cyber security incidents either in an automated manner or secured through direct communication as
appropriate. It will also identify, analyze and classify security incidents in the cyber infrastructure, as per
the area of competence. CERT-RO will develop proposals to amend the legislative framework to foster the
development of cyber security infrastructure that provides public utility functionality or information
society services. It will also continue to develop the partnership with ENISA on combating cyber incidents
and to establish task forces to work jointly at EU level in order to increase the speed of response to
attacks.
To achieve a European platform on cybercrime, Europol in cooperation with the European Commission
has called for the integration of all relevant EU platforms in only one. The platform should serve as a
center for collecting and storing information about cyber-attacks. It will be the major element in the
European Centre CyberCrime. At the national level it will be carried out the analysis and optimization of
existing security platforms, eventually merging and consolidating their national platform and access to
Europol and staff training in fighting against cybercrime. The implementation, monitoring and
interconnection between the European and national platforms will be achieved.
In order to intensify the fight against cybercrime at international and European level it will be enhanced
the cooperation between EU Member States in the fight against cyber-attacks. In this respect, in the EU
we will need to create a European forum for discussion between the national government to integrate risk
management, and to create a public-private partnership. Regarding the transatlantic cooperation it is
necessary to improve the EU-US relations for the application of the European Commission's cyber security
plan and to have an ongoing dialogue and exchange of information with the U.S.
In this matter, at national level, we will consider implementing processes of security risk management in
the public administration. At the same time, we will aim at enhancing consultations with similar bodies in
the EU and U.S., and at exchanging specialists with the U.S. and other EU countries for 1-2 years, hiring
these specialists and their active involvement when they return home.
2.2.3 National context
Cyber Security Approach in Romania
Risks of cyber incidents occurrence are caused by human or procedural reasons. Thus, some of the
incidents were identified as the main cause of the lack of consistent security policies to protect data that
are taken, handled, processed and stored by computer networks.
A positive development in the field of cyber security is the setting up of CERT -RO (http://www.cert-ro.eu),
which is the national contact point for similar structures and is responsible for the development and
distribution of public policies to prevent and fight against incidents taking place in the national cyber
infrastructure.
Also, Romania's cyber security strategy adopted by Decision no. 271/2013 sets out the objectives,
principles and main directions of action for understanding, preventing and deterring threats,
vulnerabilities and cyber security risks and promotes Romania's interests, values and national objectives in
cyberspace. The strategy and action plan aim at setting targets for cyber security and lines of action for
the coming years. The Romanian approach is aligned to the guidelines proposed by the European
Commission in the Digital Agenda and its Pillar III - Trust and Security – as well as to the progress of other
European Union Member States.
The topic "Network Information Security" is a real priority of both the European Commission and national
structures. Raising cybersecurity awareness, issues such as viruses and malware, how to use passwords,
social engineering - blogging, how to use your computer at home, how to use "social media", how to work
Page 47 of 172