×

Donation of the Diagonal pre-diagnostic tool for assessing cyber maturity

12.06.2024

Image for Donation of the Diagonal pre-diagnostic tool for assessing cyber maturity

About Diagonal:Developed by the FrenchGendarmerie and originally designed for small and medium-sized enterprises, health institutes and municipalities, Diagonal is a pre-diagnostic tool that assesses cyber maturity and identifies actions to enhance protection against cyber threats. On 12 June, this tool was donated to public administrations across the Western Balkans as part of the WB3C's support in buillding cyber resilience of the region.

 

Why Diagonal?

With the rise in cyberattacks, it is crucial for public administrations to be well-prepared. Diagonal helps in understanding vulnerabilities and developing an effective security strategy. It facilitates the identification of priority projects to secure against online threats and supports strategic decision-making.

 

Key Objectives of Diagonal:

  • Assess cyber maturity: Understand the current level of cybersecurity within the administration.
  • Identify improvements: Suggest both human and technical areas for enhancement
  • Collect data: Gather statistical information on prevalent cyber threats.

 

Main features:

  • Cyber risk assessment and strategy development.
  • Monitoring and awareness programs.
  • Evaluation of service provider dependencies.
  • GDPR compliance checks.
  • Technical infrastructure security.
  • Incident response and business continuity planning.

 

This initiative is part of a series of actions by WB3C to support Western Balkans administrations, significantly contributing to building regional cyber resilience. Diagonal is not a replacement for a comprehensive audit but serves as an essential first step in fortifying our defenses against cyber threats.

Major David Toulotte of the Commandement du ministère de l’Intérieur dans le cyberespace (COMCYBER-MI), one of the co-creators of the tool, and Colonel Laurent Baille of the French Gendarmerie - ComCyber-MI Strategic International Cooperation, together with Cedric Grousset, Director of Studies of WB3C, presented the software to our beneficiaries and held workshops on its use.


Visit by CBRN Centres of Excellence Project 101

WB3C was pleased to meet with representatives of the EU CBRN Centres of Excellence Project 101 to discuss potential cooperation in strengthening critical infrastructure protection and security.
The exchange with Alexandre Custaud, EU CBRN CoE Project 101 Team Leader and Scott S. focused on possible synergies between cybersecurity, CBRN risk mitigation and broader critical infrastructure resilience. As threats to essential services become increasingly interconnected, cross-sector cooperation is essential to support more coordinated, practical, and future-oriented capacity building.
WB3C team Gilles Schwoerer and Maja Miranovic stressed that sectoral approach in building resilience for critical infrastructure is central in our 3-year EU funded programme and expressed readiness to explore areas where our respective expertise and regional engagement can contribute to stronger resilience and security.

Police officers complete demanding 15-month journey from investigator to digital forensics graduate

When fourteen police investigators recently graduated from WB3C's Digital Forensics programme delivered in partnership with the University of Technology of Troyes (UTT), the public saw the final result: internationally recognised diplomas, successful thesis defences and a new generation of specialised cybercrime investigators.

Less visible was the work that took place behind the scenes to get there.

For fifteen months, participants balanced full-time operational duties with a university-level programme requiring approximately 1,400 hours of study. While continuing to investigate cybercrime cases and fulfil their professional responsibilities, they attended classes, completed practical assignments, conducted research and prepared professional theses.

As the programme entered its final stage, WB3C and UTT intensified their support to help participants navigate one of the most demanding parts of the academic journey: the preparation and defence of their final papers.

Participants received detailed guidance on thesis writing, academic standards and defence procedures applied by UTT. Following the submission of their papers, mentors conducted individual reviews and provided detailed feedback, recommendations and improvement points. Students then worked through revisions and refinements before receiving final confirmation that their work met the required academic standards.

Throughout this process, mentors remained available for consultations, questions and individual support, ensuring that participants could successfully bridge the gap between operational expertise and academic requirements.

The final result was more than a successful examination. It demonstrated the determination of investigators who committed to a demanding programme while remaining on active duty, and the value of sustained mentorship and international cooperation in building specialised cybercrime capabilities.

The graduation of all fourteen participants stands as a testament not only to their professional competence, but also to the perseverance required to complete a rigorous university programme alongside the realities of modern law enforcement work.

Advancing Cyber Resilience of Critical Entities through ISO 27001 Training

This week, at Western Balkans Cyber Capacity Centre (WB3C) we are running a three-day training on ISO/IEC 27001:2022, delivered in cooperation with our partner Čikom and led by its CISO and SOC Manager Mladen Bukilic.

As countries across the region advance their alignment with European cybersecurity requirements, organisations responsible for public services and critical functions face growing expectations to manage risks in a systematic and measurable way.
The training introduces participants to the principles of Information Security Management Systems (ISMS), covering topics such as risk assessment, security governance, incident management, internal audits and continual improvement. Through practical exercises and case studies, participants develop the tools needed to translate security requirements into organisational practice.
More than a compliance exercise, ISO 27001 provides a framework for protecting information assets, strengthening organisational resilience and building trust in an increasingly interconnected environment.
The activity is delivered within the regional project "Improving the Resilience of Critical Entities and the Protection of Public Spaces and Cyberspace against Security Threats in the Western Balkans", funded by the European Union.


Copyright © WB3C

Disclaimer: Translations of the original content written in English into other languages are AI generated by Weglot.