Cyber security cannot be considered a purely technical matter. Reliable, secure,
and resilient infrastructure demands a corresponding strategy, properly implemented
policies and processes, a comprehensive legal framework, active cooperation, and
adequate human resources – including knowledgeable and prepared management.
A comprehensive view of cyber security is thus fundamental. Only when the Czech
Republic evaluates cyber threats in a wider context can it effectively face them. A
whole series of non-technical aspects therefore need to be taken into consideration
when providing cyber security. Systematic and rigorous risk evaluation that includes
both technical and non-technical aspects of cyber security is necessary to create and
maintain resilient infrastructure. The basic question is supply chain security, meaning
the need to determine whether external actors and individuals that influence the
state’s most important infrastructure are a risk to security.
The provision of high-level cyber security will entail corresponding costs that
must be incurred not only to benefit national security, but also in association with
requirements stemming from membership in international organizations. Sufficient
financial resources are necessary to fight cyber security threats and secure
infrastructure and technological development, and to offer prepared and trained
experts adequate remuneration while providing for their ongoing training.
1.3 Effective Strategic Communication
The Czech Republic understands the importance of its strategic cyber security
communication, which has significantly increased in recent years. The country’s cyber
security activities must be continually communicated with all national partners,
including experts and the public. Intensive
Strategic Communication
communication should be established, both
The state’s strategic communication is
domestically and internationally.
synchronized activities, actions, and
communication by individual state
bodies to reach the target audience. It
provides
information
coherently
through unified messaging among all
participating bodies over the long term.
The goal is to prevent the abuse of an
information vacuum for alternative
interpretations.
In many cases, the goal of cyber
attackers is not just an immediate negative
impact on trust, integrity, or access to
information and communication systems
and devices. Attackers strive to achieve a
psychological effect, and cyberattacks are
used in various disinformation and influence
operations. Their priority is to create uncertainty, fear, the feeling of a loss of safety in
society, or to reduce civic morale and trust among citizens in public institutions and
the overall democratic system.
The Czech Republic thus must understand the information environment that
surrounds it and the dynamics and complexities of the cyber security threats it is
facing. It can then establish a coherent dialogue and communication with the public.
All acts by the state must be coordinated across all relevant state institutions to
maintain citizens’ trust in the state. Regularly communicating cyber security activities
and the fulfilment of the Czech cyber security policy is important, as is preparation,
agility, and the ability to react to a crisis.
12