Global and
national context
Cyberspace
threats
National
Strategic Goals
Principles
Assess risk
Monitor
implementation
Important
assets and
services
Set priorities
and objectives
Strategy governance and management
Stakeholders
Figure 1 - illustrating a risk-based approach to delivering a national Cybersecurity strategy
Examples of objectives found in published Cybersecurity strategies, listed in appendix 3,
include:
• providing a national governance framework for securing Cyberspace
• enhancing the country’s preparedness to respond to the challenges of Cyberspace
• strengthening Cyberspace and national critical infrastructure to support economic
development
• securing national ICT systems to attract international businesses
• building a secure, resilient and reliable Cyberspace
• building relevant national and international partnerships and putting effective
political-strategic measures in place to promote Cyber safety
• developing a culture of Cybersecurity awareness among citizens
• promoting a culture of “self protection” among businesses and citizens
• creating a secure Cyber environment for the protection of businesses and individuals
• building skills and capabilities needed to address Cybercrime
• becoming a world leader in Cybercrime-preparedness and Cybercrime-defence
Objectives of this kind should be developed further in order to make them SMART 1.
1
Often defined as Specific, Measureable, Achievable, Relevant and Time-bounded though other
definitions exist. See http://en.wikipedia.org/wiki/SMART_criteria
Page 10 of 33
www.cto.int