IGF 2023 Day 0 Event #23 On how to procure/purchase secure by design ICT

Time
Sunday, 8th October, 2023 (05:00 UTC) - Sunday, 8th October, 2023 (06:30 UTC)
Room
Room K
Subtheme

Cybersecurity, Cybercrime & Online Safety
Cyberattacks, Cyberconflicts and International Security

Internet Standards, Security and Safety Coalition
Mallory Knodel - IS3C Working Group 3 Chair; Center for Democracy & Technology - Civil Society - North America Elizabeth Orembo - IS3C Working Group 3 Lead Researcher; Global Cyber Security Capacity Centre - Technical Community - Africa Wout de Natris - IS3C Coordinator; De Natris Consult - Private Sector - Europe Mark Carvell - IS3C Senior Policy Adviser; Independent Internet Governance Consultant - Private Sector - Europe

Speakers

Mallory Knodel - IS3C Working Group 3 Chair; Center for Democracy & Technology - Civil Society - North America Elizabeth Orembo - IS3C Working Group 3 Lead Researcher; Global Cyber Security Capacity Centre - Technical Community - Africa Bart Knubben - Platform Internetstandards - government - Europe Steven Tan - Cyber Security Agency Singapore - Government - Asia

Onsite Moderator

Mallory Knodel

Online Moderator

Mark Carvell

Rapporteur

Wout de Natris

SDGs

12. Responsible Production and Consumption

Targets: Responsible production needs to contain ICT products, devices and services that are developed and manufactured according to long-existing, security-related internet standards and ICT best practices in such a way that they are secure by design. This will ensure a far more safer and secure online environment, adding to trust in the use of the internet and lead to even more successful (economic) use.

Format

This is a fully open consultation. After a short presentation, by working group chair Mallory Knodel and researcher Liz Orembo, of the main findings and recommendations in the report, participants are engaged in the debate about deployment of the report’s outcomes. The moderator will lead the audience into this debate on the basis of pre-determined and published questions. The questions, in part, will depend on the outcome of the study which is currently undertaken. The answers will co-determine IS3C's next steps on the topic of procurement and its deployment.

Language
English
Description

IGF Dynamic Coalition Internet Standards, Security and Safety Coalition (IS3C) strives to make the internet more secure and safer through the widespread deployment of existing, security related Internet Standards and ICT best practices. One way to achieve this, if not the shortest route to success, is when all organisations start to procure and purchase ICTs secure by design. By demanding that ICT services, devices and products contain the relevant security-related internet standards and ICT best practices, as part of the product. At this IGF, IS3C’s working group on procurement and supply chain management (WG3) will present its global study into and guidelines for this topic. The WG has collated, compared and analysed all available documents on the basis of three questions: 1) What procurement policy/documents focus on internet and digital communications?; 2) What does the procurement policy/document say about security?; 3) Does the security section talk about internet standards and ICT best practices? This has led to a set of conclusions, best practices and recommendations, that will be presented as an introduction to this open consultation. This workshop however focuses on the main and huge challenge: How can the world move from theory to practice? In this session stakeholders at large will be asked the above question directly and are invited to provide answers to the following as well: - How to get this message on procurement across best?; - Which stakeholders need to become involved to successfully drive the deployment of the guidelines on procurement?; - What should their respective roles be? - Which organisations are best suited to provide training? This workshop invites representatives from all relevant stakeholder communities to debate the deployment of the conclusions of the global study and the analyses of the gathered data. The outcomes of this IGF session is the start of the next phase for IS3C: setting theory into practice. The draft report will be published on IS3C's website, www.is3coalition.org, in the first week of June and discussed in an open consultation at EuroDIG on 19 June.

Both moderators, by way of constant interaction, will engage the whole audience in the debate by alternating between the online and offline participants, including the use and monitoring of the chat function. Active outreach will encourage those stakeholders who are not able to travel to Kyoto, to participate online.