Decision 2010/260 - 2010/260/: Commission Decision of 4 May 2010 on the Security Plan for the operation of the Visa Information System

Please note

This page contains a limited version of this dossier in the EU Monitor.

1.

Current status

This decision has been published on May  5, 2010.

2.

Key information

official title

2010/260/: Commission Decision of 4 May 2010 on the Security Plan for the operation of the Visa Information System
 
Legal instrument Decision
Number legal act Decision 2010/260
CELEX number i 32010D0260

3.

Key dates

Document 04-05-2010
Publication in Official Journal 05-05-2010; OJ L 112, 5.5.2010,Special edition in Croatian: Chapter 19 Volume 016
Effect 01-01-1001; Entry into force See Art 22
End of validity 31-12-9999

4.

Legislative text

5.5.2010   

EN

Official Journal of the European Union

L 112/25

 

COMMISSION DECISION

of 4 May 2010

on the Security Plan for the operation of the Visa Information System

(2010/260/EU)

THE EUROPEAN COMMISSION,

Having regard to the Treaty on the Functioning of the European Union,

Having regard to Regulation (EC) No 767/2008 of the European Parliament and of the Council of 9 July 2008 concerning the Visa Information System (VIS) and the exchange of data between Member States on short-stay visas (VIS Regulation) (1), and in particular Article 32 thereof,

Whereas:

 

(1)

Article 32(3) of Regulation (EC) No 767/2008 provides that the Management Authority shall take the necessary measures in order to achieve the objectives in the field of security prescribed in Article 32(2) as regards the operation of the VIS, including the adoption of the security plan.

 

(2)

Article 26(4) of Regulation (EC) No 767/2008 provides that during a transitional period before the Management Authority takes up its responsibilities, the Commission shall be responsible for the operational management of the VIS.

 

(3)

Regulation (EC) No 45/2001 of the European Parliament and of the Council (2) applies to the processing of personal data by the Commission when carrying out its responsibilities in the operational management of VIS.

 

(4)

Article 26(7) of Regulation (EC) No 767/2008 provides that where the Commission delegates its responsibilities during the transitional period before the Management Authority takes up its responsibilities, it shall ensure that this delegation does not adversely affect any effective control mechanism under Union law, whether of the Court of Justice, the Court of Auditors or the European Data Protection Supervisor.

 

(5)

The Management Authority should set out its own security plan in relation to the VIS once it will have taken up its responsibilities.

 

(6)

Commission Decision 2008/602/EC of 17 June 2008 laying down the physical architecture and requirements of the national interfaces and of the communication infrastructure between the central VIS and the national interfaces for the development phase (3) has described the required security services applicable for the network for VIS.

 

(7)

Article 27 of Regulation (EC) No 767/2008 provides that the principal central VIS, which performs technical supervision and administration functions, shall be located in Strasbourg (France) and a backup central VIS, capable of ensuring all functionalities of the principal central VIS in the event of failure of the system, shall be located in Sankt Johann im Pongau (Austria).

 

(8)

The roles of the security officers should be laid down in order to ensure efficient and prompt response to security incidents and reporting thereof.

 

(9)

A Security Policy should be set up describing all technical and organisational details in line with the provisions of this Decision.

 

(10)

Measures should be defined to ensure the appropriate level of security of the operation of VIS,

HAS ADOPTED THIS DECISION:

CHAPTER I

GENERAL PROVISIONS

Article 1

Subject matter

This Decision constitutes the security organisation and measures (security plan) within the meaning of Article 32(3) of Regulation (EC) No 767/2008.

CHAPTER II

ORGANISATION, RESPONSIBILITIES AND INCIDENT MANAGEMENT

Article 2

Tasks of the Commission

  • 1. 
    The Commission shall implement and monitor the effectiveness of the security measures for central VIS and the communication infrastructure referred to in this Decision.
  • 2. 
    The Commission shall designate a System Security Officer from among its officials. The System Security Officer shall be appointed by the Director-General of the...

More

This text has been adopted from EUR-Lex.

 

5.

Sources and disclaimer

For further information you may want to consult the following sources that have been used to compile this dossier:

This dossier is compiled each night drawing from aforementioned sources through automated processes. We have invested a great deal in optimising the programming underlying these processes. However, we cannot guarantee the sources we draw our information from nor the resulting dossier are without fault.

 

6.

Full version

This page is also available in a full version containing the legal context, de Europese rechtsgrond, other dossiers related to the dossier at hand and the related cases of the European Court of Justice.

The full version is available for registered users of the EU Monitor by ANP and PDC Informatie Architectuur.

7.

EU Monitor

The EU Monitor enables its users to keep track of the European process of lawmaking, focusing on the relevant dossiers. It automatically signals developments in your chosen topics of interest. Apologies to unregistered users, we can no longer add new users.This service will discontinue in the near future.