This leads to an increase in the need for forensic capabilities, a greater flow of information
and an enhancement of the exchange of information with CI operators and the private sector.
The Federal Intelligence Service will have to cover the cyber aspects of its mandate in order
to manage and follow up on incidents relating to ICT resources that are relevant to state
security. This is accomplished with the inclusion of the AFCSO as the FIS technical service
provider. The findings flow via MELANI into the overall analysis of the threat situation.
The technical capacities for 24/7 surveillance of federal networks are to be built up within the
service providers (CERTs). The findings flow via MELANI into the overall analysis of the
threat situation.
Measure 6
An overview of cases (offences) that is as comprehensive as possible is to be compiled at
national level and inter-cantonal clusters of cases are to be coordinated. The information
obtained from the case overview and the findings on clusters of cases, particularly from the
technical and operational analysis of prosecution in criminal proceedings, is to be integrated
in the overall picture of the situation. (FDJP)
Implementation
In cooperation with the cantons, the FDJP is to submit a concept for managing a
comprehensive overview of cases (offences) by the end of 2016. This concept also includes
the clarification of interfaces with other players in the area of minimising cyber risks,
coordination with the situation picture and the resources and legal adjustments required at
federal and cantonal level for implementing the concept.
The information obtained from the overview of cases (offences) and the findings on clusters
of cases from the technical and operational analysis of prosecution in criminal proceedings
flow via MELANI into the overall analysis of the threat situation.
4.3.4 Sphere of action 4: Competence building
Identification, analysis and evaluation
All players from the private sector, society and the authorities are to be made aware of cyber
risks and receive training so that they can recognise risks and take measures to minimise
their risk exposure.
Performance targets and planning
In order to raise awareness of cyber risks and foster the correct handling thereof, awareness
campaigns and training measures are to be prepared – taking account of already existing
approaches and initiatives – and then implemented in the respective areas of responsibility.
This is closely coordinated with the implementation of the Federal Council's strategy for an
information society in Switzerland.
Measures
35/42