vi. To minimize damage and recovery times from cyber attacks through effective incident management measures; and vii. To create a legal and regulatory framework to maintain order, protect the privacy of users and criminalize attacks in cyberspace. ae WNP In order to achieve these objectives, five key areas have been identified and are outlined hereunder: Governance Incident Management Collaboration Culture Legislation 5.1 Governance Trinidad and Tobago’s cyber security efforts must be able to effectively address the dynamic and challenging nature of threats to cyberspace. This requires an overarching governance framework to effectively coordinate and manage a comprehensive cyber security strategy. Existing vulnerabilities that could create the most disruption to Trinidad and Tobago’s critical systems and infrastructure must be identified and addressed. The Government will promote development of new systems with less vulnerability together with an ongoing assessment of emerging technologies for weaknesses. Common standards for securing ICT infrastructure, services and data repositories will be developed and enforced throughout Trinidad and Tobago. Periodic review of standards, policies and regulations will also be undertaken. Communication between and among Government Ministries and Agencies will also be promoted. In order to manage the country’s response to ever-evolving cyber threats, and to coordinate the wide cross section of entities with perceived overlapping authority for the management of these issues, it is imperative to establish 13

Select target paragraph3