DR. PLAMEN VATCHKOV
Chairman of SAITC
“Premio Ettore Majorana – Erice – Scienza per la Pace”, Pontifical Academy of Sciences, Vatican, 17 December 2008
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
WINDS OF WARFARE IN CYBER SPACE:
INEVITABLE OR PREDICTABLE
New age of uncertainty: cyber warfare and its
globalization;
cyber espionage; web vandalism; propaganda;
gathering data; disturbed denial of service attacks;
equipment disruption; critical infrastructure attacks;
compromised counterfeit hardware
Special measures: cybersecurity;
Main priorities: security of network infrastructures and
secure government services.
2
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
INTERNET USERS (% OF POPULATION)
74%
26%
Europe
Rest of world
Source: Internet World Stats, June 2008
3
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
BROADBAND ACCESS WORLDWIDE
Source: Point Topic, 2008 July
4
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
GLOBAL OVERVIEW
More than 80 million hacker attacks take place every day
worldwide;
More than 100 000 viruses are well known;
More than USD 20 billion losses experience private companies
worldwide due to hacker attacks (including the anti-virus software);
As of October 2008* the cybercrimes statistics is as follows:
e-mail connections per day: 2.5 billion;
spam rate: 69.7 %;
virus rate: 1 in 141.4;
phishing rate: 1 in 233.3
malicious websites/per day 5.424
* Messagelabs
5
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
CALL FOR THE EUROPEAN UNION
Convention against cybercrimes of Council of Europe, 23.11.2001
EU Communication on fighting spam, spyware and malicious software,
15.11.2006 (due to enhanced illegal online activities – further action)
EU Communication “Towards a general policy on the fight against cyber
crime”, 22.05.2007 (improvement of co-operation between authorities
and operators)
EU Programme for CIP (EPCIP), 12.12.2006
Directive for identification of European critical infrastructures will be adopted
soon, taking into account 2 priority sectors – transport and energy. Criteria
for identification of critical ICTs infrastructures are currently assessed and will
be added to the scope of this directive at a later stage (3 years later)
Proposal for an EU decision on creating a Critical Infrastructure Warning
Information Network
6
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
STATE OF PLAY (BULGARIA)
Identifying the necessity at a national level:
Brief overview of the Bulgarian ICT market *:
2008: more than 3mln. Internet users compared to 1,8mln. in
2005
as of 2007 broadband access by households continued its
growth and reached 22.6%
as of June 2008 the number of broadband access lines
increased by approximately 26%
Vulnerabilities and most common cyber incidents for ICT
resources: public and private sectors
Emerging Cyber Threats for 2009: national and international
*Alpha research
7
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
INTERACTION BETWEEN BUSINESS AND
PUBLIC AUTHORITIES IN 2005 AND 2007
Source: NSI
8
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
THE BULGARIAN NIS EXPERIENCE
1. ELABORATION OF CYBERSECURITY CULTURE;
2. LEGAL FRAMEWORKS;
3. OVERALL INCIDENT CO-ORDINATION AND CRISIS
RESPONSE;
4. INTERNATIONAL CO-OPERATION.
9
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
PAVING THE WAY
1. ELABORATION OF CYBER SECURITY CULTURE - RAISING THE AWARENESS
OF ALL STAKEHOLDERS:
National Electronic Communication Network
(NECN): responsibility of the State Agency for
Information Technology and Communications
10
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
EFFORTS CONTINUE…
2. LEGAL FRAMEWORKS
2.1 Preventive measures:
basic legislative texts
(Electronic Governance Act/GovCERT)
2.2 Remedial measures:
investigation and prosecution
(Bulgarian Penal Code)
3. OVERALL INCIDENT CO-ORDINATION AND CRISIS RESPONSE
Bulgarian hi-tech security services (24/7 High Tech Crime Network)
11
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
…AND LITTLE BY LITTLE MORE RESULTS
4. INTERNATIONAL CO-OPERATION
4.1 Existing (ENISA, CERT-Hungary
and a Bulgarian private company,
CEENET)
Establishment of a Government
CERT in Bulgaria www.govcert.bg
Recruitment, retention and training
security professionals for the
government (already started)
12
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
MAIN FUNCTIONS AND SERVICES OF THE BULGARIAN
GOVERNMENT CERT
FUNCTIONS
SERVICE
Notification and Publications
Co-operation
Signalizing and Warning
Technical Support;
Co-ordination
Incidents Handling
Consultancy
Strategic Recommendations
Risk Analysis
Dissemination of
Information
13
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
INTERACTION OF GOV-CERT WITH THE OTHER
UNITS IN THE FIELD OF INFORMATION SECURITY
Register of
Certified
Systems
Information
Security
Database
Portal
Register of
Standards
GovPKI
Unified Environment
for Exchange of Electronic
Documents
Standards Council
Information Security
Council
Monitoring Unit
Polygon
Environment for
Tests and
Trials
Disaster Recovery
Centers
14
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
ALLOCATION OF SAITC ACTIVITIES RELATED
TO THE INFORMATION SECURITY
Expert-advisory Activity:
elaboration of
normative acts;
selection of standards;
analyses,
recommendations, etc.
Administrative Unit:
carrying out of state
policy;
administering;
organisation of events;
contacts with other
administrations.
Operational Unit:
operation of
information systems;
data administering,
etc.
15
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
MORE ACHIEVEMENTS SO FAR AND BEYOND…
4.2 Existing co-operation (ITU):
ITU National cybersecurity/CIIP
Self-Assessment Toolkit (main
results)
ITU Regional cybersecurity
Forum for Europe and CIS,
7-9 Oct, Sofia
4.3 Anticipated co-operation
(IMPACT Initiative)
16
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
MORE KEY ELEMENTS OF THE
BULGARIAN GOVERNMENT NIS POLICY
The information security measures can be realized at
two levels:
1)
Central Body Level (NECN, Gov-CERT):
establishment of Unified Environment for Secure Exchange
of Electronic Documents (SEED)
Implementation of a National e-Governance Data Model for
public administration through centrally managed registers
for unified primary metadata
establishment of Central Unit for Monitoring of Network
and Information Security
2) Administrative Body Level
specific certification of administrative information systems
and networks
17
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
NATIONAL ADMINISTRATIVE DATA MODEL
NORMATIVE TEXTS
Register of the Registers
and Data
Register of the
Unified Definitions
of the Services
Register of
Accredited Persons
and Certified
Systems
Register of the
Information Objects
Register of the
Electronic Services
National
Nomenclature of
Documents
National
Nomenclature of
Records
Register of Standards
18
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
OUR ULTIMATE GOAL
International Information Infrastructure Protection:
Bulgaria could be designated as an ITU Cybersecurity Centre (part
of IMPACT Initiative) to promote cyber security principles and
culture, both nationally and in the South-East European region
(grounds for its establishment);
The Centre could foster co-ordination and training activities in the
field of cyber crime and provide experts for consulting governments
on the last trends and potential threats, cyber security technology,
policies and strategies.
Development of a National Cybersecurity Strategy:
Prevention=Public;
Protection=Private;
Prosecution=Partnership;
Response=Relationship.
19
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
THE WAY FORWARD
“There are some things where the
government is absolutely inevitable, which
we
can
not
get
along
without
comprehensive state action. But there are
many things – producing consumer goods,
producing a wide range of entertainment,
producing a wide level of cultural activity –
where
the
market
system,
which
independent activity is also important, so I
react pragmatically. Where the market
works, I am for that. Where the government
is necessary, I am for that. I’m in favour of
whatever works in the particular case”.
by John Kenneth Galbraith
20
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS
THANK YOU FOR YOUR ATTENTION!
http://www.daits.government.bg/
21
STATE AGENCY FOR INFORMATION TECHNOLOGY AND COMMUNICATIONS