The EU s approach to Cyber Security and Defence



Similar documents
CYBER SECURITY AND CYBER DEFENCE IN THE EUROPEAN UNION OPPORTUNITIES, SYNERGIES AND CHALLENGES

OUTCOME OF PROCEEDINGS

Towards defining priorities for cybersecurity research in Horizon 2020's work programme Contributions from the Working Group on Secure ICT

Cybersecurity in SMEs: Evaluating the Risks and Possible Solutions. BANCHE E SICUREZZA 2015 Rome, Italy 5 June 2015 Arthur Brocato, UNICRI

Mainstreaming European Military Cyber Defence Training & Exercises

Horizon 2020 Secure Societies

How To Write An Article On The European Cyberspace Policy And Security Strategy

Germany: Report on Developments in the Field of Information and Telecommunications in the Context of International Security (RES 69/28),

Cyber Security for Railway Signalling

How To Understand And Understand The European Priorities In Information Security

Hybrid Warfare & Cyber Defence

JOINT COMMUNICATION TO THE EUROPEAN PARLIAMENT, THE COUNCIL, THE EUROPEAN ECONOMIC AND SOCIAL COMMITTEE AND THE COMMITTEE OF THE REGIONS

NATO & Cyber Conflict: Background & Challenges

Session 9 Cyber threats in the EU s and NATO s new strategic context General Kees Homan: Introduction Political cyber attacks

Enhancing Cyber Security in Europe Dr. Cédric LÉVY-BENCHETON NIS Expert Cyber Security Summit 2015 Milan 16 April 2015

EU Cybersecurity: Ensuring Trust in the European Digital Economy

National Cyber Security Strategy

Council of the European Union Brussels, 4 March 2015 (OR. en) Delegations No. prev. doc.: 9298/5/14 EU Cybersecurity Strategy: Road map development

Cyber Diplomacy A New Component of Foreign Policy 6

Anthony J. Keane, MSc, PhD and Jason Flood, MSc Information Security & Digital Forensics Research Group Institute of Technology Blanchardstown

Synopsis Cyber Situation Awareness Package

Analytic and Predictive Modeling of Cyber Threat Entities J. Wesley Regian, Ph.D.

Cybersecurity Global status update. Dr. Hamadoun I. Touré Secretary-General, ITU

CAPACITY BUILDING TO STRENGTHEN CYBERSECURITY. Sazali Sukardi Vice President Research CyberSecurity Malaysia

Executive Cyber Security Training. One Day Training Course

Energy Security and CSDP: Energy Factor in the EU Military Missions and Operations

Cybersecurity Awareness. Part 1

Keynote. Professor Russ Davis Chairperson IC4MF & Work Shop Coordinator for Coordinator for Technology, Innovation and Exploitation.

Government Decision No. 1139/2013 (21 March) on the National Cyber Security Strategy of Hungary

Cybersecurity and the Romanian business environment in the regional and European context

The internet and digital technologies play an integral part

Cyberspace Situational Awarness in National Security System

The FBI and the Internet

ESTABLISHING A NATIONAL CYBERSECURITY SYSTEM IN THE CONTEXT OF NATIONAL SECURITY AND DEFENCE SECTOR REFORM

On the European experience in critical infrastructure protection

1 FOCUS Foresight Security Scenarios

ENISA s Study on the Evolving Threat Landscape. European Network and Information Security Agency

How To Ensure Cyber Security In The Czech Republic

CENTRE FOR STRATEGIC CYBERSPACE + SECURITY SCIENCE LEADERSHIP. RESEARCH. DEFENCE.

Cyber defence in the EU Preparing for cyber warfare?

Supporting CSIRTs in the EU Marco Thorbruegge Head of Unit Operational Security European Union Agency for Network and Information Security

Internet Safety and Security: Strategies for Building an Internet Safety Wall

Certified Cyber Security Analyst VS-1160

Harmful Interference into Satellite Telecommunications by Cyber Attack

Achieving Global Cyber Security Through Collaboration

2 Gabi Siboni, 1 Senior Research Fellow and Director,

CYBERSECURITY NEXUS ROBERT E STROUD INTERNATIONAL PRESIDENT, ISACA RAMSÉS GALLEGO INTERNATIONAL VICE PRESIDENT, ISACA

Cybersecurity Strategy of the Republic of Cyprus

Cyberspace Strategic Impact Social Risk Management. Cyber Security and Cyber Defence. Cyber Defense: NATO Vision

What legal aspects are needed to address specific ICT related issues?

MONTENEGRO NATIONAL CYBER SECURITY STRATEGY FOR MONTENEGRO

UN Emergency Summit on Cyber Security Topic Abstract

Cyber Security and Cyber Warfare: The EU approach and experience Prof. Claudio CILLI CIA, CISA, CISSP, CISM, CSSLP, CRISC, CGEIT, M.Inst.

COMMISSION OF THE EUROPEAN COMMUNITIES

EU Priorities in Cybersecurity. Steve Purser Head of Core Operations Department June 2013

An Introduction to Cyber Crime and Terrorism: Problems and the Challenges

NATO Cyber Security Capabilities & Industry Opportunities Building on Solid Foundations. Ian J West Chief, Cyber Security

Commonwealth Approach to Cybergovernance and Cybersecurity. By the Commonwealth Telecommunications Organisation

Cyber Security. A professional qualification awarded in association with University of Manchester Business School

Horizon 2020 Secure Societies

European Cyber Security Conference

A Cyber Security Integrator s perspective and approach

Finnish Cyber Security Strategy. Permanent Secretary, LTG Arto Räty Chairman of the Security Committee , Geneva

European Organization for Security (EOS) - Description and Envisaged Activities for 2012

Honourable members of the National Parliaments of the EU member states and candidate countries,

ENISA What s On? ENISA as facilitator for enhanced Network and Information Security in Europe. CENTR General Assembly, Brussels October 4, 2012

Cyber Europe Key Findings and Recommendations

European Defence Agency Capabilities Directorate COMMON STAFF TARGET FOR MILITARY COOPERATION ON CYBER RANGES IN THE EUROPEAN UNION

Improving Cyber Security: NATO and the EU

Online International Interdisciplinary Research Journal, {Bi-Monthly}, ISSN , Volume-III, Issue-IV, July-Aug 2013

EU Cybersecurity Strategy and Proposal for Directive on network and information security (NIS) {JOIN(2013) 1 final} {COM(2013) 48 final}

JOINT COMMUNICATION TO THE EUROPEAN PARLIAMENT AND THE COUNCIL. The EU's comprehensive approach to external conflict and crises

The UK cyber security strategy: Landscape review. Cross-government

CYBER SECURITY. Marcin Olender Head of Unit Information Society Department

Christos Douligeris cdoulig at unipi dot gr. Department of Informatics University of Piraeus

Cyber Security Review

Council of the European Union Brussels, 5 June 2015 (OR. en) Delegations No. prev. doc.: 9298/5/14 EU Cybersecurity Strategy: Road map development

How do we Police Cyber Crime?

Using big data analytics to identify malicious content: a case study on spam s

EU policy on Network and Information Security and Critical Information Infrastructure Protection

National Cyber Security Policy -2013

Funding Security Research: a European Issue. ESRAB & ESRP initiatives

Government Decision No. 1139/2013 (21 March) on the National Cyber Security Strategy of Hungary

Having regard to the Treaty on the Functioning of the European Union, and in particular Article 16 thereof,

Cybersecurity & International Relations. Assist. Prof. D. ARIKAN AÇAR, Ph.D. Department of International Relations, Yaşar University, Turkey.

ESDC EUROPEAN ARMAMENT COOPERATION COURSE AWARENESS LEVEL COURSE (AWL) PROGRAMME (ALL SPEAKERS TO BE CONFIRMED) DRAFT AS OF

The European Response to the rising Cyber Threat

CYSPA launch event - Turkey

COMMUNICATION FROM THE COMMISSION TO THE EUROPEAN PARLIAMENT, THE COUNCIL, THE EUROPEAN ECONOMIC AND SOCIAL COMMITTEE AND THE COMMITTEE OF THE REGIONS

(U) Appendix E: Case for Developing an International Cybersecurity Policy Framework

FINLAND S CYBER SECURITY STRATEGY. Background dossier

Transcription:

Workshop "Cyberwar & Cyberpeace Berlin, 23 Oct 15 Wolfgang Röhrig EDA Programme Manager Cyber Defence Woilfgang.Roehrig@eda.europa.eu +32 (0)2 504 2966 Political & Strategic Framework Dual-Use Specific Military Capabilities & Technology Operational Excellence for CSDP Civil-Military Cooperation The EU s approach to Cyber Security and Defence

EDA Mission European Defence Agency s mission to support the Council and the Member States in their effort to improve the European Union s defence capabilities for the Common Security and Defence Policy (CSDP). * * Treaty of Lisbon, signed in 2007, entered into force in 2009 so we do on 2 Cyber Defence!

Situation of the military Critical military functions increasingly dependent on ensured access to the cyber domain Military increasingly dependent on civilian (critical) infrastructures and services Constant growth - increasingly complex and interconnected networks (NEC) Rapid development new threats and vulnerabilities every day 3

Who are They and what have we seen/expect to see Nation States Patriot Hackers Individuals or Groups Hybrid Conflict Hybrid Denial of Service Conflict (DoS, DDoS), Web Defacement, Malware (Viruses, Worms, Trojans, ) Bot-Nets, Social Engineering, Spear Phishing, Waterholing, APTs, (Trans)national Terrorism Proliferation/ Money Laundry 4 Criminal Organizations

What do They want? EXPLOITATION DISRUPTION Destruction DESTRUCTION Cyber Conflict/Warfare Cyber Terrorism Exploitation Cyber Espionage Disruption Cyber Crime/Internet Fraud Cyber Vandalism/Hacktivism 5

2012 - All MS reported some degree of familiarity with CD issues Potential common standard/level to be achieved for CSDP 6

New CDP tasking (CDP 2014 Revision) People S ence workforce: g and exercises at EU level, and exercises, and training eactive state-of-the-art Cyber n making, response, ological trends (Technology Cyber Defence Technology 7

Political-Strategic Framework for Cyber Defence in CSDP

Cyber Security Strategy for the European Union: -An open, safe and secure Cyberspace- STRATEGIC PRIORITIES AND ACTIONS 1. Achieving cyber resilience 2. Drastically reducing cybercrime 3. Developing Cyber Defence capabilities in the framework of Common Security and Defence Policy (CSDP) 4. Developing the industrial and technological resources for cybersecurity 5. Establishing a coherent international cyberspace policy for the European Union and promote EU fundamental rights and core values 9

Cyber Security Strategy for the European Union: -An open, safe and secure Cyberspace- THE KEY MILITARY ASPECTS Cyber security efforts in the EU also involve the cyber defence dimension. Assess operational EU cyber defence requirements and promote the development of EU cyber defence capabilities and technologies to address all aspects of capability development; Develop the EU cyber defence policy framework to protect networks within CSDP missions and operations; Promote civil-military dialogue in the EU and contribute to the coordination between all actors at EU level; Ensure dialogue with international partners, including NATO, other international organisations and multinational Centres of Excellence. 10

Cyber Security Strategies of EU Member States 2013 2014 2013 2014 2014 2014 2011 2011 2011 2013 2011 2011 2013 2015 2013 2013 2008 2011 2013 2013 http://www.enisa.europa.eu/activities/resilience-and-ciip/national-cyber-security-strategies-ncsss/national-cybersecurity-strategies-in-the-world 11

EU Cyber community landscape Trialogue/ Conclusions European Commission European Parliament Legislative proposal (NIS Directive) External representation EEAS Cooperation & Coordination on dual use, R&D, ESIF Cooperation & Coordination 12 EU Council Agency for the military capabilities Recommendations & report on tasking Cooperation & Coordination EUMS

EU Cyber Defence Policy Framework - Strategic Priority Areas Supporting the development of Member States cyber defence capabilities related to CSDP; 7 concrete actions (MS, EDA, EEAS). Enhancing the protection of CSDP communication networks used by EU entities; 6 concrete actions (EEAS). Promotion of civil-military cooperation and synergies with wider EU cyber policies, relevant EU institutions and agencies as well as with the private sector; 4 concrete actions on civ-mil cooperation (EDA, ENISA, EC3, MS and other); 6 concrete actions on research and technology in cooperation with the private sector and academia (EDA, Commission, MS and other). Raising awareness through improved training, education and exercise opportunities for the Member States; 8 concrete actions on education & training (EEAS, EDA, ESDC and MS); 4 concrete actions on exercises (EEAS and MS). Cooperate with relevant international partners, notably with NATO, as appropriate. 8 concrete actions (EEAS, EDA and MS). 13

Conclusions (1) The need for cooperation Quote from the last EDA Steering Board at Ministers Level 18 May 15: the sensitive nature of cyber should not be an obstacle to substantive work at the European level: if not properly addressed, there is the risk of widening the gap between Member States 14

Conclusion (2) The EU and the way ahead A lot has moved since 2011 (PT establishment) and 2013 (EU Cyber Security Strategy); Most of EU Member States have Cyber Security Strategies in place; In the CSDP context focus on the implementation of the EU Cyber Defence Policy Framework Plenty of Cyber Defence Projects are ongoing; However, still some fragmentation; Human Aspects have been recognized; however, need more work; Improve cooperation with the commission on dual use, R&D and industrial policy; Room for more trust and cooperation; Information Sharing in support of CSDP operations and missions has to be improved; 15

Evolution of warfare or 16