Social campaign directed at children, youth and their parents should be largely implemented in educational institutions of all levels. The campaign will be carried out also through the mass media. Mass media – as an important partner in promoting security issues, CRP and popularization of projects contained in the Policy – will improve the effectiveness of execution of the objectives. With its help during the implementation of the Policy it will be also possible to carry out informational and educational campaigns. For this purpose, the national, regional and local media will be involved. The assumption is that as a part of the social campaign information about the ICT security and educational and organizational and legal undertakings within the Policy will be presented on the websites of the Ministry of Administration and Digitization and on the website of the Governmental Computer Security Incident Response Team CERT.GOV.PL. At the same time, an effective communication of content, initiatives and results of the Policy to broad social and professional circles is assumed. 3.6. Principles of technical actions On the basis of procedural and organizational activities (e.g. plan for dealing with risk), the last stage of implementation of the Policy should be technical actions. Their goal will be to reduce the risk of threats from CRP. Performance of this stage will take place through launching specific projects. 3.6.1. Research programmes Supporting research initiatives relating to the ICT security is essential for the effective implementation of the Policy. The formula of support should encourage to conducting joint research by the actors in the sphere of ICT security from the sphere of public administrations, research centres and telecommunications companies and purveyors providing services by electronic means. It is assumed that the entity coordinating the implementation of the Policy provisions in this regard will be the Ministry of Science and Higher Education (MNiSW), as the one responsible for the research and development work. The list of initiatives which take account of the dynamics of the state of knowledge will be defined at the level of specific projects, developed on the basis of the Policy and may be revised at the initiative of the competent bodies responsible for its implementation. 3.6.2. Expansion of ICT security incident response teams in government administration In order to be able to effectively carry out activities related to ensuring the security of CRP, including response to ICT security incidents, it is necessary to provide adequate technical facilities which will not only enable the execution of current tasks, but will Ministry of Administration and Digitisation, Internal Security Agency Page 15 of 24

Select target paragraph3