Goal 9: Informing, alerting and warning The competent federal authorities will provide information on current threats and risks tailored to certain target groups. All those in charge of IT systems and information infrastructures, from the ordinary private user to the IT administrator in companies, public authorities and other organizations, will get access to appropriate information. As part of the national IT crisis management concept of the Federal Government, an alert and warning system will be established to inform all those potentially affected in a rapid and comprehensive manner of imminent attacks against or severe disruptions of information infrastructures. This will help respond in time and prevent large-scale damage. Goal 10: Responding to IT security incidents The federal IT crisis response centre will enable all competent bodies to respond rapidly to serious incidents. It provides incident analyses and assessments to all relevant bodies and coordinates the cooperation with local and sector-internal crisis management organizations. If in the case of incidents affecting larger parts of the federal administration it is necessary to take measures that require greater powers than those assigned to local authorities, a coordinating body of the federal ministries will agree on the necessary measures and commission the IT crisis response centre to enforce their implementation. A prerequisite for being able to respond effectively to IT security incidents are well-prepared emergency plans and clearly defined procedures. The Federal Government requires such emergency plans to provide also for coordination and cooperation with national crisis management, in addition to regulations concerning crisis management in companies and public authorities at local level. Page 14

Select target paragraph3