A/68/156
“critical information infrastructure sites” and “cyberspace”, and for the definition of
the primary cyberthreats to national security, the main areas of State policy and the
tasks of the entities responsible for national security in this field.
3.
Adoption of international frameworks to strengthen global
information and telecommunications systems security
Ukraine has a regulatory and legal framework to protect information in
information and telecommunications systems whose principles and approaches to
structuring protection are harmonized with International Organization for
Standardization 15408/Common Criteria for Information Technology Security
Evaluation.
Given that computer crime has escalated beyond national borders and grown
into an international phenomenon, Ukraine cooperates with foreign law enforcement
agencies on an ongoing basis.
In addition, under projects and programmes with the Organization for Security
and Co-operation in Europe, the Parliamentary Assembly of the Council of Europe,
the Council of Europe and the NATO Partnership for Peace, and in the context of
bilateral agreements, Ukraine is working to secure international information security.
4.
Possible measures that could be taken by the international
community to strengthen information security at the global level
Owing to the transnational nature of computer crime, it may be time to draft a
set of international principles to strengthen information and telecommunications
network security and international security policy overall, and to enhance ways,
means and resources for information security threat detection, assessment and
forecasting.
One of the main areas of global information security involves the drafting and
adoption of international legal instruments to eliminate imprecise information
security terminology. An important aspect of this would be to determine the
international legal status of cyberspace and to enshrine, in regulatory and legal
instruments, States’ jurisdictions with regard to the national components of this
space (comparable to States’ air space and territorial waters) and the further
regulation of issues related to cyberwar, cyberaggression, and so on.
Another key aspect of standard-setting in the field would be the adoption of a
unified concept of cybercrime, as well as a clear classification of the relevant
offences.
Other measures that the international community could take to strengthen
global information security might include harmonization of the regulatory and legal
framework for information protection; development of agreed criteria and methods
for assessing the effectiveness of information security systems and resources;
mutual recognition of information security certificates; and expanded cooperation in
addressing research, technical and legal information security issues. At the same
time, stepping up cooperation among national law enforcement agencies to prevent,
suppress and prosecute computer crimes is crucial to successful cooperation.
14
13-39735