II.2.11.2.2. Ensuring the Fundamental Human Rights and Protection of National “Intellectual Capital” – Knowledge, Information and ICT Infrastructures Building an information society by introducing the necessary measures for information security may not be realised by breaking the fundamental human rights and basic principles of democracy. The basic criteria for information security should be observed in this process: confidentiality, integrity and accessibility (C.I. A.) Measure 2.11.d. Preparation a package for changing the current legislation with the aim for achieving information security from the aspect of ICT, by taking into account, at the same time, the fundamental human rights, freedom of expression, free access to information, protection of personal data. Measure 2.11.e. RE-evaluation / Revision of current legislation and regulatory framework – whether it provides for sufficient protection of the national and individual “information capital” and of the ICT infrastructure. II.2.11.2.3. Protection of Privacy of Communications and Services Privacy and protection of personal data of natural persons – users is an integral part of information society. The user of information and communications services should be completely protected from misusing his/her personal data and privacy, by the entity providing the services or by third parties. This means that the organisation i.e. the service provider will undertake all technical and organisational measures in order to protect the privacy of users in compliance with the current legislation in the country. Measure 2.11.f. Analysis of the current legal framework which has impact on the protection of privacy of electronic communications and services and proposed measures for improving the situation. II.2.11.2.4. Introducing and Improving the Systems for Risk/Crises Management Achieving the necessary (legally defined) conditions for information security for any organisation and individual. Measure 2.11.g. Preparation of a feasibility study about the need for a Monitoring Centre for National and Global Threats and Risks from the aspect of ICT at real time. Measure 2.11.h. Introducing a system for regular tracking, identification and proposing measures for reducing the “organisational sensitiveness / vulnerability to “information threats” in all sectors of the society. Page 33 of 40

Select target paragraph3