Cyber security cannot be considered a purely technical matter. Reliable, secure, and resilient infrastructure demands a corresponding strategy, properly implemented policies and processes, a comprehensive legal framework, active cooperation, and adequate human resources – including knowledgeable and prepared management. A comprehensive view of cyber security is thus fundamental. Only when the Czech Republic evaluates cyber threats in a wider context can it effectively face them. A whole series of non-technical aspects therefore need to be taken into consideration when providing cyber security. Systematic and rigorous risk evaluation that includes both technical and non-technical aspects of cyber security is necessary to create and maintain resilient infrastructure. The basic question is supply chain security, meaning the need to determine whether external actors and individuals that influence the state’s most important infrastructure are a risk to security. The provision of high-level cyber security will entail corresponding costs that must be incurred not only to benefit national security, but also in association with requirements stemming from membership in international organizations. Sufficient financial resources are necessary to fight cyber security threats and secure infrastructure and technological development, and to offer prepared and trained experts adequate remuneration while providing for their ongoing training. 1.3 Effective Strategic Communication The Czech Republic understands the importance of its strategic cyber security communication, which has significantly increased in recent years. The country’s cyber security activities must be continually communicated with all national partners, including experts and the public. Intensive Strategic Communication communication should be established, both The state’s strategic communication is domestically and internationally. synchronized activities, actions, and communication by individual state bodies to reach the target audience. It provides information coherently through unified messaging among all participating bodies over the long term. The goal is to prevent the abuse of an information vacuum for alternative interpretations. In many cases, the goal of cyber attackers is not just an immediate negative impact on trust, integrity, or access to information and communication systems and devices. Attackers strive to achieve a psychological effect, and cyberattacks are used in various disinformation and influence operations. Their priority is to create uncertainty, fear, the feeling of a loss of safety in society, or to reduce civic morale and trust among citizens in public institutions and the overall democratic system. The Czech Republic thus must understand the information environment that surrounds it and the dynamics and complexities of the cyber security threats it is facing. It can then establish a coherent dialogue and communication with the public. All acts by the state must be coordinated across all relevant state institutions to maintain citizens’ trust in the state. Regularly communicating cyber security activities and the fulfilment of the Czech cyber security policy is important, as is preparation, agility, and the ability to react to a crisis. 12

Select target paragraph3