A/71/172 I. Norms, rules and principles that characterize the responsible behaviour of States 1. Portugal considers that the security in the network information is i mportant and has been growing. 2. We must highlight the progress in the efforts to implement legislation on networks’ security and integrity, by adopting risk assessment methods, which demand the adoption of adequate cooperative security measures, at tech nical and organizational levels, and the requirement of reporting security violations or integrity loss, which have a significant impact on the functioning of services. 3. At the level of concepts it is important to reinforce the idea that regulation should primarily stem from international rules. 4. At the international level it is important to reinforce information -sharing and the realization of training field exercises in border areas. II. Measures of confidence reinforcement and information-sharing 1. It is crucial to promote information-sharing between all the stakeholders (both public and private), taking into account the wider context of globalization. 2. At the national level, our efforts have been focused on the accomplishment of joint exercises in which public and private entities took part, in the promotion of technical standardization and in the organization of conferences and seminars, some of them with the participation of international speakers. III. Measures of capacity-building 1. It is important to develop measures on capacity-building. Nevertheless, there are difficulties related to the training and maintenance of human resources connected to these activities. 2. There is a need to facilitate the access of knowledge and to promote collective training regarding several aspects, including security, between all the major stakeholders. Serbia [Original: English] [31 May 2016] Understanding the great importance of assuring and developing information security, this area is recognized in the Republic of Serbia as one of the strategic priorities in the information society field. The National Assembly of the Republic of Serbia adopted the Law on Information Security in January 2016. The Law established the competent authority for information security, with tasks to prepare regulations in accordance with national and international standards, cooperate with competent authorities of other countries, and conduct inspection on law enforcement. The Law defined the information and communications technology (ICT) systems of special importance in Serbia, for which operators will have to undertake adequate technical and organizational measures in order to ensure information secur ity. These systems are: (a) ICT systems of public bodies; (b) ICT systems where sensitive personal data are 18/24 16-12486

Select target paragraph3