1. Introduction The purpose of this document entitled “National Strategy for Information Security in the Slovak Republic” (hereafter referred to as the “NSIS”) is to lay down an information security framework in the Slovak Republic (hereafter referred to as “SR”). With respect to the fact that ensuring information security (the document covers non-classified information only) requires a comprehensive approach, it is necessary to define its basic level, with an option of further upgrading in specific fields. Well-defined information security is important with a focus on the establishment of primary legislative rules in the respective area, as well as with respect to further steps to be taken to address the issue of information security in Slovakia. The strategy defines starting points, allocates competences and proposes aims, priorities and steps to be taken in order to achieve the set purpose. The document also includes a basic description of individual tasks with an aim of ensuring the protection of the entire Slovak digital space, with the exception of classified information falling under the competence of the NSA (National Security Authority). These involve, in particular, measures to avoid leakage of information and its unauthorised use, violation of data integrity, violation of people’s right to protection of personal data; measures to protect against damage and misuse of information and communication systems, harm to reputation of public and private institutions (defamation); as well as measures to enforce applicable Slovak and EU laws. A poor level of protection of information and information and communication technologies raises doubts about reliability and credibility of information available from the Internet environment, a network currently connecting computer systems in more than 250 countries around the world. This world’s largest network provides today access to virtually unlimited information resources, enabling their exchange and providing a multitude of services such as e-mail, file transfer, etc. On that account, reliable operating information systems, reliable information exchange and related information security provide guarantees, to a certain degree, that citizens’ basic rights and freedoms and competitive development of each country are ensured. Implementation of measures envisaged under this strategy will also enhance credibility of electronic services, electronic commerce, as well as competitiveness and credit of our country abroad. 2. Importance of the document 2.1 Importance of information security Information and communication technologies (hereinafter referred to as “ICT”) have a considerable effect on the development of human society. Interconnected information and communication systems form an information and communication infrastructure (hereinafter referred to as “ICI”) through which operations are currently carried out virtually in all areas of public life (transport, finance and banking, energy, telecommunications, healthcare and social security, defence, security, education, culture, public administration operations, etc.). ICT extend beyond the existing ICI. Ensuring information security of a country is essential to the functioning of society. In a broader sense, this means ensuring information security and protection of the entire information space and, from the practical point of view, in particular, the protection of the state ICI and its information content, called a digital space in this 3

Select target paragraph3