go to home page | go to navigation | go to page content | go to contact | go to sitemap
Home > Library > EU: A flair for sharing - encouraging information exchange between CERTs > EU: A flair for sharing - encouraging information exchange between CERTs
practice EU: A flair for sharing - encouraging information exchange between CERTs

EU: A flair for sharing - encouraging information exchange between CERTs

357 Visits |
starstarstarempty starempty starIn order to vote, you need to be logged in!
Published date
16 December 2011
Country
EU Institutions
Domain
eGovernment
Languages
English
Author
RAND Europe and time.lex for the European Network and Information Security Agency (ENISA), under the supervision of Silvia Portesi and with contributions from Agris Belasovs, Cosmin Ciobanu, Andrea Dufkova and Nicole Falessi
Publisher
European Network and Information Security Agency (ENISA)
License of the document
Copyright
© European Network and Information Security Agency (ENISA), 2011
Submitted By
ePractice Editorial Team (EUROPEAN DYNAMICS SA) | Belgium
Complete title:
A flair for sharing - encouraging information exchange between CERTs

Description (short summary):
Computer Emergency Response Teams (CERTs) are crucial in cross border co-ordination of computer incidents and in order to perform their important role they need to exchange information. Cross border information exchange requires complex legal factors to be considered. CERTs in different countries have differing legal grounds to request from and transmit information to other teams. Furthermore, the information exchanged might be personal data and therefore subject to specific privacy provisions. In addition, CERTs, including national/governmental CERTs, have varying mandates. 

This study focuses on the legal and regulatory aspects of information sharing and cross-border collaboration of national/governmental CERTs in Europe and performs an assessment of what effects these aspects have on cross-border information sharing between CERTs.  

The conclusion is that there exists a delicate balance of investigating, managing and mitigating computer incidents, whilst respecting rights and obligations provided by certain legal and regulatory frameworks, including data protection, data retention and privacy provisions. 

Number of pages: 86

Highlighted Documents

  • EU: Virtual Physiological Human Projects portfolio 2011

    30 January 2012
    • Austria
    • Belgium
    • Croatia
    • Cyprus
    • Czech Republic
    • Denmark
    • Estonia
    • Finland
    • France
    • Germany
    • Greece
    • Hungary
    • Ireland
    • Italy
    • Netherlands
    • Norway
    • Poland
    • Portugal
    • Romania
    • Slovakia
    • Slovenia
    • Spain
    • Sweden
    • Switzerland
    • United Kingdom
    • EU Institutions
    • Africa
    • Asia
    • North America
    • Oceania
    62 visits | Rating: 3.3/5

    Description (short ...

  • EU: PEPPOL Starter Kit

    19 January 2012
    • Austria
    • Denmark
    • Finland
    • France
    • Germany
    • Greece
    • Italy
    • Norway
    • Portugal
    • Sweden
    • United Kingdom
    • EU Institutions
    63 visits | Rating: 4/5

    Description (short ...

  • EU: ISA Metadata Management Survey Results

    5 January 2012
    • EU Institutions
    81 visits | Rating: 4.3/5

    Description (short summary): In November 2011, the European Commission conducted a survey in the ...

In order to send a message you need to be registered at least one month and have earned more than 150 kudos.
eGovernment