The European Union, in a statement delivered on 23 July 2026 at the UN Global Mechanism on ICTs in international security, urged that cyber capacity building remain a central issue under the new mechanism, emphasizing that many developing and emerging economies lack the technical expertise and institutional frameworks to address cyber threats effectively. The statement, made during the first substantive session (20–24 July 2026) under the agenda item on capacity building, warned that these gaps undermine not only digital development but also international security and stability.

The EU proposed that the Global Mechanism enable exchanges to identify concrete gaps and needs for cyber capacity building, and facilitate connections between recipients and donors, including from the multi-stakeholder community. The aim, the EU said, should be to translate the UN framework of responsible state behaviour in cyberspace into practical cybersecurity measures that enhance national resilience, and to implement capacity building projects on that basis. States can contribute by identifying gaps, seeking coordination and cooperation, and sharing national best practices on implementing the UN framework into regional and national frameworks.

Such exchanges, the EU suggested, should take place in the second discussion track group (DTG2) and could take into account discussions in DTG1 on best practices and concrete cybersecurity measures needed at national level, as well as on the effective application of international law, voluntary norms, and confidence-building measures. Further discussions could occur in the Plenary and DTG2, including on broader questions related to cyber capacity building as a policy. These could include the further development of a Digital Tool to support states' implementation of the UN framework, building on the Voluntary Norms Implementation Checklist; the role of the multi-stakeholder community in designing and delivering capacity building; the role of regional organisations in ensuring effective coordination; and how to best mainstream the agreed ICT security capacity-building guidelines adopted in the 2021 OEWG report into relevant programming.

The EU also noted that the Global Roundtable on Capacity Building could play a role in ensuring enhanced coordination and cooperation, for instance by bringing together capacity building implementers for exchange of information and best practices, feeding into discussions in the Plenary and DTG2. The EU and its Member States said they will aim to avoid duplication between discussions in the Plenary, DTG2, and the Global Roundtable, and pursue a streamlined approach.

The EU highlighted its significant investment in cyber capacity building over recent years, stating that it is currently working with partners on 27 projects valued at €140 million, in addition to EU Member States' individual projects and initiatives such as the Global Gateway. The EU pledged to continue investing, recognizing capacity building as an essential pillar of security and stability in cyberspace and of its partnerships. It also committed to promoting coordination and cooperation with international organizations and other stakeholders such as industry, civil society, and academia to ensure meaningful allocation of scarce resources and to deliver capacity building activities effectively and sustainably.

The statement concluded that the Global Mechanism is a unique opportunity to enhance global cyber resilience by translating the UN framework into concrete national cybersecurity measures and delivering inclusive, needs-based capacity building grounded in equal partnerships.

← Atlas › News › Foreign affairs