220 likes | 334 Views
WISTP ENISA: challenge and opportunities 11 May 2007. Content. Network and information security in Europe ENISA’s role ENISA today and tomorrow ENISA and FP7. Lisbon Strategy. i2010 initiative. eEurope programmes. Network and information security in Europe - 1. more employment
E N D
Content • Network and information security in Europe • ENISA’s role • ENISA today and tomorrow • ENISA and FP7 2
LisbonStrategy i2010 initiative eEurope programmes Network and information security in Europe - 1 • more employment • more growth • more inclusiveness Towards the information society d ICT development RFID Ambient intelligence WiFi NGN Mobile systems GRIDs Sensor networks • privacy challenge • ID theft • Attacks against CII • digital divide 3
Network and information security in Europe - 2 I. Protection measures III. Law enforcement NETWORK &INFORMATION SECURITY Hacking CYBER CRIME ID Theft DataRetention Intrusion DATA PROTECTION &TELECOM FRAMEWORK II. Legal requirements 4
Network and information security in Europe - 3 TECHNICALdimension SOCIAL dimension • - diversity, • - openness, • - interoperability • - overall security chain • home systems criticality • shared responsibility TRUSTWORTHY, SECURE & RELIABLE ICT ECONOMIC dimension LEGAL dimension - NIS as a virtue and an opportunity • fundamental right on-line • privacy & security as prerequisite 5
Content • Network and information security in Europe • ENISA’s role • ENISA today and tomorrow • ENISA and FP7 6
Standards Certificates ENISA’s Role - 1 European Council European Parliament European Commission • Stakeholder • -academia • associations • providers • vendors • end users R&D eApplications Legal Framework ENISA • lack of coherence • lack of dialogue • lack of cooperation National security policies Incentives eAdministation Member States NRA NSA 7 DPA NBA Government
ENISA’s Role - 2 ENISA’s tasks Risk assessment and risk management Becoming a centre of expertise Track standardisation Information exchange and cooperation Promote CERTs Giving advice and assistance to Commission and Member States Awareness raising Promote best practices 8
ENISA scope of activity ENISA’s Role - 3 To be … but not no be … Catalyst Promoter Scientific lab Analyst service Stimulator Adviser Evaluation body CSIRT Networking … …without duplicating 9
Content • Network and information security in Europe • ENISA’s role • ENISA today and tomorrow • ENISA and FP7 10
Technical advice on specific matters • Report to ED • 3 WG in 2005, 4 in 2006 ENISA today and tomorrow - 1 Management Board • 1 seat per MS, 3 EC, 3 observers • Approves the Working Programme • Approves the budget Executive Director (and staff) • “Run the Agency” • Reports to Management Board Permanent Stakeholders Group • Industry, academia, users (30 seats) • Advice to Executive Director National Liaison Officer • Contact point in each Member State • Facilitate exchange of information Ad hoc Working Groups ENISA 11
ENISA today and tomorrow - 2 Executive director • - Assistant/controller • Policy adviser • Accounting office • Security office • Press and Com. Around 50 staff About 7 Meuros/year • Administration: • Finance • Human resources • Legal service • It infrastructure • Technical: • Risks management • Security policy • Security tools • Technology cabinet • Cooperation & support: • Awareness raising • Incident response • Coordination MS & EC • Relations with industry 12
ENISA today and tomorrow - 3 Deliverables (2006 Work Programme) • Awareness raising • Overview of awareness raising programmes in EU • Users’ guide on how to raise information security awareness • Risk assessment and risk management • Inventory of methods and tools • Method adapted to SMEs context • Security policy • Study on Security & anti-spam measures in eComunication • Inventory of NIS certification and accreditation schemes • Roadmap on electronic authentication interoperability • CERT capacity development: • Inventory of CERT activities in Europe • How to set-up a CERT • Security tools and architecture • Current developments in NIS technologies 13
ENISA today and tomorrow – 4 Requests from the EC and MS (2006) 14
ENISA today and tomorrow – 5 Go to our website: Subscribe to the ENISA Quarterly: To subscribe to the ENISA Quarterly, please mail to press@enisa.europa.euand clearly state “SUBSCRIBE” (!) as subject http://www.enisa.europa.eu 15
ENISA today and tomorrow – 6 • Mid term evaluation in 2007 • Good quality of ENISA output • Impact difficult to assess • Need to focus more on strategic goals 16
Dialogue with and between stakeholders… MS PSG Commission Agency Others Collection of expectations and needs • Guided by strategic goals… MB and PSG to indicate priorities Agency to suggest resources needed and showing the competence to perform Thematic multi annual Programmes Annual Work Programmes ENISA today and tomorrow – 7 An impact oriented process… 17
ENISA today and tomorrow – 7 Strategic goals adopted by the MB last March: • Building confidence in the information age through increasing the level of NIS in the EU • Facilitating the Internal Market for e-Communication by assisting the institutions to decide the appropriate mix of regulation and other measures (notably about Telecom Framework) • Increasing co-operation between MS in order to reduce the difference in the capability of MS in this area • Increasing the dialogue between the various stakeholders in the EU on NIS • Assisting and responding to requests for assistance from the MS 18
Content • Network and information security in Europe • ENISA’s role • ENISA today and tomorrow • ENISA and FP7 19
ENISA and FP7 - 1 • ENISA must not duplicate any capacity currently existing in Europe • ENISA does not perform research • ENISA cannot be member of any consortium submitting a response to FP7 calls • ENISA must not interfere with the EC selection procedure 20
ENISA and FP7 - 2 • ENISA must advice the EC on research in NIS • ENISA staff may be evaluator of FP7 calls (any EC call) • ENISA staff may be reviewer of FP7 project • ENISA can join the Advisory Board or Strategy Committee of a Consortium after selection for FP7 funding 21
QUESTIONS? 22