cyber security in europe - faculteit rechtsgeleerdheid · steve purser head of core operations...

23
www.enisa.europa.eu Cyber Security in Europe Steve Purser Head of Core Operations Dept. - ENISA

Upload: others

Post on 23-Sep-2020

3 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu

Cyber Security in Europe

Steve PurserHead of Core Operations Dept. - ENISA

Page 2: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 2

Agenda

• About ENISA

• The ENISA Threat Landscape

• National Cyber Security Strategies

• Supporting the CERT Community

• Pan European Exercises

• Protecting EU Critical Information Infrastructure

2

Page 3: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 3

Hands on

Policy ImplementationRecommendations

MobilisingCommunities

ENISA Activities

Page 4: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 4

Agenda

• About ENISA

• The ENISA Threat Landscape

• National Cyber Security Strategies

• Supporting the CERT Community

• Pan European Exercises

• Protecting EU Critical Information Infrastructure

4

Page 5: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 5

The ENISA Threat Landscape

• The ENISA Threat Landscape provides an overview of threats and current and emerging trends.

• It is based on publicly available data and provides an independent view on observed threats, threat agents and threat trends.

• Over 250 recent reports from a variety of resources have been analysed.

Page 6: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 6

Developed

Overview

Page 7: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 7

Agenda

• About ENISA

• The ENISA Threat Landscape

• National Cyber Security Strategies

• Supporting the CERT Community

• Pan European Exercises

• Protecting EU Critical Information Infrastructure

7

Page 8: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 8

National Cyber Security Strategies in the EU

Source: http://www.enisa.europa.eu/activities/Resilience-and-CIIP/national-cyber-security-strategies-ncsss/national-cyber-security-strategies-in-the-world

19 EU MS have a strategy

Page 9: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 9

High level goals

Page 10: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 10

Long term impact

Page 11: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 11

ENISA doctrine: NCSS Lifecycle

Design

Implement

Evaluate

Adjust2012 Good

practice

Guide

2014

Evaluation

framework

2012 Good

practice

Guide

Page 12: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 12

Agenda

• About ENISA

• The ENISA Threat Landscape

• National Cyber Security Strategies

• Supporting the CERT Community

• Pan European Exercises

• Protecting EU Critical Information Infrastructure

12

Page 13: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 13

CERT Community building

Page 14: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 14

CERT Training material available

https://www.enisa.europa.eu/activities/cert/support/exercise

Page 15: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 15

Agenda

• About ENISA

• The ENISA Threat Landscape

• National Cyber Security Strategies

• Supporting the CERT Community

• Pan European Exercises

• Protecting EU Critical Information Infrastructure

15

Page 16: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 16

• Cyber Europe 2010– Europe’s first multinational cybersecurity exercise between

public sector agencies

• Joint EU-US Cybersecurity Exercise 2011 – First transatlantic cooperation exercise

– Table-top exercise - ‘what-if’ scenarios

• Cyber Europe 2012 – Large scale realistic cyber-crisis exercise

– Public and private sectors involved

• Cyber Europe 2014– In the strategic phase

• Joint EU-US Cybersecurity Exercise 2014/2015- In preparation phase

Cybersecurity Exercises Supported by ENISA

Page 17: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 17

Agenda

• About ENISA

• The ENISA Threat Landscape

• National Cyber Security Strategies

• Supporting the CERT Community

• Pan European Exercises

• Protecting EU Critical Information Infrastructure

17

Page 18: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 18

Methodologies for the Identification of Critical Information Infrastructure Assets and Services

Help MS to

• Develop methodologies for identification of CIIs assets and services

• Assess internal and external interdependencies

• Collaborate with all stakeholders

• Prepare to face future challenges

Page 19: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 19

Critical Information Infrastructures Protection

• Energy: ICS SCADA and Smart Grids

• Finance Sector

• eHealth

• Smart Transport

• Maritime

• Telecommunications

Page 20: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 20

Example: EU wide Security Breach Notifications

• Annual reports about large outages in EU’s telecoms

More information on http://www.enisa.europa.eu/activities/Resilience-and-CIIP/Incidents-reporting

Page 21: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 21

2nd ENISA National Cyber Security Conference

13th of May in Riga

Save the date!!

Page 22: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.eu 22

Conclusions

• ENISA works together with operational communities to identify pragmatic solutions to current security issues.

• We issue concrete advice on how to improve system security and which implementations to favour.

• The solutions we propose are based on industry best practice and are therefore known to work.

• By working in this way, we put security to the service of EU industry and improve the competitiveness of our industries.

Page 23: Cyber Security in Europe - Faculteit Rechtsgeleerdheid · Steve Purser Head of Core Operations Dept. - ENISA. 2 Agenda • About ENISA • The ENISA Threat Landscape • National

www.enisa.europa.euEuropean Union Agency for Network and Information Security

Follow ENISA:

Thank you for your attention

For more information visit: http://www.enisa.europa.eu