COUNCIL DECISION (EU) 2024/1873
of 24 June 2024
on the position to be taken on behalf of the European Union within the Joint Committee established by the Agreement between the European Union and the Swiss Confederation on the linking of their greenhouse gas emissions trading systems as regards the amendment of Annex II to the Agreement and of the Common Operational Procedures and the Linking Technical Standards
(Text with EEA relevance)
Article 1
Article 2
DECISION NO 1/2024 OF THE JOINT COMMITTEE ESTABLISHED BY THE AGREEMENT BETWEEN THE EUROPEAN UNION AND THE SWISS CONFEDERATION ON THE LINKING OF THEIR GREENHOUSE GAS EMISSIONS TRADING SYSTEMS
of …
as regards the amendment of Annex II to the Agreement and of the Common Operational Procedures and the Linking Technical Standards
Article 1
Article 2
ANNEX I
‘ANNEX II
LINKING TECHNICAL STANDARDS
ANNEX II
COMMON OPERATIONAL PROCEDURES (COP) PURSUANT TO ARTICLE 3(6) OF THE AGREEMENT BETWEEN THE EUROPEAN UNION AND THE SWISS CONFEDERATION ON THE LINKING OF THEIR GREENHOUSE GAS EMISSIONS TRADING SYSTEMS
Procedures for permanent registry link
1. GLOSSARY
Acronym/Term |
Definition |
Certificate Authority (CA) |
Entity that issues digital certificates |
CH |
Swiss Confederation |
ETS |
Emissions Trading System |
EU |
European Union |
IMT |
Incident Management Team |
Information Asset |
A piece of information that is valuable to a company or organisation |
IT |
Information Technology |
ITIL |
Information Technology Infrastructure Library |
ITSM |
IT Service Management |
LTS |
Linking Technical Standards |
Registry |
An accounting system for allowances issued under the ETS, which keeps track of the ownership of allowances held in electronic accounts. |
RFC |
Request For Change |
SIL |
Sensitive Information List |
SR |
Service Request |
Wiki |
Website that allows users to exchange information and knowledge by adding or adapting content directly via a web browser. |
2. INTRODUCTION
2.1. Scope
2.2. Addressees
3. APPROACH AND STANDARDS
Escalation levels |
EU |
CH |
1st level |
EU Service Desk |
CH Service Desk |
2nd level |
EU Operations Manager |
CH Registry Application Manager |
3rd level |
Joint Committee (which might delegate this responsibility considering Article 12(5) of the Agreement) |
|
4th level |
Joint Committee, if 3rd level is delegated |
4. INCIDENT MANAGEMENT
4.1. Incident detection and recording
4.2. Classification and initial support
4.3. Investigation and diagnosis
4.4. Resolution and recovery
4.5. Incident closure
5. PROBLEM MANAGEMENT
5.1. Problem identification and recording
5.2. Problem Prioritisation
5.3. Problem investigation and diagnosis
5.4. Resolution
5.5. Problem closure
6. REQUEST FULFILMENT
6.1. Initiate Request
6.2. Request Logging and Analysis
6.3. Request Approval
6.4. Request fulfilment
6.5. Request Escalation
6.6. Request Fulfilment Review
6.7. Request Closure
7. CHANGE MANAGEMENT
7.1. Request for Change
7.2. Change Evaluation and Planning
7.3. Change approvals
7.4. Change implementation
8. RELEASE MANAGEMENT
8.1. Plan the release
8.2. Build and Test Release Package
8.3. Prepare deployment
8.4. Roll back the release
8.5. Review and close release
9. SECURITY INCIDENT MANAGEMENT
9.1. Information Security Incident Categorisation
9.2. Information Security Incident Handling
9.3. Security Incident Identification
9.4. Security Incident Analysis
9.5. Security Incident Severity assessment, Escalation and Reporting
9.6. Security Response Reporting
9.7. Monitoring, Capacity Building and Continuous Improvement
10. INFORMATION SECURITY MANAGEMENT
10.1. Sensitive information identification
10.2. Sensitivity levels of Information Assets
10.3. Assignment of Information Assets Owner
10.4. Registration of sensitive information
10.5. Handling of sensitive information
10.6. Access Management
10.7. Certificate/Key Management
ANNEX III
LINKING TECHNICAL STANDARDS (LTS) PURSUANT TO ARTICLE 3(7) OF THE AGREEMENT BETWEEN THE EUROPEAN UNION AND THE SWISS CONFEDERATION ON THE LINKING OF THEIR GREENHOUSE GAS EMISSIONS TRADING SYSTEMS
Standards for permanent registry link
1. GLOSSARY
Acronym/Term |
Definition |
Allowance |
An allowance to emit one tonne of carbon dioxide equivalent during a specified period, which shall be valid only for the purposes of meeting the requirements of the ETS of either entity. |
CH |
Swiss Confederation. |
CHU |
Stationary allowance type, also called CHU2 (referring to Commitment Period 2 of the Kyoto Protocol), issued by CH. |
CHUA |
Swiss Aviation Allowance. |
COP |
Common Operational Procedures. Commonly developed procedures to operationalise the link between the EU ETS and the ETS of Switzerland. |
ETR |
Emissions Trading Registry. |
ETS |
Emissions Trading System. |
EU |
European Union. |
EUA |
EU General Allowance. |
EUAA |
EU Aviation Allowance. |
EUCR |
European Union Consolidated Registry. |
EUTL |
European Union Transaction Log. |
Registry |
An accounting system for allowances issued under the ETS, which keeps track of the ownership of allowances held in electronic accounts. |
SSTL |
Swiss Supplementary Transaction Log. |
Transaction |
A process in a registry that includes the transfer of an allowance from one account to another account. |
Transaction log system |
The transaction log contains a record of each proposed transaction sent from one Registry to the other. |
Acronym |
Definition |
Asymmetric cryptography |
Uses public and private keys to encrypt and decrypt data. |
Certificate Authority (CA) |
Entity that issues digital certificates. |
Cryptographic key |
A piece of information that determines the functional output of a cryptographic algorithm. |
Decryption |
Reverse process of encryption. |
Digital signature |
A mathematical technique used to validate the authenticity and integrity of a message, software or digital document. |
Encryption |
The process of converting information or data into a code, especially to prevent unauthorized access. |
File ingestion |
The process of reading a file. |
Firewall |
Network security appliance or software that monitors and controls incoming and outgoing network traffic based on predetermined rules. |
Heartbeat monitoring |
Periodic signal generated and monitored by hardware or software to indicate normal operation or to synchronise other parts of a computer system. |
IPSec |
IP SECurity. Network protocol suite that authenticates and encrypts the packets of data to provide secure encrypted communication between two computers over an Internet Protocol network. |
Penetration testing |
Practice of testing a computer system, network or web application to find security vulnerabilities that an attacker could exploit. |
Reconciliation process |
Process of ensuring that two sets of records are in agreement. |
VPN |
Virtual Private Network. |
XML |
Extensible Mark-up Language. It allows designers to create their own customised tags, enabling the definition, transmission, validation, and interpretation of data between applications and between organisations. |