybersecurity. By the Commonwealth Telecommunications Organisation

ITU National Cybersecurity/CIIP Self-Assessment Tool

The EU s approach to Cyber Security and Defence

Presidency of the Council of Ministers THE NATIONAL PLAN FOR CYBERSPACE PROTECTION AND ICT SECURITY

Cyber Security for Railway Signalling

S. ll IN THE SENATE OF THE UNITED STATES

Cyber Space in Estonia: Greater Security, Greater Challenges

Women in an Age of Cyber Wars: Risks, Management and Opportunity

For Discussion Paper No. 9/2011 on 3 November 2011 DIGITAL 21 STRATEGY ADVISORY COMMITTEE. Cyber Security

EU Cybersecurity Strategy and Proposal for Directive on network and information security (NIS) {JOIN(2013) 1 final} {COM(2013) 48 final}

Policies and Practices on Network Security of MIIT

Having regard to the Treaty on the Functioning of the European Union, and in particular Article 16 thereof,

Cyber Security Strategy

PROPOSAL 20. Resolution 130 of Marrakesh on the role of ITU in information and communication network security

The global challenge

Day 3-24 April Day 2-23 April 2013

The final version of the Cyber Security Strategy and Action Plan note the following priorities to be implemented in :

(U) Appendix E: Case for Developing an International Cybersecurity Policy Framework

CISSA Cybersecurity capacity building workshop. May 2015

Working Party on Information Security and Privacy

What legal aspects are needed to address specific ICT related issues?

Trends and Tactics in Cyber- Terrorism

NATIONAL CYBER SECURITY STRATEGY

Towards closer EU-ASEAN collaboration in cybersecurity

CYBERTERRORISM THE USE OF THE INTERNET FOR TERRORIST PURPOSES

Germany: Report on Developments in the Field of Information and Telecommunications in the Context of International Security (RES 69/28),

DECLARATION STRENGTHENING CYBER-SECURITY IN THE AMERICAS

GOVERNMENT OF THE REPUBLIC OF LITHUANIA

National Cyber Security Policy -2013

Safety by trust: British model of cyber security. David Wallace, First Secretary, Head of of the Policy Delivery Group British Embassy in Warsaw

JOINT MEDIA STATEMENT

Lessons from Defending Cyberspace

NATIONAL CYBER SECURITY STRATEGY

Expert Meeting on CYBERLAWS AND REGULATIONS FOR ENHANCING E-COMMERCE: INCLUDING CASE STUDIES AND LESSONS LEARNED March 2015

Icelandic National Cyber Security Strategy Plan of action

Panel 3: Applicability of International Law to Cyberspace & Characterization of Cyber Incidents

Lith Networking and Network Marketing Safety

Home Security: Russia s Challenges

AFRICAN DECLARATION on Internet Rights and Freedoms

Cybercrime in the Automotive Industry How to improve your business cyber security

Australia s proposed accession to the Council of Europe Convention on Cybercrime

U.S. Cyber Security Readiness

How To Discuss Cybersecurity In European Parliament

Strategic Priorities for the Cooperation against Cybercrime in the Eastern Partnership Region

MONTENEGRO NATIONAL CYBER SECURITY STRATEGY FOR MONTENEGRO

Cybersecurity Governance

Council of Europe Project on Cybercrime in Georgia Report by Virgil Spiridon and Nigel Jones. Tbilisi 28-29, September 2009

REPUBLIC OF TURKEY. Ministry of Transport, Maritime Affairs and Communications. National Cyber Security Strategy and Action Plan

Transcription:

CYBER SECURITY Marcin Olender Head of Unit Information Society Department 1

MINISTRY OF ADMINISTRATION AND DIGITIZATION OF POLAND The areas of our activity: The Ministry was established on 18 November 2011 Administration; Co-operation between the government and local government units; Coordinating disaster prevention and recovery; Telecommunications; Digitization; Postal services; National and ethnic minorities and religious institutions; Public collection of money and goods; 2

MAiC DIGITAL AREA INFORMATION SOCIETY: coordination of tasks related to the development of information society undertaken by the institutions carrying out public assignments, as well as supporting non-governmental initiatives matters related to preventing digital exclusion and to applying digital technology in information society; shaping policies related to the management of access to public information and its further use, as well as creating the fundaments for building the so-called open government ; INFORMATIZATION: recommending strategic tasks of the state, standards and guidelines concerning the computerisation of public administration between the government and local government units Designing the legal, organisational and technological fundaments for the development of the computerisation of public administration TELECOMUNICATION: co-operation with the International Telecommunication Union (ITU); coordinating the construction of broadband networks in Poland, CYBERSPACE: passive actions, coordinator for implementing PBC 3

DIVISION OF CYBERSPACE Cyberdefence Cyberwarfare Ministry of of Administration and Digitization Cyberespionage Cybersecurity Działania proaktywne CYBER Działania reaktywne DBTI.gov Cyberterrorism passive measures Cybersafety Cybercrime Cooperation with: RCB, NASK

DDoS ATTACKS AGAINST POLISH GOVERNMENT WEBSITES January 2012 r. multiple attacks targeting websites in gov.pl domain Protests against the ACTA treaty rallied by Anonymous group (distibuted LOIC attack) Websites of the Polish Parliament, The Chancellery of the Prime Minister, Ministry of Foreign Affairs and The Ministry of Culture and National Heritage and many others were taken down. 5

CYBERSPACE PROTECTION POLICY OF THE REPUBLIC OF POLAND - 1 The document was developped in close cooperation between Ministry of Administration and Digitization and Internal Security Agency Adopted by the Council of Ministers on the 25th of June 2013 6

CYBERSPACE PROTECTION POLICY OF THE REPUBLIC OF POLAND - 2 SPECIFIC OBJECTIVES: Increasing the level of security of the State ICT infrastructure by improving the capacity to prevent and combat threats from cyberspace Reducing the impact of incidents threatening ICT security Determining the competence of entities responsible for the security of cyberspace Creating and implementing a coherent system of cyberspace security management for all government administration entities and establishing guidelines in this area for non-state actors Creating a sustainable system of coordination and exchange of information between the entities responsible for the security of cyberspace and the cyberspace users Increasing awareness of the cyberspace users on the methods and safety measures in cyberspace 7

THE MAIN LINES OF ACTION Risk assesement Security of Government portals and systems - plenipotentiaries Education, learning and awareness raising (higher education courses, govt staff training, social campaigns) Technical actions (research programmes, strengthening of govt. CERTs and cooperation mechanisms incl. early warning mechanisms) Setting up a cyber council (pending) Legislative actions 8

METHODS AND FORMS OF COOPERATION For the protection of cyberspace forms of cooperation between the authorities responsible for the security of cyberspace and responsible for combating computer crime of criminal nature should be developed: - enterprises active in important fields such as transport, energy and other utiliteis, information society services etc - manufacturers and providers of ICT equipment and systems - telecommunication networks operators 9

NETWORK AND INFORMATION SECURITY DIRECTIVE MAIN CONCEPTS AND RAMIFICATIONS Mimimal institutional harmonisation: designated authority (MaiC) and national CERTs Cooperation network (mechanism?) between member states, including early warning and coordinated response to incidents Expansion of obligations to new sectors (financial, health, infosoc providers?) Designated authority to be invested with binding decision-making powers Implementation in Poland will require legislative action A new Cybersecurity strategy Reorganisation of current framework possible 10

THANK YOU FOR YOUR ATTENTION marcin.olender@mac.gov.pl 11