UNCLASSIFIED Page 3 of 5 question. New Zealand is giving consideration to sharing our own position, and encourages others to do the same. We also want to ensure all members are equipped to engage fully in considering how international law applies online. We support calls for a greater focus on international law capacity-building as part of broader cyber security capacity-building efforts. To support us in these efforts we welcome the input and views of civil society, academia and industry. For the purposes of the report of the OEWG, we therefore support:     Reaffirmation of the consensus view that international law applies online as it does online; Encouraging states to develop and share national views on precisely how international law applies online; The development of a repository for such national views, to ensure they are made accessible and to enhance transparency in this field; Encouraging states to increase engagement on capacity building as it relates to the application of international law to cyberspace to ensure that all states can meaningfully participate in this discussion. Confidence-Building Measures New Zealand sees outcomes on CBMs as one of the most practical and achievable things the OEWG can deliver. We acknowledge the work on CBMs that has come before by, among others, the OSCE, the ARF and the OSCE, and the CBM recommendations outlined in the report of the 2015 UNGGE. We are mindful, however, that the regional groups taking forward CBM discussion and implementation do not include the full UN membership. This is a particular concern for New Zealand, including for our close partners in the Pacific. We need to build trust and confidence across all states. It may be that there are certain CBMs which are ripe for universalisation. In doing so, we need to be mindful that CBM discussions in some regional groups are still at a relatively early stage of development. Whatever we do under UN auspices, we need to make sure these groups have the space to continue developing their own practice. Particular CBMs we may wish to consider implementing at a global level may include:   A global, voluntary list of cyber security policy points of contact; Information-sharing around national cyber security strategies and approaches to incident response; INTS-37-1285 UNCLASSIFIED

Select target paragraph3