12.07.2015 Views

OECD Working Party on Information Security and Privacy WPISP

OECD Working Party on Information Security and Privacy WPISP

OECD Working Party on Information Security and Privacy WPISP

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

<str<strong>on</strong>g>Working</str<strong>on</strong>g> <str<strong>on</strong>g>Party</str<strong>on</strong>g> <strong>on</strong>Informati<strong>on</strong> <strong>Security</strong><strong>and</strong> <strong>Privacy</strong><strong>WPISP</strong>… Identity management - Internet - Data c<strong>on</strong>troller - PKI - Vulnerabilities - Fingerprint - Critical Informati<strong>on</strong> Infrastructure -<strong>Privacy</strong> <strong>and</strong> Data Protecti<strong>on</strong> - <strong>Security</strong> of Informati<strong>on</strong> Systems <strong>and</strong> Networks - Electr<strong>on</strong>ic Authenticati<strong>on</strong>- Password - Sensors - Transborder Flows - Pers<strong>on</strong>al Data - Identity Management - PIN - RFID - Cryptography - DataExchange - Biometrics - Botnets - Phishing - Virus - Spyware - Functi<strong>on</strong> creep - VPN …May 20061


The Work of the <strong>WPISP</strong>Serves as a foundati<strong>on</strong> for developing nati<strong>on</strong>alcoordinated policies.Is balanced <strong>and</strong> pragmatic; respects cultural, legal <strong>and</strong>social differences.Benefits the broader internati<strong>on</strong>al community through<str<strong>on</strong>g>OECD</str<strong>on</strong>g>’s co-operati<strong>on</strong> with n<strong>on</strong>-members.Is well recognised by other internati<strong>on</strong>al <strong>and</strong> regi<strong>on</strong>alorganisati<strong>on</strong>s.3May 2006


The <strong>WPISP</strong> in the <str<strong>on</strong>g>OECD</str<strong>on</strong>g> StructureWPCISP - Communicati<strong>on</strong> Infrastructures <strong>and</strong> Service PolicyICCPCommittee<strong>WPISP</strong> - Informati<strong>on</strong> <strong>Security</strong> <strong>and</strong> <strong>Privacy</strong>WPIE - Informati<strong>on</strong> Ec<strong>on</strong>omyCouncilWPIIS - Indicators for the Informati<strong>on</strong> SocietyThe <str<strong>on</strong>g>OECD</str<strong>on</strong>g> is a unique forum where the governments of 30 market democracies work together withbusiness <strong>and</strong> civil society to address the ec<strong>on</strong>omic, social, envir<strong>on</strong>mental <strong>and</strong> governance challengesof the globalising world ec<strong>on</strong>omy, as well as exploit its opportunities.The <strong>WPISP</strong> works under the directi<strong>on</strong> of the Committee for Informati<strong>on</strong>, Computer <strong>and</strong>Communicati<strong>on</strong>s Policy (ICCP) which reports to the <str<strong>on</strong>g>OECD</str<strong>on</strong>g> Council.It is supported by the <str<strong>on</strong>g>OECD</str<strong>on</strong>g> Secretariat within the Directorate for Science, Technology <strong>and</strong> Industry.Participants are delegates from member countries. Business, civil society, other internati<strong>on</strong>alorganisati<strong>on</strong>s <strong>and</strong> n<strong>on</strong>-members are also sitting at the table.May 2006It meets twice a year in Paris <strong>and</strong> organises forum sessi<strong>on</strong>s <strong>and</strong> c<strong>on</strong>ferences.4


<strong>WPISP</strong> Work <strong>on</strong>Informati<strong>on</strong> <strong>Security</strong><strong>Security</strong> must become an integral part of the dailyroutine of individuals, businesses <strong>and</strong>governments in their use of ICTs <strong>and</strong> c<strong>on</strong>duct of<strong>on</strong>line activities.The <str<strong>on</strong>g>OECD</str<strong>on</strong>g> “Guidelines for the <strong>Security</strong> of Informati<strong>on</strong>Systems <strong>and</strong> Networks: Towards a Culture of <strong>Security</strong>”(2002)– aim to promote security in the design <strong>and</strong> use of ICTs.– help each participant to become aware of risks, assumeresp<strong>on</strong>sibility, <strong>and</strong> take steps to enhance the security ofinformati<strong>on</strong> systems <strong>and</strong> networks.5May 2006


<strong>WPISP</strong> Work <strong>on</strong>Informati<strong>on</strong> <strong>Security</strong> The <strong>WPISP</strong> assists governments, businesses <strong>and</strong> civil society indeveloping a culture of security across society <strong>and</strong> building trust<strong>on</strong>line.May 2006Surveys of nati<strong>on</strong>al informati<strong>on</strong> security policies– The Promoti<strong>on</strong> of a Culture of <strong>Security</strong> in <str<strong>on</strong>g>OECD</str<strong>on</strong>g> Countries (2005)– Survey <strong>on</strong> the Implementati<strong>on</strong> of the 2002 <str<strong>on</strong>g>OECD</str<strong>on</strong>g> <strong>Security</strong> Guidelines (2004)Internati<strong>on</strong>al workshops to share experience <strong>and</strong> best practices– <str<strong>on</strong>g>OECD</str<strong>on</strong>g>-APEC Workshop <strong>on</strong> <strong>Security</strong> of Informati<strong>on</strong> Systems <strong>and</strong> Networks (2005)– Global Forum <strong>on</strong> Informati<strong>on</strong> Systems <strong>and</strong> Network <strong>Security</strong> (2003)“Culture of <strong>Security</strong> Web Site”: directory of resources <strong>on</strong> nati<strong>on</strong>alinformati<strong>on</strong> security policies: www.oecd.org/sti/cultureofsecurityInformati<strong>on</strong> security polices for critical informati<strong>on</strong> infrastructures <strong>and</strong>e-government (<strong>on</strong>going)6


Other Work <str<strong>on</strong>g>OECD</str<strong>on</strong>g> Guidelines <strong>on</strong> Cryptography Policy (1998)E-Authenticati<strong>on</strong>– Ottawa Ministerial Declarati<strong>on</strong> <strong>on</strong> Authenticati<strong>on</strong> for Electr<strong>on</strong>icCommerce (1998)– "Survey of Legal <strong>and</strong> Policy Frameworks for E-Authenticati<strong>on</strong> Services<strong>and</strong> E-Signatures in <str<strong>on</strong>g>OECD</str<strong>on</strong>g> Member Countries" (2002-2003)– "The Use of Authenticati<strong>on</strong> Across Borders in <str<strong>on</strong>g>OECD</str<strong>on</strong>g> Countries" (2005)– Guidance <strong>on</strong> e-authenticati<strong>on</strong> (<strong>on</strong>going) <str<strong>on</strong>g>OECD</str<strong>on</strong>g> Task Force <strong>on</strong> Spam (2005-2006) “Biometric-Based Technologies” (2004) Other <strong>on</strong>going work– Digital Identity Management– Malware– Pervasive RFID, sensors <strong>and</strong> networks– Comm<strong>on</strong> Framework for Implementing Informati<strong>on</strong> <strong>Security</strong> <strong>and</strong> <strong>Privacy</strong>8May 2006


More Informati<strong>on</strong><strong>WPISP</strong>'s Work <strong>on</strong> the <str<strong>on</strong>g>OECD</str<strong>on</strong>g> Web site– www.oecd.org/sti/security-privacyGeneral presentati<strong>on</strong> of the <str<strong>on</strong>g>OECD</str<strong>on</strong>g>– www.oecd.org/dataoecd/29/23/2397890.ppt– www.oecd.org/dataoecd/15/33/34011915.pdf<str<strong>on</strong>g>OECD</str<strong>on</strong>g> Publicati<strong>on</strong>s– www.oecdbookshop.org<strong>WPISP</strong> Secretariat<str<strong>on</strong>g>OECD</str<strong>on</strong>g> - DSTI - ICCP2, rue André Pascal75775 Paris Cedex 16 - FranceTel: +33 1 45 24 82 00 - Fax: +33 1 44 30 62 59dsti . c<strong>on</strong>tact @ oecd . org9May 2006

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!