Local Informatics Security Officers (LISOs)
Article 11
In relation to IT security, the LISO shall: (a) proactively identify and inform system owners, data owners and other roles with IT security responsibilities in Commission department(s) about the IT security policy; (b) liaise on IT-security-related issues in Commission department(s) with the Directorate-General for Informatics as part of the LISO network; (c) attend the regular LISO meetings; (d) maintain an overview of the information security risk management process and of the development and implementation of information system security plans; (e) advise data owners, system owners and heads of Commission departments on IT-security-related issues; (f) cooperate with the Directorate-General for Informatics in disseminating good IT security practices and propose specific awareness-raising and training programmes; (g) report on IT security, identify shortfalls and improvements to the Head of the Commission department(s). The processes related to these responsibilities and activities shall be further detailed in implementing rules.