There is a political will in the EU to cooperate further with NATO on cyber defence in developing robust and resilient cyber defence capabilities as required within this Policy Framework. Regular staff-to-staff consultations, cross-briefings, as well as possible meetings between the PoliticoMilitary Group and relevant NATO committees, shall help to avoid unnecessary duplication and ensure coherence and complementarity of efforts, in line with the existing framework of cooperation with NATO. The EEAS and EDA, together with the Member States, will develop further cyber defence cooperation between the EU and NATO, with due respect to the institutional framework and the EU's decision-making autonomy: • Exchange of best practice in crisis management as well as military operations and civilian missions; • Work on coherence in the development of cyber defence capability requirements where they overlap, especially in long-term cyber defence capability development; • Enhance cooperation on concepts for cyber defence training and education as well as exercises; • Utilise further the EDA liaison agreement with the NATO Cooperative Cyber Defence Centre of Excellence as an initial platform for enhanced collaboration in multinational cyber defence projects, based on appropriate assessments; • Reinforce cooperation between the CERT-EU and relevant EU cyber defence bodies and the NCIRC (NATO Computer Incident Response Capability) in order to improve situational awareness, information sharing, early warning mechanisms and anticipate threats that could affect both organisations. With regard to other international organisations and relevant EU international partners, the EEAS and the EDA, together with the Member States, will, as appropriate: • Follow strategic developments and hold consultations in cyber defence issues with international partners (international organisations and third countries); • Explore possibilities for cooperation on cyber defence issues, including with third countries participating in CSDP missions and operations; • Continue to support the development of confidence building measures in cybersecurity, to increase transparency and reduce the risk of misperceptions in State behaviour, by promoting the ongoing establishment of international norms in this field. 15585/14 ANNEX FP/oza DG C 2B 13 EN

Select target paragraph3