Support for CERTs / CSIRTs
The successful creation and operation of CERTs / CSIRTs depend on various factors. A lot of mistakes can be made, especially in early phases, that are difficult or impossible to mitigate later. This page contains a lot of good practice material that aims at helping EU Member States, but also other stakeholders, to smoothly establish and operate CERTs / CSIRTs. The material you find here has been created in cooperation with experts in this field, that dispose of long years of hands-on experience in the related areas. All material has been tested in practice.
Contact us if you'd like to find out more!
-
How to set up a CERT?
A step-by-step explanation on how to plan, kick-off and establish your own CERT. We even provide you with an easy to use project plan! More...
-
How to run a CERT?
A basic collection of good practice on how to operate a CERT, especially in the crucial first year. More...
-
Exercises for CERTs
An easy-to-use collection of exercises for CERTs in various areas. More...
-
Baseline capabilities of national / governmental CERTs
Recommendations for a basic set of capabilites of CERTs with responsibilities for CIIP and international cooperation. More...
-
How CERTs manage security incidents?
Good practices, practical information and guidelines for the management of network and information security incidents with an emphasis on incident handling. More...
-
How to improve detection of network security incidents?
This report lists 30 external sources and 12 categories of internal tools and mechanisms along with the relevant recommendations which can be used to improve the detection of network security incidents. More...
-
Legal aspects of information exchange between CERTs
A study into the legal and regulatory aspects of information sharing and cross-border collaboration of national/governmental CERTs in Europe. More...
-
Common tools for CERTs
An overview of tools in use by the European CERT community (TF-CSIRT). More...
-
Supporting fight against cybercrime
A study with the aim to improve the capability of CERTs, with a focus on the national/governmental CERTs (n/g CERTs), to address the network and information security (NIS) aspects of cybercrime. More...