Most important strategic documents in place in Slovakia include:
-
“Slovak Security Strategy” (National Council, September 2005).
-
“Draft Concept of Critical Infrastructure in Slovakia and Method of its Protection and
Defence” (MoE, 2007).
-
Concept of the Protection of Classified Information in Slovakia.
The present document complies with the relevant underlying international security
standards and norms, as well as standards issued by the MF SR, the NSA, MoH, the Slovak
Office for Personal Data Protection, and the Slovak Office of Standards, Metrology and
Testing (SOSMT).
2.4
Areas of information security and competences
No comprehensive information security strategy has been adopted in Slovakia so far.
Nevertheless, the issue of information security has been addressed in certain partial areas (in
terms of legislation, competences, organisation and methodology). They are, in particular:
Information society (MF SR) and information security in public administration falling within
the MF SR competence; activities pertaining to information security are carried out by the
Committee for Information Security. The Committee is responsible for “preparation of expert
proposals and standpoints on information security”; i.e. the Committee, inter alia, “proposes
the introduction of security standards, amendments to, or cancellation of, the existing
applicable security standards for the information systems in public administration”.
(http://www.informatizacia.sk).
Protection of classified information (NSA) represents in terms of information security the
area of classified information and systems working with classified information. Despite
traditional terminology used in legislation2, classified information is not classified in terms of
confidentiality only; security requirements for its protection are complex and respect also the
need of ensuring integrity, authenticity and availability. A dual management system is applied
in relation to classified information that represents a cyberspace content and the part of
Slovak digital space which does not work with classified information. For the sake of
protection of Slovak digital space it will therefore be necessary to establish closer cooperation
in the area of classified information protection and information security of the entire Slovak
digital space.
Personal data protection (the Office for Personal Data Protection) and the use of electronic
signature (NSA) are governed by laws3 and the respective institutions supervise their
compliance.
Electronic commerce (MoE) is governed by Act No. 22/2004 Coll. on Electronic Commerce
and on amendments to Act No. 128/2002 Coll. on state inspection in internal market
concerning consumer protection and on amendments to certain acts as amended by Act No.
284/2002 Coll. as amended by Act No. 160/2005 Coll. (hereinafter referred to as “Act No.
22/2004 Coll. on Electronic Commerce”) under which Directive No 2000/31/EC of the
Act No. 215/2004 Coll. on Protection of Classified Information and on amendments to certain acts, as amended by Act No.
638/2005 Coll. and Act No. 255/2006 Coll. and related regulations.
3 Act No. 428/2002 Coll. on Protection of Personal Data as amended, Act No. 215/2002 Coll. on Electronic Signature and on
amendments to certain acts
2
6