Task no. Task Method of implementation 3.5. Propose minimum security measures for individual categories of information assets within the security incident response mechanism and ensure their implementation. Update the crisis response plans for the area of cyber security. Regularly review the level of security in government networks and critical infrastructure. 3.6. 3.7. Responsible party Cooperating party Introduce individual measures at the national level with the objective of providing a qualified and effective response to security incidents. Propose and introduce rules to block attacks in order to increase Slovakia’s defensive capabilities against cyberattacks on major information systems from the external environment/Internet, in particular against the dissemination of harmful code from networks of infected computers and the dissemination of harmful activity from the Slovak IP address range. NSA CSA NSA DC/CSIRT.SK NASES SIS Update catalogue pages and supplement as needed to reflect cyberspace security incidents. Conduct internal and external penetration tests of information systems in selected public organisations, including elements of critical information infrastructure and major information systems. NSA 10 MoF Time frame for completion 2018 2016 2017 CGBs continuously DC/CSIRT.SK Operators of critical information infrastructure elements SIS

Select target paragraph3