Official Gazette, 79/2007
The Information Systems Security Bureau
Article 17
(1) The Information Systems Security Bureau is the NCSA for bodies and legal persons
referred to in Article 1, paragraph 2 of this Act.
(2) Technical areas of information systems security are as follows:
- information systems security standards
- information systems security accreditations
- managing crypto materials used in the exchange of classified data
- coordination of prevention and response to security threats to information systems
security
Article 18
(1) Information Systems Security Bureau shall use Ordinance to regulate standards for
technical areas of information systems security referred to in Article 17, paragraph 2 of this
Act.
(2) Information Systems Security Bureau shall permanently coordinate standards for
technical areas of information systems security in the Republic of Croatia with international
standards and recommendations and shall take part in the national standardization of
information systems security areas.
Article 19
Information Systems Security Bureau shall do the work of security accreditation of
information systems in cooperation with the Office of the National Security Council.
V NATIONAL CERT
Article 20
(1) CERT is the national authority competent for prevention and protection from computer
threats to public information systems in the Republic of Croatia.
(2) CERT is a separate organizational unit that shall be established within the Croatian
Academic and Research Network (hereinafter: CARNet).
(3) CERT shall harmonize procedures in case of security computer incidents in public
information systems occurring in the Republic of Croatia or in other countries and
organizations when they are related to the Republic of Croatia.
(4) CERT shall harmonize the work of the bodies that are working on the prevention and
protection from computer threats to public information systems security in the Republic of
Croatia and shall determine the rules and modes of joint performance.
6