2014 Report
When comparing the status for the period of 2013 to the previous period, one can state that minor
improvements in several areas compared to the previous period fail to reflect the possibilities for
improvement. Despite improvements in certain areas, stagnation and/or worsening of situation was
seen in most areas. This negative phenomenon can be explained by failure to adhere to the existing
regulatory framework, lack of qualified staff and generally the low security awareness of entities active
in the area of IB in public administration.
Improvement of the situation in the field can be expected after the introduction of legal and
organizational measures, standardized procedures and control mechanisms. This applies, above all,
to the introduction of mandatory classification of information and information systems of public
administration and the subsequent introduction of minimum security measures for their protection, also
defining legal responsibility for the suppliers of these services. Another condition for the improvement
of the overall situation is the introduction of the process of IB management in organizations, risk
management and without doubt, an increase in security awareness and skills of personnel. Preparing
the environment for the introduction of the required measures will require legal changes that were
defined in the legal intention of the Information Security Act approved by the Government; its intention
will also be reflected in the prepared Information Security Act.
26