中文摘要 |
我國政府除了2011年訂定個人資料保護法外,並於2016年以捍衛國家數位國土、防護數位經濟為號召,召開「資安即國安」策略會議、且2016年8月設置行政院資通安全處,並著手推動「資通安全管理法」立法(2018年5月11日立法院三讀通過條文,並已於2019/01/01施行),以期針對政府機關和部份民間企業提出明確的資通安全規範與相關子法(建議要符合相關國際標準如ISO27003+ISO27701+ISO27035+ISO27017+ISO27037 +ISO27041~43等)。2016年總統府國家安全會議更和行政院一起召開第一次的「資安即國安」策略會議,主要是透過整合資安人力、資安產業和科研資源,以提升資安基礎整備、產業能量和數位防衛能力,最終希望可以達成:打造國家級的資安機制|建立國家級資安團隊,確保數位國土安全|以及推動國防資安自主研發,強化產業發展等三大目標。(建議其資安相關作為應提升其資安鑑識機制能量及資安技術能力,且進一步應符合國際資安鑑識標準如ISO27005+ISO27009+ISO27037+ISO27041+ISO27042+ISO27043+ISO27050等)。 |
英文摘要 |
In addition to the personal information protection law in 2011, the governmenthas called for the protection of the national digital homeland and the protection of thedigital economy in 2016. The“Cyber Security is National Security”strategy meetingwas held, and the Department of Cyber Security of the Executive Yuan was set upin August 2016. And proceeded to promote the '' Cyber Security Management Act''which was implemented at 2019/01/01, with a view to making clear cybersecurityrecommendations for government agencies and some private enterprises. The codesof Cybersecurity and related sub-laws (It is recommended that must comply withrelevant international standards such as ISO27003+ISO27701+ISO27035+ISO27017+ISO27037+ISO27041~43, etc.). In 2016, the National Security Council of thePresidential Office held the first ''Cyber Security, is National Security'' strategymeeting with the Executive Yuan, mainly through the integration of cybersecuritymanpower, cybersecurity industry and scientific research resources to improvethe cybersecurity infrastructure, the cybersecurity industrial energy and the digitaldefense capabilities, the ultimate hope can be achieved: to build a national-levelcybersecurity mechanism| to establish a national-level cybersecurity team to ensuredigital homeland security| and to promote independent research and developmentof defense cybersecurity, and strengthen industrial development and the three goals.(It is recommended that its cybersecurity as a related should enhance its cyberforensics mechanism and cybersecurity technology capabilities, and should furthercomply with international cyber forensics standards such as ISO27005+ISO27009+ISO27037+ISO27041+ISO27042+ISO27043+ISO27050…etc.). |