In order to ensure this, it is necessary to provide regulatory and institutional conditions for the accelerated development of the digital market and to ensure that this development takes place in safe conditions for both the individual and society as a whole.
The new legal solutions define priority and important ICT systems of particular importance, the establishment of an information security office, certain activities that ICT systems of particular importance should undertake to protect the security of the entire ICT system (protection measures, risk assessment, security act), procedures in the event of incidents that significantly threaten the information security of the operators of this system, as well as the active role of the National CERT and CERT bodies in eliminating incidents.
A special legal novelty is the mandatory performance of a risk assessment of ICT systems and the adoption of a Risk Assessment Act, bearing in mind that organizations must be aware of the dangers that may threaten information security and, based on that, take protective measures of an appropriate level in relation to the potential risk.
The proposed law also provides for procedures in the event of incidents that significantly threaten information security in the Republic of Serbia.
Source: srbija.gov.rs