Country strategies released per year
All information presented in this page is based on publicly available material or the Member States have contacted us and provided the information.
All information presented in this page is based on publicly available material or the Member States have contacted us and provided the information.
2021
Published
The Austrian Strategy for Cybersecurity 2021 (ÖSCS 2021) is a comprehensive framework designed to ensure a secure cyberspace for Austria and the EU, emphasizing resilience against cyber threats. It aligns with EU directives, promotes cooperation among various stakeholders, and aims to bolster Austria's national and international cybersecurity efforts through structured measures, implementation, and continuous monitoring.
2013–2021
Replaced
The Austrian Cybersecurity Strategy 2013 was Austria’s first national framework to address cybersecurity. It laid the foundation for a coordinated national approach, emphasizing public-private cooperation, protection of critical infrastructure, and alignment with EU-level initiatives. The 2013 strategy remained in effect until it was replaced by the updated 2021 version (ÖSCS 2021).
2021–2025
Concluding
The Belgian National Cybersecurity Strategy 2.0 (2021–2025) has aimed to "make Belgium one of the least cybervulnerable countries in Europe", strengthen Belgium's digital resilience by securing critical infrastructure, empowering users through awareness and training, and enhancing incident response capabilities via CERT.be and public-private partnerships. Led by the Centre for Cybersecurity Belgium (CCB), the strategy aligns with the EU NIS2 Directive and fosters collaboration among public, private, and academic sectors while actively engaging in international cybersecurity efforts. As the strategy period concludes, Belgium is evaluating its progress and preparing for future cybersecurity initiatives to maintain its position as a digitally secure and trusted nation.
2011–2021
Replaced
The first Belgian NCSS provided a foundational framework to improve national cybersecurity posture. It focused on raising awareness, establishing basic cybersecurity governance structures, and promoting public-private collaboration. Though relatively high-level, it laid the groundwork for institutional roles and cross-sector coordination, and was eventually replaced by Strategy 2.0 in 2021.
2021–2023
In Progress
2016–2020
Replaced
2015–2020
Published
Focused on protecting critical infrastructure, promoting public-private cooperation, and fostering cybersecurity awareness.
2020–2025
In Progress
2012–2020
Replaced
2026-2030
Completed
Strengthening national cybersecurity by protecting critical and strategic infrastructure, building whole-of-society resilience, and advancing Czechia's interests through cooperation within the EU and NATO.
2021–2025
In Progress
A comprehensive framework to enhance national cybersecurity resilience, align with EU/NATO standards, and protect critical infrastructure.
2015–2020
Completed
2012-2015
Completed
2026-2029
Published
Denmark's National Strategy for Cyber and Information Security 2026–2029 aims to strengthen digital resilience across society in one of the world's most digitalized nations, at a time of significantly heightened cyber threats. Building on the NIS2 law, the strategy focuses on the areas that fall outside NIS2 requirements - particularly citizens and small and medium-sized enterprises. It emphasizes equipping citizens with the skills to guard against digital fraud, supporting SMEs with knowledge and tools suited to their risk profile, ensuring effective cross-sector handling of incidents affecting critical infrastructure, and positioning cybersecurity as a competitive strength for the business sector. Denmark aims to secure its digital ecosystem, protect national security, and support economic growth in the digital age through initiatives such as a strengthened Cyberhotline, a national anti-fraud forum, a public-private SME-CERT, and a Civil Cyber Programme.
The current in-force strategy is the NCISS 2026–2029, but the objectives remain mapped to the 2022–2024 strategy, which is used as the objectives baseline.
2022–2024
Completed
Denmark’s strategy focuses on enhancing cybersecurity resilience, protecting critical infrastructure, fostering public-private collaboration, and aligning with international standards.
2018–2021
Completed
2015–2016
Completed
2024–2030
Ongoing
Estonia's National Cybersecurity Strategy (NCSS) 2024–2030, titled "Cyber-Conscious Estonia," reflects the nation’s advanced approach to digital security in one of the world’s most digitalized societies. Building on its reputation as a leader in e-governance and cyber resilience, the strategy emphasizes a proactive, risk-based approach to securing digital infrastructure, enhancing public-private collaboration, and ensuring strong international cooperation. It highlights the importance of protecting critical information infrastructure, fostering a cyber-conscious culture among citizens, and promoting innovation in cybersecurity technologies. By aligning with EU standards and global best practices, Estonia aims to maintain its position as a global leader in cybersecurity, safeguarding its digital society and economic stability.
2019–2023
Completed
2014–2017
Completed
2008–2013
Completed
2024–2035
In Progress
The 2024 strategy focuses on responding to evolving geopolitical and technological environments, incorporating NIS2 requirements, and enhancing national cybersecurity capabilities, emphasizing international cooperation and cyber defense.
2019–2023
Completed
2013–2018
Completed
2026-2030
Completed
The National Cybersecurity Strategy 2026–2030 reinforces France’s cyber resilience by developing a leading cyber talent ecosystem, raising nationwide cybersecurity maturity, and securing technological sovereignty in critical areas like AI and cryptography. It combats cyber threat proliferation through robust deterrence, coordinated intelligence, and proactive crisis response. The strategy also strengthens European and international partnerships to promote a secure, open, and rules-based cyberspace.
2025–2027
Ongoing
2015–2020
Completed
2021–2025
Published
The strategy outlines measures to enhance cyber resilience, protect critical infrastructure, foster public-private collaboration, and align with EU and global cybersecurity standards.
2016–2021
Completed
2011–2016
Completed
2026-2030
Completed
The Strategy establishes a comprehensive whole-of-society framework to strengthen cyber resilience, enhance capabilities and cooperation, and ensure a secure, trusted, and sustainable digital future. To achieve this purpose, the Strategy is structured around four strategic objectives, which establish the strategic directions for strengthening cybersecurity and advancing national cyber resilience. The strategic objectives are: Capacity-Building and Awareness Raising; Strengthening National, European and International Cooperation; Establishing a Whole-of-Society Cybersecurity Governance System; and Strengthening Regulatory Compliance and Enhancing Cybersecurity Policies and Measures.
2020–2025
In Progress
2018–2023
Completed
2025-2030
Ongoing
The National Cyber Security Strategy (NCSS), aims are to strengthen and maintain digital prosperity and national cybersecurity resilience by addressing the challenge of a changing world through achieving cybersecurity resilience to threats and challenges, continuously improving people's cybersecurity awareness, effective digitalisation and related security cooperation among public authorities and other economic actors, and enhancing public-society cooperation for defence and security purposes. Hungary emphasizes international cooperation with allies such as NATO, the EU, and the UN, and stresses the importance of coordinated efforts among the government, academia, business, and civil society.
2013-2020
Completed
2022–2037
In Progress
2015–2026
In Progress
2019–2024
In Progress
Ireland's NCSS focuses on protecting critical national infrastructure, developing cybersecurity skills, fostering public-private partnerships, and enhancing international engagement. It emphasizes a proactive approach to addressing evolving cyber threats and strengthening the National Cyber Security Centre (NCSC) capabilities.
2015–2017
Completed
2022–2026
In Progress
2013–2020
Completed
2023-2026
In Progress
2019-2022
Completed
2014-2018
Completed
2025–2030 (review in 5 years)
Active
Liechtenstein’s Cyber Risk Strategy 2025 defines a modernized national vision for cybersecurity, building on the 2020 strategy. Coordinated by the National Cyber Security Unit, it focuses on stakeholder responsibility, cross-border collaboration, and resilience of essential services and the financial sector. Five strategic fields include: risk recognition, awareness and networking, protection of critical and essential infrastructure, financial sector security, and crisis management. The strategy aligns with EEA regulations and incorporates measurable implementation via an action plan.
2020–2023
Replaced
2019–2023
Completed
2011–2019
Completed
2021–2025
In Progress
2018–2020
Completed
2015–2017
Completed
2023-2026
Published
Malta's NCSS aims to strengthen its digital resilience and ensure the security of its digital infrastructure. The strategy focuses on governance, cyber defense, competence, international cooperation, and risk management. It outlines a shared responsibility approach to combat growing cybersecurity threats and enhance national and international cooperation.
2016–2020
Replaced
This strategy focused on the establishment of a governance framework, combating cybercrime, strengthening national cyber defense, securing cyberspace, and promoting cybersecurity awareness and education.
2022-2028
In Progress
The Netherlands Cybersecurity Strategy (NCSS) for 2022-2028 aims to enhance the country's cybersecurity resilience through collaboration across public, private, and civil society sectors. The strategy focuses on improving the security of digital products and services, addressing cyber threats from state actors and criminals, and developing the cybersecurity workforce.
2018–2022
Completed
2014–2018
Completed
2011–2015
Completed
2019 onwards
In Progress
2026-2029
Completed
The Cybersecurity Strategy of the Republic of Poland 2026-2029 sets out the country’s strategic framework for increasing national cyber resilience by strengthening information security, enhancing the capacity to detect and responds to cyber threats, and advancing cybersecurity across the public, military, and private sectors. Building on the previous strategy, it responds to the evolving cyber threat landscape, strengthens the National Cybersecurity System, and aligns with the EU cybersecurity framework. The Strategy focuses on developing cyber resilience, combating cybercrime, protecting critical infrastructure and information systems, enhancing technological capabilities, promoting cybersecurity awareness and skills, and strengthening international cooperation.
2019–2024
In Progress
The strategy aims to enhance Poland's cybersecurity by strengthening systems, boosting national resilience to cyber threats, and fostering public-private partnerships. It includes clear goals for developing a national cybersecurity system, improving public awareness, and supporting international collaboration.
2017–2022
Completed
2013–2017
Completed
2019-2023
Published
Portugal's NCSS aims to enhance the country's cybersecurity resilience by protecting critical infrastructure and improving the security of digital services. The strategy focuses on governance, public-private partnerships, innovation, and the development of a cybersecurity workforce, while aligning with EU regulations and international standards.
2015-2020
Replaced
The first National Cyberspace Security Strategy, aiming to secure network and information systems, promote secure use of cyberspace, and address vulnerabilities and threats.
2022–2027
In Progress
Romania's National Cybersecurity Strategy focuses on ensuring secure and resilient IT systems, strengthening institutional frameworks, promoting public-private partnerships, and enhancing international cooperation. It aligns with EU and NATO commitments.
2013
Completed
2026-2030
Completed
The new Strategy seeks to strengthen Slovakia’s cyber resilience by promoting secure digital transformation, technological innovation, national capabilities and trusted cooperation across the cybersecurity ecosystem.
2021-2025
In Progress
2015-2020
Completed
2009-2014
Completed
2016–2020
Published
Slovenia's NCSS focuses on creating a comprehensive cybersecurity assurance system, improving resilience to cyber threats, and enhancing national and international cooperation. It outlines key areas for development, such as critical infrastructure protection, cybersecurity awareness, and the establishment of a national coordination system. The strategy aims to ensure a secure cyberspace for both public and private sectors.
2019–
In Progress
2013–2018
Completed
2025–2029
In Progress
2017–2027
Completed
2023–2027
In Progress
2018–2022
Replaced
2012–2017
Replaced
Stay updated with ENISA! Sign up for email alerts on publications, events, vacancies, and more.