ESYS Foundation: Requirements and difficulties for incident information sharing among companies

  • Manuel Carpio profile
    Manuel Carpio
    4 March 2015 - updated 4 years ago
    Total votes: 0
Author(s): 
Foundation ESYS
Year of publication: 
2015


The ESYS Foundation has drawn up this report for the purposes of knowing requirements and communication difficulties in cybersecurity incidents among companies, and between these and the institutions involved in cybersecurity. Based on knowledge of the situation, a set of actions are proposed to be carried out by the Administration and corporations.

The massive use of Information and Communication Technologies (ICT) is already a reality, and their incorporation in all fields: political, financial and personal, signifies that there is a need to tackle their impact on persons, institutions and, of course, corporations.
One of the questions which create greatest concern in companies is the security of all types of communication, information or transaction through the web. Therefore, it is essential to find solutions which guarantee the security of ICT systems in order to, for example: prevent incidents, dispose of reporting systems, implement vulnerability correction capacities, dispose of incident notification systems and to provide those responsible for State Security and companies the legal and technical means for reporting and prosecuting crimes and criminals. The threat of cybercrime or, more generally, cyberattacks is real and is present in Europe, affecting the computer and telecommunications infrastructures both of the public administration and of companies and citizens.


From the viewpoint of companies - the priority perspective of the ESYS Foundation - the situation is most concerning, due to the speed in which new scenarios appear and change.