Denmark Country Report
Total Page:16
File Type:pdf, Size:1020Kb
Country Reports January 10 Denmark Country Report www.enisa.europa.eu 2 Denmark Country Report About ENISA The European Network and Information Security Agency (ENISA) is an EU agency created to advance the functioning of the internal market. ENISA is a centre of excellence for the European Member States and European institutions in network and information security, giving advice and recommendations and acting as a switchboard of information for good practices. Moreover, the agency facilitates contacts between the European institutions, the Member States and private business and industry actors. Contact details For contacting ENISA or for general enquiries on the Country Reports, please use the following details: Mr. Jeremy Beale, ENISA Head of Unit - Stakeholder Relations, [email protected] Internet: http://www.enisa.europa.eu/ Acknowledgments: ENISA would like to express its gratitude to the National Liaison Officers that provided input to the individual country reports. Our appreciation is also extended to the ENISA experts and Steering Committee members who contributed throughout this activity. ENISA would also like to recognise the contribution of the Deloitte team members that prepared the Denmark Country Report on behalf of ENISA: Dan Cimpean, Johan Meire and Aurore Pellé. Legal notice Notice must be taken that this publication represents the views and interpretations of the authors and editors, unless stated otherwise. This publication should not be construed to be an action of ENISA or the ENISA bodies unless adopted pursuant to the ENISA Regulation (EC) No 460/2004 as amended by Regulation (EC) No 1007/2008. This publication does not necessarily represent state-of the-art and it might be updated from time to time. Third-party sources are quoted as appropriate. ENISA is not responsible for the content of the external sources including external websites referenced in this publication. Member States are not responsible for the outcomes of the study. This publication is intended for educational and information purposes only. Neither ENISA nor any person acting on its behalf is responsible for the use that might be made of the information contained in this publication. Reproduction is authorised provided the source is acknowledged. © European Network and Information Security Agency (ENISA), 2009-2010 Finland Country Report 3 Table of Contents DENMARK ........................................................................................................................................................4 THE STRUCTURE OF THE INDIVIDUAL COUNTRY REPORTS .................................................................................................. 4 NIS NATIONAL STRATEGY, REGULATORY FRAMEWORK AND KEY POLICY MEASURES ................................................................ 5 Overview of the NIS national strategy ............................................................................................................ 5 The regulatory framework .............................................................................................................................. 7 NIS GOVERNANCE ................................................................................................................................................. 10 Overview of the key stakeholders ................................................................................................................. 10 Interaction between key stakeholders, information exchange mechanisms in place, co-operation & dialogue platforms around NIS ..................................................................................................................... 11 COUNTRY-SPECIFIC NIS FACTS, TRENDS, GOOD PRACTICES AND INSPIRING CASES ................................................................ 15 Security incident management ..................................................................................................................... 15 Emerging NIS risks ........................................................................................................................................ 16 Resilience aspects ......................................................................................................................................... 16 Privacy and trust ........................................................................................................................................... 16 NIS awareness at the country level ............................................................................................................... 18 Relevant statistics for the country ................................................................................................................ 21 APPENDIX .......................................................................................................................................................... 22 National authorities in network and information security: role and responsibilities.................................... 22 Computer Emergency Response Teams (CERTs): roles and responsibilities.................................................. 25 Industry organisations active in network and information security: role and responsibilities ..................... 26 Academic organisations active in network and information security: role and responsibilities ................... 26 Other bodies and organisations active in network and information security: role and responsibilities ....... 27 Country specific NIS glossary ........................................................................................................................ 29 References .................................................................................................................................................... 29 4 Denmark Country Report Denmark The structure of the individual country reports The individual country reports (i.e. country-specific) present the information by following a structure that is complementary to ENISA‟s “Who-is-Who Directory on NIS” publication and is intended to provide additional added value to the reader: General country information relevant in the context of the Network and Information Security (NIS) Overview of the NIS governance model at country level o Key stakeholders, their mandate, role and responsibilities, and an overview of their substantial activities in the area of NIS: . National authorities . CERTs . Industry organisations . Academic organisations . Other organisations active in NIS o Interaction between key stakeholders, information exchange mechanisms in place, co-operation & dialogue platforms around NIS NIS national strategy, regulatory framework and key policy measures Country specific NIS facts, trends, good practices and inspiring cases. For more details on the general country information, we suggest the reader to consult the web site: http://europa.eu/abc/european_countries/index_en.htm Finland Country Report 5 NIS national strategy, regulatory framework and key policy measures Overview of the NIS national strategy eGovernment Strategy The latest Danish eGovernment Strategy, entitled „Towards Better Digital Service, Increased Efficiency and Stronger Collaboration‟ covers the period 2007-2010. The new strategy entails a better and more binding cooperation among all levels of Government. The strategy focuses on three overarching priority areas that mutually interact: better digital service, digitisation to facilitate increased efficiency and stronger collaboration to create digital cohesion. Strategy on digital services As part of the Danish strategy, the Better digital service is built on the following main ideas: Digitisation must make public services more readily accessible to citizens and businesses. Cohesive services with citizens and businesses at the centre: The municipal citizen service centres and the cross-cutting Citizen and Business portals have a crucial role to play in the delivery of citizen and business-centric services. Focused and targeted communication with citizens and businesses: Wherever possible, citizens and businesses must experience the clarification or settlement of their case on the occasion of their first contact with the public sector User-driven business development: Users‟ needs and wishes should be taken into account to a greater extent when developing public digital solutions. Safe and secure data handling in the public sector: With the present radical digitisation of the Danish welfare society, it is crucial to maintain and expand citizens and businesses‟ trust in the Danish public sector. Therefore safety and security issues will continue to constitute an altogether central part of the country‟s eGovernment strategy. Improvement of the Danish Digitisation The Digitisation is developed in order to facilitate increased efficiency. This digitalisation process is built on the following ideas: From administration to citizen-focused care and service: An essential goal of the strategy is to continue making Public Administration more efficient and to provide a basis for better organising personnel-intensive service areas, so that a larger proportion of the public sector employees‟ time can be spent on citizen-focused service. Experience shows that digitisation projects free up resources and help to simplify the work routine in the public sector; Organisational changes: Efficient digitisation requires constant managerial alertness. Targeted management will therefore take place at all administrative 6