Guidelines for this directive include:
· There should be an incentive for providers to contribute to the overall security of interconnected networks rather than protecting merely their own resources.
· Providers need to be more proactive and monitor their networks for risks of security breaches. Providers could also be asked to report which networks they monitor.
· This includes guidance to consumers as well as guidance to the provider’s staff, in particular with regard to incident response and emergency planning.
· The need for contact details for email abuse and security violations should also be stressed.
Providers in Europe are more concerned about spam emails that their customers receive than they are concerned with spam that their customers send.
http://www.enisa.eu.int/doc/pdf/deliverables/enisa_security_spam.pdf