r
SiSch
de
ecerhr
n
d
ietyit
e
inhsitnr u
n
w
u
wcetiso sa
n
B
O
ens
s
e
p
ter
Ar
oOnnlilin eraibtoersvonf
sTe- daecltn
neep-V
u
K
roecrfea
dhurreen
on
rTI
s
ICe sshat
d
f
t
u
i
e
o
z
C
e
n
B
o
t
s
e
sk
(stre( nrsautlutinnggs
agf
S
ngtäthrk
naem scilhlin
eunningg program
s
e
uanndd
rkr eiritw
a
Aeunshb mes
e
w
r
aanuc)in
fAm Bthee
g
Au
)
AAwwa
(M(m
edeiedni arreenneessssa- aunnd
d PPPP Kmaemap
ag
re
PP-cKaa su
mmppaai nse
ggnnse)n
)
srhrietyit s
eceu
en
SiSch
o
s
i
t
e
c
w
u
inhsitnr T
IC
isetresr
prnosvleid
e ie
D
ic
T
v
r
K
I
se
Au
Afmw
ear
kesn
aems
sk
eoift
IdC
anB eTr cI K
u
detr
heeit Ts-toAm
isrcw ufet
r
hail
lfitn as gagn
g
z
g
n
n
uneh edbse
io
eartu
ese)
mm
am
er
rm
rrddisizi org
a
a
sasn
r
g
a
d
o
d
n
n
r
dtoe ruvincde
SSttaa eevie
wwpP
ie
v
R
-r
lanc
Dpri
peer
P
t
eonv
(uand
isdtel
eriss
e
s
n
e
r
)
g
)
n
a
u
g
te
s
p
tino
Kmaema Veinrw
isatrlatu
eessss- liecnatld. m
n
n
e
e
r
r
a
f
AAwwa at nudndpuöbf
f
nsechssa
i
t
r
s
i
((bWu
I KIC
T-T
(z(ceennt Ssicehceurrhite
rtaralel w yitpsop
Weebb
platft rotratlal
oform
rm))
SeSnes
intissiebi
alisn
von I iderruanisgeut
nh a
KT-A
w
ew
nwen de B
aruesns
et
dern
(End ses ionfsbICildT
u
verbr
auch unsgers
er)
r
tratlal
itpsoproorm
y
e
t
i
m))
h
r
r
ehceu bbplatftof r
T-TSsicel w
e
e
W
I KIC
rtaral
(z(ceennt
ung
nsebsilsd rn
n
i
e
r
e
a
s
t
s
w
heusas pnrsotlveidisetre
etw
e
B
s
i
e
i
d
e
a
nr
c
D
oenbs) )
nagndu
suenrdvi B
ereattri
sitiiesreu egresbaenrdn
p
i
s
l
d
i
o
n
n
b
i
e
d
u
SenSs -cAuusftoramg m
lnutnagn
T
p icke
w
t
o
K
C
l
I
n
e
f
E
n
v
,
voo
ned, deel
(t(rHaad
Awareness measures
Strategic objectives and measures
Objective 1: Strengthening ICT security
culture in Austria
Hypothesis: Many ICT users, customers and
service providers (in trade, development and
at operational level) are not aware of the
threats arising in the context of ICT. They
often lack the understanding and knowledge
required for security-conscious action in
cyberspace.
Strategic objective:
Well-aimed awareness measures in all
relevant target groups and fields of action
will promote and strengthen ICT security
culture in Austria. ICT security culture
ensures that the people involved act by
giving due consideration to the threat
26
situation in each case. As the third pillar of
effective ICT security, ICT security culture
ensures that the activities of all persons
involved will be security-conscious and
commensurate with the threat situation in
each case.
Objective 2: Positive positioning of ICT
security
Hypothesis: People often perceive the
negative aspects of ICT security, e.g.
additional workload, extra costs and
restrictions on users, developers and
operators. If no information is provided
about the extent to which ICT security
measures are necessary and/or appropriate,
this will produce generally negative
attitudes. Emphasis must be placed on
positive aspects such as compliance with
legal and contractual provisions and
requirements, confidentiality, integrity,