National strategic framework for cyberspace security Develop a widely shared cyber taxonomy and promote a common understanding of cybersecurity terms and concepts in order to enhance interoperability and ease of communication at the national and international level. Promote the use of questionnaires to evaluate the level of situational awareness among stakeholders so as to identify those in need of further training and education efforts. Sponsor training and education campaign, as well as courses designed to raise situational awareness among public and private sectors personnel, as well as among the general population, in order to spread the knowledge of the threats and the risks stemming from cyberspace, and to promote cyber hygiene and a responsible use of information and communication technologies. Foster Italy’s participation in international initiatives to enhance cybersecurity, both by joining endeavors underway in the International Organizations of which Italy is a member and by strengthening ties with friendly and allied nations. Participate actively in all relevant international forums and working groups aimed at: • At the global level, defining a set of international norms of 22 Enhance and continuously evaluate education and on-thejob training programs, with a view to validating existing cybersecurity management and procedures. Aggregate as much as possible the training and education efforts around already existing Public Administration’s learning centers (such as the ones of the Armed Forces), so as to avoid phenomena such as the “unaware insiders”, and to mitigate vulnerabilities associated with new organizational models such as the “bring your own device” (BYOD). Introduce cybersecurity curricula in schools of all levels, in order to promote cyber hygiene and the Culture of Security. With the support of the academia, finalize measures to improve and disseminate security standards and requirements for ICT systems and networks. conduct and rules of behavior that clearly identify what is legitimate under international law; • At the European level, reinforcing the protection of critical and strategic ICT communications supporting the single market; achieving a common cyber resilience capability; curbing cybercrime; developing a cyberdefence policy and the

Select target paragraph3