Main Goals Enhance, on a continuous basis, the CII and IIS networks’ resistance, integrity and trustworthiness. Responsible Entity Deadline Increase, on a continuous basis, the NCSC’s, respectively the GovCERT.CZ’s capacities and reflect personal and knowledge requirements emerging from the country’s cyber security state development. NSA/NCSC Continuously C.3.02 Create a recommending cyber security framework for entities outside the CII and the IIS, i.e. the set of standards and proved procedures that can help the organizations to handle cyber security risks. NSA/NCSC Q3 2015 C.3.03 Keep the cyber security incidents register updated, carry out the incident assessments and suggest necessary measures. Define minimum log requirements that are necessary for reliable cyber security incident ex-post analysis. Develop and implement a honeypot system for cyber threat detection. NSA/NCSC Continuously NSA/NCSC Q4 2015 NSA/NCSC Q3 2016 Map the relationship between the public administration networks and its ISP in order to ensure efficient cooperation during the cyber security incident handling. NSA/NCSC Continuously since Q4 2015 Code Tasks C.3.01 C.3.04 C.3.05 C.3.06 www.GovCERT.CZ 10

Select target paragraph3