Procedures for the technical and organisational security measures for the development and operation of CESOP
Article 6
1. The Member States shall provide the Commission with information on the application and every update of their own security measures at national level. That information shall include details on the measures adopted to ensure only Eurofisc liaison officials referred to in Article 5 have access to CESOP and details on the measures adopted to ensure the encryption of the data transmitted by the Member States. 2. The Commission shall, by 30 April each year from the year following the date of application of this Regulation, inform the Member States of the measures taken for the security of CESOP. That information shall at least indicate the following: (a) the security incidents that occurred during the previous year and how they have been resolved; (b) details on security measures adopted or changes to the existing security measures; (c) an assessment of the existing security measures and whether the Commission considers any changes to those measures is needed.