Global and national context Cyberspace threats National Strategic Goals Principles Assess risk Monitor implementation Important assets and services Set priorities and objectives Strategy governance and management Stakeholders Figure 1 - illustrating a risk-based approach to delivering a national Cybersecurity strategy Examples of objectives found in published Cybersecurity strategies, listed in appendix 3, include: • providing a national governance framework for securing Cyberspace • enhancing the country’s preparedness to respond to the challenges of Cyberspace • strengthening Cyberspace and national critical infrastructure to support economic development • securing national ICT systems to attract international businesses • building a secure, resilient and reliable Cyberspace • building relevant national and international partnerships and putting effective political-strategic measures in place to promote Cyber safety • developing a culture of Cybersecurity awareness among citizens • promoting a culture of “self protection” among businesses and citizens • creating a secure Cyber environment for the protection of businesses and individuals • building skills and capabilities needed to address Cybercrime • becoming a world leader in Cybercrime-preparedness and Cybercrime-defence Objectives of this kind should be developed further in order to make them SMART 1. 1 Often defined as Specific, Measureable, Achievable, Relevant and Time-bounded though other definitions exist. See http://en.wikipedia.org/wiki/SMART_criteria Page 10 of 33 www.cto.int

Select target paragraph3