BKA CIP Coordination GovCERT Platform Digital Austria CIIP Coordination Cyber incident stakeholders in Austria NSR BKA/BM.I energy ... CERT.at ISK Austrian Trust Circle industry research transport sensitisation BMLVS SKKM BVT ... comprehensive cyber security concept. An overarching structure for cyber security management is largely lacking. While Austria’s cyber security landscape has reached an appropriate degree of maturity in some areas, there is an urgent need to catch up in others. Strategic objectives and measures Objective 1: Optimising the landscape of “cyber security stakeholders and structures” in Austria FüUZ – Command Support Centre AbwAmt – Military CounterIntelligence Service C4 interest associations HNa ISK – Information Security Commission CI operators FüUZ AbwAmt CIIP – Critical InformationInfrastructure Protection Länder, cities, municipalities financy health education CIP – Critical Infrastructure Protection Federal Government HNa – Military Intelligence Service ... BVT – Federal Agency for the Protection of the Constitution and the Combat of Terrorism BK BM.I BK – Federal Criminal Office BKA – Federal Chancellery CERT – Computer Emergency Response Team network of cyber security stakeholders and structures. C4 – Cyber Crime Competence Center Strategic objective: A dense network of cyber security stakeholders and structures in Austria must cover all areas, fields of activity and target groups relating to cyber security and must take into account the short innovation cycles of ICT. In order to implement this objective, it will be necessary to consolidate the strengths of Austria’s present cyber security landscape by ensuring a high level of quality, to eliminate its weaknesses on a long-term basis and to optimise existing structures so as to enhance flexibility. NSR – National Security Council GovCERT – Government Computer Emergency Response Team BMLVS – Federal Ministry of National Defence and Sport BM.I – Federal Ministry of the Interior Measures Hypothesis: At first glance, Austria’s current cyber security landscape appears to be tightly knit and comprehensive. Looking at individual sectors more closely, one can identify smoothly functioning structures and others that function less well. While it might be useful to know about the former, the latter pose a risk to our country. A quality-based and comprehensive approach to cyber security management in Austria may be ensured only by means of a dense Establishing a public cyber partnership: It is impossible for a single body to cover all aspects of cyber security today. A structure is therefore necessary that will bundle Austria’s cyber security activities, promote cooperation, avoid duplication of effort, take advantage of synergies and facilitate initiatives. Since this is a topic of vital national interest, the state and its institutions have to assume responsibility 7

Select target paragraph3