Slovakia - Public Administration Digital Transformation

National Concept of Informatization of Public Administration (NKIVS) 2021 – 2026

Národná koncepcia informatizácie verejnej správy (NKIVS) 2021 – 2026

Slovakia

RAI-SK-NA-NCIPAXX-2021
Adopted(Adopted)
PolicyGovernance and OversightData Protection and PrivacyCybersecurity and Model Security
Export PDF

The NKIVS 2021–2026 is the Slovak national strategy defining strategic priorities, architecture and implementation guidance for digitising public administration through 2026. It sets priorities including user-centred electronic services, data and cloud strategies, shared services, public procurement reform for IT, and strengthened cybersecurity, and is binding for state and public administration entities.

Overview

The National Concept of Informatization of Public Administration (NKIVS) 2021–2026 is the Slovak Republic's formal strategy for the digital transformation of public administration. Adopted by the Government of the Slovak Republic on 14 December 2021, the NKIVS sets medium-term objectives and strategic priorities for public-sector IT, focusing on user-centred electronic services, data-driven decision-making, shared services and cloud, improved procurement and operations, and reinforced cybersecurity and human resources. The official ministry page provides the summary and links to the approved text; see MIRRI announcement (14 Dec 2021) and the published text National Concept (NKIVS) PDF. The NKIVS is designed to be implemented via specific action plans, central governance and working groups, and is explicitly intended to align Slovak eGovernment development with EU digital strategies and the National Recovery and Resilience objectives.

Definitions

Key terms used in NKIVS include: "electronic services" (digitally provided public services across channels), "life events" (service groupings organized around citizen or business needs), "government cloud" (centrally provided cloud infrastructure and services for public administration), "one-time-only" (principle that citizens and businesses provide data to the state once, and state systems re-use it), "central architecture" (strategic and reference architecture for interoperability and shared building blocks), and "shared services" (re-usable platforms and components provided centrally to reduce duplication). NKIVS also defines priority classifications (e.g., category A/B services) and KPI targets for online provision and security readiness.

Governance and Institutional Framework

NKIVS assigns primary coordination and leadership to the Ministry of Investments, Regional Development and Informatization (MIRRI) which chairs the digital governance ecosystem and convenes inter-ministerial working groups and steering bodies. Delivery roles are distributed across central public administration bodies, the National Agency for Network and Electronic Services (NASES), the national CSIRT and cybersecurity institutions, and sectoral ministries. Institutional instruments identified include a central Data Office, a central Architecture Repository and working groups for strategic priorities. The strategy expects coherent use of the Act on Information Technologies in Public Administration (Act No. 95/2019 Z.z.) and close coordination with cybersecurity authorities under Act No. 69/2018 Z.z. Governance is operationalised through regular reporting cycles, KPI dashboards and project gate review processes under MIRRI oversight; stakeholder engagement is realised via public consultations and expert working groups.

Key Focus Areas

NKIVS outlines a set of interlocking focus areas: 1) Services for citizens and businesses – reorganising services by life events, delivering pro-active and personalised services, ensuring multichannel access and mobile-first experiences (including adoption of mobile ID). 2) Data value and management – establishing central data governance, cross-agency integration, pre-filled forms, open data, analytics and a central platform for safe data sharing. 3) Digital office and backend transformation – automating internal administrative processes, a unified digital workplace for officials and use of AI/RPA for routine tasks (subject to ethical safeguards). 4) Technological infrastructure and operations – government cloud adoption, shared services, central procurement frameworks, consolidation of data centres and adoption of a reference architecture. 5) Cybersecurity and information security – standardising security baselines, regular testing (penetration and vulnerability management), incident detection/response and workforce training. Cross-cutting priorities include procurement reform to prioritise maintainability and value, strengthening human resources for public IT, and improving accessibility and inclusion of digital services.

Implementation Framework

Implementation is structured around action plans and project portfolios managed by MIRRI in cooperation with line ministries and NASES. Each strategic priority is linked to measurable KPIs, assigned responsible entities and target deadlines; implementation uses gate reviews, architectural compliance checks and prioritisation based on impact to citizens and businesses. The NKIVS anticipates mobilising EU recovery funds, national budget allocations and co-financing to deliver infrastructure and service projects. The strategy promotes reuse of centrally procured components and central contracting frameworks to reduce procurement fragmentation. Critical to implementation are consistent adoption of reference architectures, mandatory compliance with standards under Act No. 95/2019 Z.z., and mandatory cybersecurity measures under Act No. 69/2018 Z.z.

Monitoring and Evaluation

Monitoring is provided through periodic reporting to the coordinating ministry, KPI dashboards tied to strategic targets (DESI improvements, percentage of life events covered, number of online services, security incident metrics), and audit reviews. NKIVS foresees annual progress reports, public transparency measures for key indicators, and independent evaluation of major investment programmes. Working groups and the central Data Office are responsible for providing evidence of outcomes, while MIRRI consolidates results for government-level oversight. Action plans include milestones and deliverables; non-delivery triggers corrective reviews and reprioritisation.

Penalties, Liability, and Appeals

As a strategic document, NKIVS itself sets expectations rather than criminal penalties; however, non-compliance by public bodies has practical and legal consequences via related laws and funding rules. Implementation non-conformity can lead to corrective measures, withholding or reallocation of centrally managed funds, failure of project approvals, mandatory remediation plans, or administrative proceedings under Act No. 95/2019 Z.z. (IT governance obligations) and Act No. 69/2018 Z.z. (cybersecurity obligations). Data protection and privacy non-compliance is subject to the national data protection authority under GDPR. The strategy also foresees appeal and redress routes in procurement and administrative law contexts; affected parties may challenge administrative decisions or seek judicial review where applicable.

Relationship to Other Instruments

NKIVS is explicitly aligned with and builds on multiple national and EU instruments: the Strategy for Digital Transformation of Slovakia, the National Cybersecurity Strategy (2021–2025), the Recovery and Resilience Plan, the Digital Decade commitments, and sectoral action plans such as the Digital Skills and eHealth programmes. It references legal frameworks including Act No. 95/2019 Z.z. (Information Technologies in Public Administration) and Act No. 69/2018 Z.z. (Cybersecurity), as well as procurement and data protection laws. NKIVS is designed to be operationalised by follow-up action plans and implementation documents and to inform legislative and regulatory initiatives that flesh out obligations and operational requirements for public bodies.

International Alignment

NKIVS commits Slovakia to align with EU-level policies and standards (Digital Strategy, Data Governance Act, AI Act principles, interoperability initiatives, and the Digital Decade targets). The concept links to EU interoperability frameworks and seeks compatibility with the European Data Strategy and sectoral directives such as NIS2 (implemented into national law via cybersecurity amendments). NKIVS also promotes participation in cross-border digital services and cooperation on standards and security with EU partners. International alignment aims to ensure portability of services and to attract co-funded EU investments while meeting EU regulatory requirements.

Implementation Timeline

PeriodMilestone / Action
Q4 2021Government adoption of NKIVS; publication of the strategy (MIRRI PDF).
2022Preparation and approval of detailed Action Plans; establishment of working groups; start of priority projects (mobile ID pilots, initial government cloud migrations).
2022–2023Rollout of central building blocks: central data office, architecture repository, initial life-event services (e.g., birth registration digitalisation), procurement reforms.
2023–2024Broader government cloud adoption, migration of priority services to shared platforms, acceleration of cybersecurity maturity improvements and audits.
2025–2026Consolidation, KPI assessment versus DESI targets, transition to next strategic cycle; preparation of updated NKIVS (2025/2026 updates already signalled).

Compliance Checklist

RequirementWhoStatus / Notes
Adopt reference architecture and technical standardsAll public bodiesMandatory under NKIVS and aligned to Act No. 95/2019 Z.z.
Implement "one-time-only" data re-use and pre-filled formsCentral agencies and service ownersPhased rollout per action plan; data governance required
Use government cloud for new/modernised servicesPublic institutions (subject to exceptions)Planned central migration and catalogue of cloud services
Comply with cybersecurity baselines and incident reportingIS owners, CSIRT-connected entitiesEnforced under Act No. 69/2018 Z.z.
Publish open data and service KPIsMIRRI, Data Office, service ownersPart of transparency and monitoring commitments

Sources and References

SourceType
Národná koncepcia informatizácie verejnej správy 2021 (NKIVS) – MIRRI PDFPrimary Source
Plain English

The National Concept of Informatization of Public Administration (NKIVS) 2021–2026 is Slovakia's national strategy to digitise public administration, applying to all state and public administration entities. This policy, adopted on December 14, 2021, sets out the country's vision for digital government through 2026, aiming to align with European Union digital goals and national recovery plans.

The strategy is binding for all Slovak state and public administration bodies, including central government agencies, the National Agency for Network and Electronic Services (NASES), and various ministries and cybersecurity institutions. It outlines several key obligations for these entities. They must: - Adopt a common reference architecture and technical standards for their IT systems. - Implement the "one-time-only" principle, meaning citizens and businesses provide data to the state only once, with systems reusing it across agencies. - Use the government cloud for new or modernised services, consolidating infrastructure. - Comply with standardised cybersecurity baselines, including regular testing and incident reporting, as enforced by related cybersecurity laws.

While the NKIVS itself doesn't carry direct criminal penalties, non-compliance by public bodies can have significant practical and legal consequences. This includes corrective measures, the withholding or reallocation of central funds, and the failure of project approvals. Furthermore, administrative proceedings can be initiated under existing laws like Act No. 95/2019 (Information Technologies in Public Administration) and Act No. 69/2018 (Cybersecurity). A key pitfall to understand is that this document is a strategic roadmap; its "teeth" come from these underlying laws and funding mechanisms, rather than direct fines from the NKIVS itself. Implementation is ongoing, with detailed action plans and project rollouts expected to continue through 2026.

Plain-English rewrite by Regulations.ai — not legal advice. Verify against the official text.

What you must do — compliance checklist

0 / 13 marked complete

Plain-English obligations under Slovakia - Public Administration Digital Transformation. Not legal advice — verify against the official text before relying on it.

  1. #1CriticalPenalties, Liability, and Appeals

    Applies to: All state and public administration entities.

    administrative proceedings under Act No. 95/2019 Z.z. (IT governance obligations)
  2. #2CriticalPenalties, Liability, and Appeals

    Applies to: All state and public administration entities.

    administrative proceedings under Act No. 69/2018 Z.z. (cybersecurity obligations).
  3. #3CriticalPenalties, Liability, and Appeals

    Applies to: All public bodies processing personal data.

    Data protection and privacy non-compliance is subject to the national data protection authority under GDPR.
  4. #4ImportantKey Focus Areas

    Applies to: Public administration entities using AI/RPA.

    use of AI/RPA for routine tasks (subject to ethical safeguards).
  5. #5ImportantImplementation Framework

    Applies to: All public bodies.

    consistent adoption of reference architectures
  6. #6ImportantKey Focus Areas

    Applies to: Central agencies and service owners.

    establishing central data governance, cross-agency integration, pre-filled forms, open data
  7. #7ImportantKey Focus Areas

    Applies to: Public institutions (subject to exceptions).

    government cloud adoption, shared services, central procurement frameworks
  8. #8ImportantKey Focus Areas

    Applies to: IS owners and CSIRT-connected entities.

    standardising security baselines, regular testing (penetration and vulnerability management), incident detection/response
  9. #9ImportantKey Focus Areas

    Applies to: Public administration entities.

    establishing central data governance, cross-agency integration, pre-filled forms, open data, analytics and a central platform for safe data sharing.
  10. #10ImportantKey Focus Areas

    Applies to: Public administration service owners.

    reorganising services by life events, delivering pro-active and personalised services
  11. #11ImportantKey Focus Areas

    Applies to: Public administration service owners.

    ensuring multichannel access and mobile-first experiences (including adoption of mobile ID).
  12. #12ImportantMonitoring and Evaluation

    Applies to: Central public administration bodies.

    Monitoring is provided through periodic reporting to the coordinating ministry, KPI dashboards tied to strategic targets
  13. #13ImportantMonitoring and Evaluation

    Applies to: MIRRI, Data Office, and service owners.

    annual progress reports, public transparency measures for key indicators

© Regulations.AI — created on 13-Jun-2026