90 likes | 423 Views
NATO unclassified. Cyber Defence a real threat!. Strategic issue. Riga Summit Declaration/Defence Ministers June 2007: need for improved protection of information systems of critical importance to the Alliance Estonia cyber attack 27 April till end of May 2007
E N D
NATO unclassified Cyber Defence a real threat!
Strategic issue • Riga Summit Declaration/Defence Ministers June 2007: need for improved protection of information systems of critical importance to the Alliance • Estonia cyber attack 27 April till end of May 2007 • NATO CONCEPTS (IMSM-0387-2006) by ACT, support of ACO • Extended protection Concept • Asymmetric Warfare • Cyber Defence • Cyber Defence = DIMS’s strategic issue • NC3B tasker to NCSA: urgent examination • NHQC3S Recommendations to MC NATO UNCLASSIFIED
NCSA examination • NC3B tasked NCSA to: • Examine lessons learned from recent attacks • Identify weaknesses/shortcomings in NATO systems • Provide report NATO UNCLASSIFIED
Threats • Sophisticated Attacks • Global threat • Insider threat NATO UNCLASSIFIED
Current Situation • Targeted attacks occurring • Potential for information leakage • No NATO-wide security management overview NATO UNCLASSIFIED
Shortfalls • Lack of NATO cyber intelligence • No single NATO-wide CIS provider • NCIRC not at FOC • Business continuity plans to be reviewed NATO UNCLASSIFIED
Recommendations • NCIRC accelerated and expanded • Establish Cyber Defence Coordination and Support Center • Secure communication between cyber defence centers, to include national centers • Standardize Business Continuity and Disaster Recovery programmes (contingency planning) • Establish NATO cyber threat levels • Centralization of NATO CIS provision and configuration management as medium term goal • Utilize cyber defence in military exercises NATO UNCLASSIFIED
Industry • Networked enabled capability could/will lead to more complex cyber defence • What could industry/NCOIC do? NATO UNCLASSIFIED