The European Union has urged that cyber capacity building be treated as a central priority under the new UN Global Mechanism on developments in the field of information and communications technologies (ICTs) in the context of international security, warning that many developing and emerging economies lack the technical expertise and institutional frameworks to address cyber threats effectively. In a statement delivered on 23 July 2026 at the First Substantive Session of the Global Mechanism in New York, the EU stressed that this gap not only undermines digital development but also impacts international security and stability.
The EU's intervention, made under the agenda item on capacity building, calls for the Global Mechanism to enable exchanges that identify concrete gaps and needs, and to facilitate connections between recipients and donors, including from the multi-stakeholder community. The aim, the EU said, should be to translate the UN framework of responsible state behaviour in cyberspace into practical cybersecurity measures that enhance national resilience, and to implement cyber capacity building projects on that basis. The EU proposed that such exchanges take place in the Global Mechanism's dedicated thematic group (DTG2), taking into account discussions in DTG1 on best practices and concrete cybersecurity measures needed at national level.
The statement also suggested further discussions in the Plenary and DTG2 on broader policy questions, including the further development of a Digital Tool to support states' implementation of the UN framework, building on the Voluntary Norms Implementation Checklist; the role of the multi-stakeholder community in designing and delivering capacity building; the role of regional organisations in ensuring effective coordination; and how to mainstream the agreed ICT security capacity-building guidelines adopted in the 2021 OEWG report into relevant programming. The EU noted that the Global Roundtable on Capacity Building could also play a role in enhancing coordination by bringing together implementers for exchange of information and best practices, feeding into the Plenary and DTG2 discussions.
The EU and its member states committed to avoiding duplication between the Plenary, DTG2 and the Global Roundtable, pursuing a streamlined approach. The EU highlighted its significant investment in cyber capacity building over recent years, noting that in addition to member states' individual projects and initiatives such as the Global Gateway, the EU is currently working with partners on 27 projects valued at €140 million, and will continue to invest, recognising capacity building as an essential pillar of security and stability in cyberspace. The EU also pledged to continue promoting coordination and cooperation with international organisations, industry, civil society and academia to ensure meaningful allocation of scarce resources and effective, sustainable delivery of capacity building activities.
The statement was delivered on behalf of the EU and its member states, with candidate countries Türkiye, North Macedonia, Montenegro, Serbia, Albania, Ukraine, the Republic of Moldova, Bosnia and Herzegovina, and Georgia, as well as EFTA country Norway and San Marino aligning themselves with the statement.