Legal framework of ensuring of cyber security in the Republic of Azerbaijan

Similar documents
INFORMATIZATION AND COMMUNICATION DEVELOPMENT TRENDS IN ARMENIA

NATIONAL PROGRAMME Chapter 15 Telecommunication and Post. Telecommunication and Post

Section I. GENERAL PROVISIONS

Japan s Measures against Spam

Data Protection System of Georgia. Nina Sarishvili Head of International Relations Department

Data Protection systems in the Republic of Azerbaijan

State Planning Organization Information Society Department

CYBERSECURITY INITIATIVES IN VANUATU

LAW OF THE REPUBLIC OF KAZAKSTAN «ON CERTIFICATION»

Garry Mukelabai Communications Authority Zambia

The Development of. ICT in Thailand. by Thaweesak Koanantakool, Ph.D.

USA HEAD OFFICE 1818 N Street, NW Suite 200 Washington, DC 20036

Lao PDR Practice for Information Security

E-Signature Law of Iraq no. ( 78) of 2012

UN General Assembly Resolution 68/243 GEORGIA. General appreciation of the issues of information security

Promoting Global Cybersecurity

Legislative Decree. Legislative Decree. President of the Government of Islamic Republic of Afghanistan,

RESOLUTION 67 (Rev. Buenos Aires, 2017)

RESOLUTION 130 (Rev. Antalya, 2006)

CHAPTER 13 ELECTRONIC COMMERCE

MOTION FOR A RESOLUTION

AMERICAN CHAMBER OF COMMERCE IN THAILAND DIGITAL ECONOMY POSITION PAPER

China and International Governance of Cybercrime

2017 Aid for Trade - Partner Country Questionnaire SurveyMonkey

ITU Survey on Anti-Spam Legislation Worldwide

DATA PROTECTION LAWS OF THE WORLD. Bahrain

E-Strategies in Africa

Harmonisation of Digital Markets in the EaP. Vassilis Kopanas European Commission, DG CONNECT

Countering Spam. ITU-T Study Group 17 Geneva, Switzerland 11 October 2005

THE CYBER SECURITY ENVIRONMENT IN LITHUANIA

The Institute of Certified Accountants of Montenegro. RADUNOVIC VESNA, Certified auditor Member of the Board of Directors

International Policy Division, Global ICT Strategy Bureau

Digital Opportunity Index. Michael Minges Telecommunications Management Group, Inc.

Pilot Study on Big Data: Philippines. World Telecommunications/ICT Indicators Symposium (WTIS) November 2017 Hammamet, Tunisia

National program of digital transformation

NEW INNOVATIONS NEED FOR NEW LAW ENFORCEMENT CAPABILITIES

Disruptive Technologies Legal and Regulatory Aspects. 16 May 2017 Investment Summit - Swiss Gobal Enterprise

Draft Resolution for Committee Consideration and Recommendation

DIGITAL AGENDA FOR EUROPE

2. What do you think is the significance, purpose and scope of enhanced cooperation as per the Tunis Agenda? a) Significance b) Purpose c) Scope

ISACA National Cyber Security Conference 8 December 2017, National Bank of Romania

COUNTERING COUNTERING SPAM IN A DIGITAL WORLD

World Telecommunication Development Conference (WTDC- 14) Dubai, 30 March 10 April 2014

The United Nations Convention On the Use of Electronic Communication in International Contracts, 2005 and Electronic Transactions Law in Thailand

COUNTRY PROFILE. Qatar

Resilience, Responsibility, Responsiveness Towards a Future-oriented, Sustainable World Economy. B20 Recommendations on Digital Trade

Government Resolution No of February 15, Resolution: Advancing National Regulation and Governmental Leadership in Cyber Security

Digital Signatures Act 1

How Cybersecurity Initiatives May Impact Operators. Ross A. Buntrock, Partner

NATIONAL CYBER SECURITY STRATEGY. - Version 2.0 -


From the E-readiness Assessment and Analysis to an Action Plan and Policies Recommendations. Gabriel Accascina

INNOVATIONS CENTER. Fariz T. JAFAROV Director. e-gov Development Center of Azerbaijan

Liberia ICT Policy

The Role of Business in the World Summit on the Information Society

IT Policy and Public Demand for IT in Vietnam

GLOBAL CYBERSECURITY INDEX 2016

Commonwealth Cyber Declaration

10007/16 MP/mj 1 DG D 2B

Birendra Kumar Mishra. Director General Department of Information Technology Ministry Of Science and Technology Government of Nepal

Also please refer to Federal Law # 99-FZ dated July 15, 2000 "On Quarantine of Plants"

ICT PROGRESS IN AFGHANISTAN

Public Disclosure Copy

Training courses held by the Kazakh and foreign experts for financial system specialists in 2011 in the Republic of Kazakhstan

Cybersecurity in Asia-Pacific State of play, key issues for trade and e-commerce

Department of Homeland Security Updates

Contributed by Djingov, Gouginski, Kyutchukov & Velichkov

Market Surveillance Action Plan

Report Annual ITU Regional Forum on Development for CIS Countries The Policy and Strategy for ICT Development in the CIS Region and Regulatory Aspects

COUNTRY PROFILE. Ukraine

COMESA CYBER SECURITY PROGRAM KHARTOUM, SUDAN

COUNTRY PROFILE. Croatia

Cyber Security Strategy

E Government in Tonga

International Nonproliferation Export Control Program (INECP) Government Outreach for Enterprise Compliance

U.S. Japan Internet Economy Industry Forum Joint Statement October 2013 Keidanren The American Chamber of Commerce in Japan

Japanese ODA Loan. Ex-Ante Evaluation

ITU WSIS THEMATIC MEETING ON CYBERSECURITY, GENEVA, SWITZERLAND, 28 JUNE -1 JULY PAPER ON THE STATE OF CYBERSECURITY IN UGANDA.

Overview on the Project achievements

COUNTRY PROFILE. Estonia

Developing and Implementing Data Protection Law: Malaysia and Beyond

Developing a Legal Foundation and Establishing Effective Enforcement: Case Study Kenya

Data Leak Protection legal framework and managing the challenges of a security breach

RESOLUTION 130 (REV. BUSAN, 2014)

RESOLUTION 47 (Rev. Buenos Aires, 2017)

RESOLUTIONS Review and Status of Implementation

ENISA s Position on the NIS Directive

CONNECT ARAB STATES SUMMIT

COMPUTERIZATION. Bilateral Screening Chapter 29 Customs Union Presentation by the Republic of Serbia Brussels, 3-4 June 2014

COUNTRY PROFILE. Iceland

Creating NIS Compliant Country in a Non-Regulated Environment. Jurica Čular

G8 Lyon-Roma Group High Tech Crime Subgroup

A Criminal Intrudes into a Bank in Geneva Korean agents. Canadian agents make the arrest. Argentinian investigators. discover. attack came from Seoul

COUNTRY PROFILE. Mexico

Status of E Government in Tonga. Presented by: Ms. Siasini Petelo Ministry of Communications TONGA

(Islamabad, March 2015) MEDIUM TERM VISION FOR ENERGY CONNECTIVITY IN THE SAARC REGION

Dominican Republic Experience in the Implementation of Number Portability

COUNTRY PROFILE AUSTRALIA

China IoT New Developments and EU- China Cooperation

World Summit on the Information Society (WSIS) and the Digital Divide

Transcription:

Legal framework of ensuring of cyber security in the Republic of Azerbaijan Bakhtiyar N.Mammadov Ministry of Communications and Information Technologies Head of Legal and HR Department ITU WSIS Thematic meeting on Cybersecurity for the Information Society Geneva, Switzerland June 28-July 1, 2005

Main Directions of Reforms in ICT sector in Azerbaijan Privatization and liberalization of market and attraction of new private investments to the development of the field, supporting of free and equal competition. In order to support the development in IT sector of Azerbaijan, technical and technological modernization, also preparation of highly qualified specialists; Development of the society according to modern requirements, improvement of state governance and the transparency provision, establishment of national information resources, development of knowledge economy, achievement of wide implementation of new technologies in all branches, protection of information security and information freedom, enlargement of integration into the global e-world.

ICT projects in Azerbaijan In the framework of the E-Government Initiative Project joint project of Government of Azerbaijan and UNDP the preparation works for the organization of the AzDATACOM network, which will cover all regions of the country is in progress. The Virtual Silk Road project of Scientific Program of NATO will create an opportunity to provide universities with Internet services. Joint project of AzNet, UNDP, AzRENA and MCIT will create an opportunity to provide secondary schools with Internet services.

ICT projects in Azerbaijan In order to provide G2G, G2B, and G2C following projects have been launched: - Technical Support to Institutional Establishment II project; - Pension and Social Aid project ; - Analyzing of poverty and Technical Support for potential establishment project; - Development of Education system project; - Facilitation of Trade and Transport project.

ICT projects in Azerbaijan The on-line data transmission network applied in State Custom Committee is the first experience for the Wide Area Network System in E-government practice of Azerbaijan. To provide wide usage of ICT The State Social Protection Fund with the cooperation of the World Bank launched implementation of the projects, which are developed for ICT solutions for the institution on three major directions such as pensions, social provision and labor-market. Wide Area Network System is also being created in the Ministry of Taxes.

Ancient Silk Road and ICT Development

Macroeconomic Indicators million $ 20000 18000 16000 14000 12000 10000 8000 6000 4000 2000 0 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008 GDP Money income

Macroeconomic Indicators $ 2500 2000 1500 1000 500 GDP per capita Money income per capita 0 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006 2007 2008

GDP by Sectors of Economy 35 30 28,9 25 20 % 15 15 10 5 6,9 2,3 0 Oil Construction Transportation Telecommunications

120 100 Investment in Telecom Sector 100,2 80 68,4 66,8 70,5 68 81,6 mln. USD 60 40 31,9 41 34,4 46,9 100,2 52,1 55,5 40,9 41,8 40,8 20 11,4 0 Total Foreign 1997 1998 1999 2000 2001 2002 2003 2004

Personal Computers (per 100 inhabitants) 70 65.6 World average 60 50 Low income 40 Low middle incoe 30 20 10 0 13.3 1.1 13.5 5.5 2004 2.4 Upper middle income High income Azerbaijan

Internet Users (per 100 inhabitants) 70 69.5 World average 60 50 Low income 40 30 20 10 0 15.3 2.1 22.2 6.3 2004 3.6 Low middle income Upper middle income High income Azerbaijan

Incoming International Traffic in Azerbaijan 250 217,9 200 155.2 150 100 70.8 79.8 50 0 Mln. minutes 2001 2002 2003 2004

Outgoing International Traffic in Azerbaijan 60 53 50 42.2 40 30 20 10 29.6 32.5 0 Mln. minutes 2001 2002 2003 2004

The Growth Dynamics of Internet Connection Capacity 300 250 240 мб/с 200 150 100 61,8 61,8 91,1 50 0 37,4 6,1 37,4 11,3 41 15,9 39 19,6 49,4 27,1 49,4 31,6 49,4 31,6 33,3 49,4 33,6 33,7 33,1 34,1 January February March April 2003 2004 May June July August September October November December

18 16 14 12 10 8 6 4 2 0 Monthly Subscription Fee 17.44 16.2 15.74 11.8 4.3 0.51 Austira Belgium Denmark Poland Turkey Azerbaijan

Ministry of Communications and Information Technologies: Formulates and implements state policy Conducts state regulation; Secures the legal normative regulation and development of communications and information technologies; Coordinates the activities of other government agencies in the areas of communications (telecommunication, post) and information technologies in the Republic of Azerbaijan; Responsible for rendering qualitative and reliable communication services in whole country.

MCIT: Functions participates in development of the drafts of legal normative acts in the field of communications and information technologies; prepares and approves legal normative acts and field standards regarding the issues under the scope of the Ministry; makes proposals on accession of the Republic of Azerbaijan to international conventions and agreements related with the field of communications and information technologies, as provided by the legislation.

MCIT: functions and rights supervises in fulfilling the protection of confidentiality regime and security measures of communication objects within its scope in a manner defined by legislation; determines the requirements related to the information security in the corporative communication network within its scope; participates in preparation and improvement of legal framework for transition into information society; participates in preparation and improvement of legal framework for transition into information society.

MCIT: rights The Ministry is entitled with following rights for fulfilling its duties and functions; to apply to the Cabinet of the Ministers of the Republic of Azerbaijan with proposals to develop and improve legal acts of the Republic of Azerbaijan related to communications and information technologies area; to adopt legal normative acts in the field of communication and information technologies under its scope.

MCIT: rights to cooperate with state bodies and legal entities of foreign countries about the issues under its authority through implementing international cooperation in manner defined by legislation, to prepare the drafts of international agreements (contracts), to sign international agreements (contracts); to attract and involve scientific research and education centers, companies, experts in a manner defined by the legislation for study and solution of the issues under the discretion of the Ministry, conducting scientific research and expertise-engineering works, conducting technical studies and advisory services;

MCIT: rights to supervise technical exploitation performance, in a manner defined by the legislation within its scope, in the communications and information technologies enterprises regardless the form of business organization and organizational-legal form, including execution of legal normative acts and area standards over the issues under its authority ; to implement other rights considered in legislation

Computer (Cyber) Crimes Enforceable legislation Crimes which target computers or which are committed by using computers are considered to be computer crimes. Larceny of computer equipment; Piracy; Hacking; Program viruses; Computer fraud.

Legal Normative acts National ICT Strategy for development of the Republic of Azerbaijan (2003-2012). Approved by the Decree of the President of Azerbaijan dated 17 February 2003 State Program On development of Communications and Information technologies of the Republic of Azerbaijan in accordance with modern requirements (2005-2008) draft submitted to the Cabinet of the Ministers Law on e-signature and e-document adopted in 2004 Law on Telecommunication approved in 2 nd reading Law on E-commerce adopted by parliament Criminal Code of the Republic of Azerbaijan ( enforced on 1 st of September 2000); Law on Information, Informatization and Protection of Information (came into force on 3 rd of April 1998 (Art. 3,4. 16); Patent Law ; Law on State Secret; Law on Copyright and Related Rights.

Legal Normative acts on cyber security Law On National Security dated 29 June 2004 (art. 6.6;7.9); Law on protection of Information collections dated 14 September 2004 (Art. 1.0.11; 13).

Legal normative acts Decree of the President of the Republic of Azerbaijan on Approval of Regulation about the Ministry of Communications and Information Technologies of the Republic of Azerbaijan dated 10 August 2004; Decree of the President of the Republic of Azerbaijan N 172 dated 29 December 2004 On ensuring measures on cyber security in governmental bodies.

Chapter 30 of the Criminal Code Crimes in the field of computer information Article 271: Unauthorized access to computer information; Article 272: Production, use and spread of detrimental electronic computer programs ; Article 273: Violation of electronic computer, system or network operating rules.

Definitions Information: data on persons, items, facts, events and processes in any form (Law on Information, Informatization and Protection of Information.); Computer information: information saved on computers which could be transferred through telecommunication channels (commentary on CC of AR).

Article 271: Unauthorized access to computer information 271.1 - Unauthorized access to legally protected computer information in the electronic computers, their systems or networks or on the machine carriers resulted in erasing, blocking or copying computer information, disturbing the work of electronic computers, their systems or networks; is punished with fine from five hundred to one thousand conventional financial unit, refinery works up to one year, or imprisonment up to one year.

Article 271: Unauthorized access to computer information Article 271.2 The same action carried out by a group of persons in prior agreement or a person abusing his official position and having equally an access to electronic computers, their systems or networks caused damages in large scale is punished with fine from 1000-2000 times of conventional financial unit (c.f.u), refinery works up to two years, imprisonment within up to three years.

Article 272: Production, use and spread of detrimental electronic computer programs 272.1 - Production of electronic computer programs or introduction of changes into current programs resulted in erasing, blocking, modifying or copying information, disturbing the work of electronic computers, their systems or networks and use or spread of these programs are punished with 500-1000 (c.f.u)., imprisonment up to 2 years; 272.2 - The same actions entailed serious consequences through imprudence are punished with imprisonment within the term from two to five years.

Article 273. Violation of electronic computer, system or network operating rules 273.1 Violation of electronic computer, system or network operating rules on the part of a person having an access to electronic computers, their systems or networks resulted in erasing, blocking or modifying law protested information and caused a considerable damage is punished; with denial of particular position or activity privileges within up to three years, obligatory works within the term from 160 to 200 hours or freedom limitation within up to two years.

Article 273. Violation of electronic computer, system or network operating rules 273.2 - The same action entailed serious consequences through imprudence is punished with refinery works up to 2 years, or imprisonment up to three years.

Other related articles of Criminal Code of the Republic of Azerbaijan Violation of secrecy of correspondence, telephone calls, telegraph and other information- art.155; Personal privacy art. 156 ; Violation of copyrights and neighboring rights art.165; Violation of invention and patent rights - art.166.

Code on Administrative Violations Article 181- Violation of rules of application of information reserves; Article 182-Violation of rules of information protection.

Article 181- Violation of rules of application of information reserves Violation of rules of application of information reserves-entails imposition on natural persons penalty in amount 5-15, official persons 40-50 and legal persons 90-130 conventional financial units.

Article 182 - Violation of rules of information protection 182.1- Violation of envisaged by license rules of execution of activity in the area of information protection-entails imposition on natural persons penalty in amount 5-15, official persons 30-40 and legal persons 70-200 conventional financial units.

Article 182 - Violation of rules of information protection 182.2 - Application of non certified information system, base and data bank and means of data protection, which are subjected by legislation to certification, entails imposition on natural persons penalty in amount 10-15, official persons 40-50 and legal persons 150-200 conventional financial units.

Thank you for attention! Bakhtiyar N.Mammadov Head of Legal and Human Resources department The Ministry of Communications and Information Technologies of the Republic of Azerbaijan Tel: (+994 12) 493 05 26 (+994 12) 498 57 35 Fax: (+994 12) 498 79 12 E-mail: law@mincom.gov.az MCIT website http://www.mincom.gov.az