emergencies. The law enforcement agencies will establish collaboration with international institutions such as Interpol and the Virtual Global Taskforce (VGT) on child abuse material to address Cybersecurity. 4.3.6 Regulatory Authorities (BOCRA, NBIFIRA, Bank of Botswana etc.) The regulators are mainly responsible for the consumer protection, therefore it will play an important in the implementation of the national Cybersecurity strategy. For example BOCRA provides regulatory oversight over the communications sector as aligned to the MTC policy direction. Further, BOCRA, in collaboration with MTC, ensures compliance within the communications sector; that operators adhere to national Cybersecurity laws, policies and standards 4.3.7 National Critical Information Infrastructure Owners NCII owners are keys to Botswana’s efforts to maintain Cybersecurity as they continually assess and address threats and vulnerabilities as well as ensure various mitigation measures are well implemented. They also ensure compliance with relevant National Cybersecurity laws, policies, standards, procedures, frameworks, etc. The following sectors are identified as national critical infrastructure sectors with regard to the cybersecurity: finance, communications, energy, water, emergency services, food, public safety, health, public services and e-government 4.3.8 Consumers & General Public Effective implementation of security at individual level involves some level of understanding with cyber security threats (e.g. viruses, spam, etc.) and the adoption of appropriate technical safeguards (e.g. updating anti-virus software, firewalls, etc.). The national cybersecurity strategy has to focus on the dissemination of appropriate basic cybersecurity awareness information to the general public. For example consumers have to be made aware that they cannot share information such as password, PIN, online with unknown persons and regularly they have to change their passwords and update the anti-virus. 4.3.9 Service Providers The regulator (BOCRA) has to ensure that service providers implement appropriate technical measures, procedures and standards to enhance the information security through their networks. A cybersecurity technical measures framework needs to be developed and implemented that would incorporate technical (e.g., standards, software), procedural (e.g., guidelines, standards, or mandatory regulations) and 34 | P a g e National Cybersecurity Strategy

Select target paragraph3