3.2.2 Government CSIRT
This policy recognises the need for a Government CSIRT, which has been
established under the auspices of COMSEC with its objective as monitoring
government’s cyberpace activities and to identify and protect critical information
infrastructure for the organs of state. The role of the Government CSIRT is to:
Act as a single point of contact for all Organs of State for all cybersecurity
matters;
Coordinate incident response activities between Government departments;
Facilitate information sharing and technology exchange with Organs of State;
Facilitate information sharing and technology exchange with the National
CSIRT;
Establish standards and best practices for Organs of State;
Develop agreed measures to deal with cybersecurity matters impacting on
Organs of State; and
Conduct cyber audits, assessments and readiness exercises in Organs of
State.
3.3.
Cyber Inspectorate
3.3.1
The ECT Act provides for the establishment of the Cyber Inspectorate. Cyber
Inspectorates will contribute towards the creation of a safe, secure
cyberspace for the consumer, business and government. Existing law
enforcement capacity is insufficient to handle the ever increasing cyber
crime. The establishment of a dedicated Cyber Inspectorate team has
become an urgent part of the cyber security framework. In addition to
providing assistance to law enforcement agencies, the Inspectorate will
provide services to the public and business directly as well as the
institutions such as Films and Publications Board, Financial Services Board,
Consumer Affairs Committee, South African Bank Risk Intelligence Centre
etc.
3.3.2
As part of the South Africa’s cybersecurity framework, this policy reiterates
the provisions of the ECT Act regarding the establishment of the Cyber
Inspectorate. The Cyber Inspectorate shall monitor and inspect any websites
or activity on an information system in the public domain and report any
unlawful activity to the appropriate authority.
9