Cyber Security in Austria



Similar documents
EU Cybersecurity Strategy and Proposal for Directive on network and information security (NIS) {JOIN(2013) 1 final} {COM(2013) 48 final}

EU policy on Network and Information Security and Critical Information Infrastructure Protection

How To Write An Article On The European Cyberspace Policy And Security Strategy

Bradford J. Willke, CISSP

EU Priorities in Cybersecurity. Steve Purser Head of Core Operations Department June 2013

Austrian Cyber Security Strategy

Austrian Cyber Security Strategy

How To Understand And Understand The European Priorities In Information Security

Cloud and Critical Information Infrastructures

Cyber Security in EU: ENISA approach

The European Platform in Network and Information Security (NIS) Fabio Martinelli

Cyber Security in EU: ENISA approach

Safety by trust: British model of cyber security. David Wallace, First Secretary, Head of of the Policy Delivery Group British Embassy in Warsaw

Security and privacy standardization for the SME community

Lessons from Defending Cyberspace

ENISA and Cloud Security

ENISA s contribution to the development of Network and Information Security within the Community

Mainstreaming European Military Cyber Defence Training & Exercises

CYSPA - EC projects supporting NIS

Information Security Seminar 2013

Good Practices on Reporting Security Incidents

National Cyber Security Strategy

Critical Infrastructure Protection in Germany

Enhancing Cyber Security in Europe Dr. Cédric LÉVY-BENCHETON NIS Expert Cyber Security Summit 2015 Milan 16 April 2015

Infocomm Security Masterplan 2

Critical Information Infrastructures Protection approaches in EU

CONSULTING IMAGE PLACEHOLDER

FFIEC Cybersecurity Assessment Tool Overview for Chief Executive Officers and Boards of Directors

NICE and Framework Overview

Helmut Wacket Head of Oversight Division. Cybersecurity: regulatory framework and central bank initiatives in the EU

OUTCOME OF PROCEEDINGS

Cybersecurity Competence Building Trends

Towards defining priorities for cybersecurity research in Horizon 2020's work programme Contributions from the Working Group on Secure ICT

How To Write A Cybersecurity Framework

National Cyber Security Strategies

Building Blocks of a Cyber Resilience Program. Monika Josi monika.josi@safis.ch

On the European experience in critical infrastructure protection

Developing and Enhancing Cyber Security Capabilities in the Region. Khaled Gamo Technology Advisor Ministry of communication and informatics

Making our Cyber Space Safe

Stocktaking, Analysis and Recommendations on the Protection of CIIs JANUARY European Union Agency For Network And Information Security

Cybersecurity Framework. Executive Order Improving Critical Infrastructure Cybersecurity

Cybersecurity in the Utilities Sector Best Practices and Implementation 2014 Canadian Utilities IT & Telecom Conference September 24, 2014

National-level Risk Assessments

INCO for Cyber Security. PTCIF: 21st Feb 2014

The internet and digital technologies play an integral part

REPUBLIC OF MAURITIUS NATIONAL CYBER SECURITY STRATEGY

IAPP Global Privacy Summit Protecting Privacy Under the Cybersecurity Microscope

Cyber security in education in Greece

A Business Perspective on Promoting Cybersecurity. Art Reilly Cisco Systems For the ICC

ITU National Cybersecurity/CIIP Self-Assessment Toolkit. Background Information for National Pilot Tests

aecert Roadmap Eng. Mohammed Gheyath Director, Technical Affairs TRA

Electricity Subsector Cybersecurity Capability Maturity Model (ES-C2M2) (Case Study) James Stevens Senior Member, Technical Staff - CERT Division

Cybersecurity Strategy of the Republic of Cyprus

Cybersecurity Framework: Current Status and Next Steps

ROADMAP. Proposal on a European Strategy for Internet Security

National Cyber Security Policy -2013

CAPACITY BUILDING TO STRENGTHEN CYBERSECURITY. Sazali Sukardi Vice President Research CyberSecurity Malaysia

Digital Scoreboard 2016: Austria

ESKISP Direct security architecture development

Executive Order 13636: The Healthcare Sector and the Cybersecurity Framework. September 23, 2014

CIIP Governance in the European Union Member States (Annex) JANUARY European Union Agency For Network And Information Security

Critical Infrastructures and Challenges for Enhanced Security and Network Management Dr. Ioannis Chochliouros Evangelos Sfakianakis

Cybersecurity Awareness. Part 2

Cybersecurity Capacity Assessment of the Republic of Kosovo. Lara Pace Kosovo June 2015

Specific comments on Communication

Cyber Security Strategy

National Cyber Security Policy (Draft) March 2015

National Cyber Security Strategies: United States

Cybersecurity Risk Management in the Telecom Sector. MUSTAPHA HUNEYD Corporate Information Security

National Cybersecurity Management System: Framework, Maturity Model and Implementation Guide

Critical Infrastructure Cybersecurity Framework. Overview and Status. Executive Order Improving Critical Infrastructure Cybersecurity

GOVERNMENT OF THE REPUBLIC OF LITHUANIA

ITU National Cybersecurity/CIIP Self-Assessment Tool

NIST Cybersecurity Framework. ARC World Industry Forum 2014

APEC Telecommunications and Information Working Group Strategic Action Plan PREAMBLE

Before the DEPARTMENT OF COMMERCE National Telecommunications and Information Administration Washington, DC ) ) ) ) )

Taking on the Cloud Challenge in Europe

Business Continuity for Cyber Threat

Rules & Regulations Handbook

CYSPA launch event - Turkey

Cybersecurity & Public Utility Commissions

UNESCO S CONTRIBUTIONS TO THE DRAFT OUTCOME STATEMENT OF THE NETMUNDIAL CONFERENCE. Introduction

Partnership for Cyber Resilience

Best of Breed Opinion

ENISA and Cloud Security

The Challenges of Cyber Security a Government s Perspective

Address C-level Cybersecurity issues to enable and secure Digital transformation

NIS Direktive und Europäische sicherheitsrelevante Projekte Udo Helmbrecht Executive Director, ENISA

ENISA: Cybersecurity policy in Energy Dr. Andreas Mitrakas, LL.M., M.Sc., Head of Unit Quality & data mgt

Cyber Security Strategy of Georgia

How To Be A Successful Member Of The European Agency For Security And Safety

Public consultation on the contractual public-private partnership on cybersecurity and possible accompanying measures

Impact Assessment (IA)

Capacity Building to Strengthen Cybersecurity: Thailand Update

Security Services. A Solution for Providing BPM of Security Services within the Enterprise Environment.

BIC a multi-lateral international cooperation strategy based on in-country Extended Working Groups (EWGs)

Germany: Report on Developments in the Field of Information and Telecommunications in the Context of International Security (RES 69/28),

THE SCOTS COLLEGE Role Description School Psychologist

The Policy Approaches to Strengthen Cyber Security in the Financial Sector (Summary) July 2, 2015 Financial Services Agency

The PNC Financial Services Group, Inc. Business Continuity Program

Transcription:

Cyber Security in Austria The Austrian Cyber Security Strategy Andreas Reichard 18 th May, 2015

Roadmap Austrian Cyber Security Strategy 1/2 MRV MRV 11/2011 03/2012 06/2012 09/2012 10/2012 03/2013 Fed. Chanc. Work Out the National ICT Security Strategy Bottom Up in WG Work Out the Austrian CS Strategy through an editorial team MOI AAF For.M. MOI Cyber-Activities MOD Cyber-Activities For.M Cyber-Activities Austrian Security Strategy+ APCIP Strategy + CS-Strat. Other countries Austrian Strategy For Cyber Security 2

Chapters 1. Introduction 2. Opportunities and Risks 3. Principles 4. Strategic Goals 5. Fields Of Activities And Measures 6. Adopted on 20/03/2013 http://www.digitales.oesterreich.gv.at/docview.axd?cobid=51002 3

Chapters 2,3,4 4

Chapter 5 Fields Of Activities And Measures Field 1: Structures and Processes Establish a Cyber Security Steering Group Coordinates on a strategic level the measures of cyber security in Austria, advices the government in matters of cyber security, Establish a Coordination Structure at operational level, called Cyber Security Center, Provide a periodic and event-related situational picture of cyber security in Austria and coordinate measures to be taken at operational level in case of a serious cyber incident using already existing and established structures and processes Establish a comprehensive Cyber Crisis Management for severe threats with fatal effects for the wellbeing of the state, inclusive the elaboration of crisis management and business continuity plans. Strengthen existing cyber structures, especially govcert, Cyber Crime Competence Center, milcert and the national CERT 5

Chapter 5 Fields Of Activities And Measures Field 2: Governance Establish a Modern Regulatory Framework Analyse the current legal framework and the need for additional legal basis, regulatory measures and voluntary self-commitments (Code of Conduct) to ensure cyber security in Austria Define Minimum Standards, The standard requirements should apply to all relevant areas of ICT components and services. The applicable codes, standards, codes of conduct, best practices, etc.. shall be summarized in the Austrian Information Security Management Handbook Produce an Annual Cybersecurity Report the Cyber Security Steering Group will produce an annual report, "Cyber Security in Austria" that shall be submitted by the Federal Government 6

Chapter 5 Fields Of Activities And Measures Field 3: Cooperation State, Economy and Society Establish a Cyber Security Platform institutionalized exchange of information among the public administration and representatives of industry, science and research Strengthen Support for SME SMEs shall be prepared with priority programs for cyber security Develop a Cyber Security Communication Strategy to optimize the communication between the stakeholders in the public administration, industry, science and research, and society Field 4: CIIP Increase the Resilience of critical infrastructure Involve CI in processes of national cyber crisis management, update to a comprehensive security architecture, create a security officer, report serious incidents, 7

Chapter 5 Fields Of Activities And Measures Field 5: Awareness and Education Strengthen the cyber security culture Awareness initiatives shall be based on a common approach, taking into account existing programs already developed Establish an ICT security portal. This portal shall serve as an entry point to cyber security in Austria with compact information on the whole spectrum of cyber security and related links to specialized portals. Incorporate cyber security and media competence into all levels of education and training Include ICT, cyber security and media competence in school curriculums Provide cyber security training for teachers at colleges and universities Train cyber specialists in the public sector to improve cyber security in collaboration with national and international educational institutions Train system administrators to detect anomalies in their systems 8

Roadmap Austrian Cyber Security Strategy 2/2 Chapter 6 03/13 05/13 06/13 Austrian Cyber Security Strategy Measures Impl.- plan Org. Adopted by Federal Government Progress-Report Cyber Security Steering Group 9

Further Proceedings 2013 Evaluation Version 2 Report Austrian Security Strategy Plan APCIP NIS Strategy NIS Directive 2013 2015 10