cyber security incidents either in an automated manner or secured through direct communication as appropriate. It will also identify, analyze and classify security incidents in the cyber infrastructure, as per the area of competence. CERT-RO will develop proposals to amend the legislative framework to foster the development of cyber security infrastructure that provides public utility functionality or information society services. It will also continue to develop the partnership with ENISA on combating cyber incidents and to establish task forces to work jointly at EU level in order to increase the speed of response to attacks. To achieve a European platform on cybercrime, Europol in cooperation with the European Commission has called for the integration of all relevant EU platforms in only one. The platform should serve as a center for collecting and storing information about cyber-attacks. It will be the major element in the European Centre CyberCrime. At the national level it will be carried out the analysis and optimization of existing security platforms, eventually merging and consolidating their national platform and access to Europol and staff training in fighting against cybercrime. The implementation, monitoring and interconnection between the European and national platforms will be achieved. In order to intensify the fight against cybercrime at international and European level it will be enhanced the cooperation between EU Member States in the fight against cyber-attacks. In this respect, in the EU we will need to create a European forum for discussion between the national government to integrate risk management, and to create a public-private partnership. Regarding the transatlantic cooperation it is necessary to improve the EU-US relations for the application of the European Commission's cyber security plan and to have an ongoing dialogue and exchange of information with the U.S. In this matter, at national level, we will consider implementing processes of security risk management in the public administration. At the same time, we will aim at enhancing consultations with similar bodies in the EU and U.S., and at exchanging specialists with the U.S. and other EU countries for 1-2 years, hiring these specialists and their active involvement when they return home. 2.2.3 National context Cyber Security Approach in Romania Risks of cyber incidents occurrence are caused by human or procedural reasons. Thus, some of the incidents were identified as the main cause of the lack of consistent security policies to protect data that are taken, handled, processed and stored by computer networks. A positive development in the field of cyber security is the setting up of CERT -RO (http://www.cert-ro.eu), which is the national contact point for similar structures and is responsible for the development and distribution of public policies to prevent and fight against incidents taking place in the national cyber infrastructure. Also, Romania's cyber security strategy adopted by Decision no. 271/2013 sets out the objectives, principles and main directions of action for understanding, preventing and deterring threats, vulnerabilities and cyber security risks and promotes Romania's interests, values and national objectives in cyberspace. The strategy and action plan aim at setting targets for cyber security and lines of action for the coming years. The Romanian approach is aligned to the guidelines proposed by the European Commission in the Digital Agenda and its Pillar III - Trust and Security – as well as to the progress of other European Union Member States. The topic "Network Information Security" is a real priority of both the European Commission and national structures. Raising cybersecurity awareness, issues such as viruses and malware, how to use passwords, social engineering - blogging, how to use your computer at home, how to use "social media", how to work Page 47 of 172

Select target paragraph3