Policy Paper on Cyber Security 2015 - 2017
plans coordinated measures and actions and the mutual exchange of related information
with cyberattacks.
Increase the level of knowledge, skills and capacities for expertise in the area of cyber security
Activities are going to be organized in the short and middle-term period in order to increase the
necessary human resources capacities in the area of cyber security. Regulations will be developed,
which will include the concept of cyber security in the elementary schools, high schools and
institutions of higher education. Auditing measures on cyber security in the internal auditing
processes of the organizations will be discussed as well.
a) In the framework of strengthening the institutions, will increase the technical capacities of
human resources. This will be done through selected training programs that will aim at
training participants in preventing attacks, minimizing damages, providing an effective
response to information security incidents.
b) Active participation in international conferences, meetings, seminars and exercises
to do with cyber security. Exchange of information, analysis, experience,
creation of joint projects, evaluation of technologies and security systems
are seen not only as an opportunity to increase cyber security in public institutions, but also
as an investment for the development and growth of successive generation capacities.
Identification and Protection of Critical Information Infrastructure (CII) in Albania
The development of technology and the continuous integration of the systems has resulted that
some of the systems have become vital for the operation of the digital society, regarding them as
critical infrastructure.
a) Developing the necessary procedures and processes for the identification, inventory and
ensuring their security has become a priority. Developing and implementation of
minimum procedures and standards will be mandatory.
b) Due to the fact that these are not only public systems, but could belong also to the private
sector, the cooperation and exchange of information with the private sector will be
encouraged in order to ensure the basic security for these systems. With reference to this
23