A/71/172
I.
Norms, rules and principles that characterize the responsible behaviour of States
1.
Portugal considers that the security in the network information is i mportant
and has been growing.
2.
We must highlight the progress in the efforts to implement legislation on
networks’ security and integrity, by adopting risk assessment methods, which
demand the adoption of adequate cooperative security measures, at tech nical and
organizational levels, and the requirement of reporting security violations or
integrity loss, which have a significant impact on the functioning of services.
3.
At the level of concepts it is important to reinforce the idea that regulation
should primarily stem from international rules.
4.
At the international level it is important to reinforce information -sharing and
the realization of training field exercises in border areas.
II.
Measures of confidence reinforcement and information-sharing
1.
It is crucial to promote information-sharing between all the stakeholders (both
public and private), taking into account the wider context of globalization.
2.
At the national level, our efforts have been focused on the accomplishment of
joint exercises in which public and private entities took part, in the promotion of
technical standardization and in the organization of conferences and seminars, some
of them with the participation of international speakers.
III.
Measures of capacity-building
1.
It is important to develop measures on capacity-building. Nevertheless, there
are difficulties related to the training and maintenance of human resources
connected to these activities.
2.
There is a need to facilitate the access of knowledge and to promote collective
training regarding several aspects, including security, between all the major
stakeholders.
Serbia
[Original: English]
[31 May 2016]
Understanding the great importance of assuring and developing information
security, this area is recognized in the Republic of Serbia as one of the strategic
priorities in the information society field.
The National Assembly of the Republic of Serbia adopted the Law on
Information Security in January 2016. The Law established the competent authority
for information security, with tasks to prepare regulations in accordance with
national and international standards, cooperate with competent authorities of other
countries, and conduct inspection on law enforcement. The Law defined the
information and communications technology (ICT) systems of special importance in
Serbia, for which operators will have to undertake adequate technical and
organizational measures in order to ensure information secur ity. These systems are:
(a) ICT systems of public bodies; (b) ICT systems where sensitive personal data are
18/24
16-12486