Government CERT activities: Development of the Threat Hunting Network Development of forensic analyses A major new initiative was the launch of the Network Threat Hunting service, which provides contractual, pro-active detection of malicious activity and operational deficiencies within partners’ infrastructure over a specified period. NÚKIB also expanded its technical services with certification in early 2023 of the Analytical Information System for the forensic analysis of reported incidents involving classified information. Once internal testing had concluded, a pilot probe was deployed within a regulated entity, and related processes were developed from the information obtained. Conceptual development of the Host Threat Hunting service also commenced in 2023, with plans for a pilot project launch next year. This improvement augmented the capabilities of forensic analysis technicians, especially in the areas of mobile devices and cloud technologies. In 2023, NÚKIB advanced its projects designed to fortify the Czech Republic’s cybersecurity and information security. Capacity building in industrial and management systems In view of the conflicts in Ukraine and Israel, NÚKIB intensified its work on building long-term capacity, focusing on industrial control and management systems. In 2023, the primary focus was on audit and inspection activities within the gas industry and the telecommunications and energy sectors. NÚKIB also provided technical consultations to private entities likely to be identified as part of critical information infrastructure in the future. Specialists from NÚKIB consequently underwent internal training within those organisations and participated in the functional evaluation of internal security policies. Development and rebranding of the NÚKIB Portal In 2023, NÚKIB continued developing its non-public web platform, which was rebranded to “NÚKIB Portal”. The platform disseminates non-public information to regulated entities and partners. This year, new public authorities and entities that manage critical information infrastructure or important information systems were enrolled on the platform. These consisted mainly of entities from the transport sector, universities, regional authorities and official state bodies. In total, 71 organisations were enrolled, with plans to register additional entities ongoing. 46 Strengthening penetration testing Last year, NÚKIB also reinforced its penetration testing activities. In addition to improving testing techniques, the Agency introduced a new physical penetration test service for evaluating the physical security, worker behaviour and building security at an organisation. The continuous vulnerability scanning service was also enhanced, enabling ongoing monitoring for known vulnerabilities through automated scanning tools.

Select target paragraph3