In 2011, Colombia adopted a comprehensive cybersecurity and cyberdefense
strategy known as “CONPES 3701.” The technical cybersecurity and
cyberdefense aspects of CONPES are managed by three entities:
• Centro Cibernético Policial (CCP) or the Police Cyber Center:
Responsible for ensuring the integrity of police and civil society networks;
maintains robust investigative capability.
• Comando Conjunto Cibernético (CCOC) or the Joint Cyber Command:
Military unit responding to attacks against the nation’s military assets.
• colCERT: National-level coordinating entity that overseas all aspects of
cybersecurity and cyberdefense.
Colombia recently requested accession to the Council of Europe Cybercrime
Convention and hopes to join the treaty in 2013, complementing its policy and
technical advances with a robust suite of cybercrime legislation.
Jamaica
In 2012, Jamaica revised its cybercrime legislation, expanded the capabilities
of the Communication Forensic and Cybercrime Unit (CFCU) of the Jamaica
Constabulary Force, and took steps to formally establish a CSIRT. Showing its
increasing technical and investigative capabilities, the CFCU was responsible for
the investigation and arrest of a high-profile hacker who had levied successful
attacks against the country’s critical infrastructure. To maintain parity with
emerging threats, the unit maintains a robust digital forensic laboratory that is
continuously audited and updated.
The Jamaican Ministry of Science, Technology, Energy, and Mining has been
leading government efforts to improve its cybersecurity strategy and policy.
In 2012, the ministry oversaw the creation of the National Cybersecurity Task
Force that comprises all relevant government agencies and other stakeholders.
Mexico
The Mexican government initially only had one unit in the Secretariat of Public
Security tasked to respond to cyberthreats. Increased frequency of cyber
incidents impelled the creation of a new Coordination Center for the Prevention
of Electronic Crimes. The center is responsible for managing cyber incident
response, investigating electronic crimes, analyzing digital evidence, protecting
critical infrastructures, and responding to digital threats that would affect the
integrity of critical networks.
In addition, the National Specialized Cyber Incident Response Team was
created to augment government capabilities. Technicians for this team are highly
qualified and continuously trained to ensure knowledge of emerging hacking
tools and techniques. This group monitors and secures the federal government’s
digital assets.
PAGE 21 | Latin American and Caribbean Cybersecurity Trends and Government Responses