external threats must include the deployment of technology to monitor and
analyze
natural
and
man-made
disasters,
the
physical
protection
of the
information infrastructure that supports the knowledge-based economy and
the mitigation of threats that can result from the misuse of computer systems.
In seeking
to address
these
threats,
there
is a requirement
to ensure
the
maintenance of effective communication among relevant stakeholders. This is
a key component in realizing and maintaining the general ICT security
objectives of availability, confidentiality and integrity.
This Strategy seeks to guide all operations and initiatives related to cyber
security in Trinidad and Tobago. It recognises the critical need for an
overarching governance framework,
the establishment
(CSIRT).
of a national
appropriate cybercrime legislation and
Cyber
Security
Incident Response
Team
It also acknowledges the importance of building awareness among
all stakeholders
(government,
business, academia,
civil society and citizens)
of their roles and responsibilities in establishing a secure ICT environment.
2.1 What is Cyber Security?
Although there is a lack of international consensus on the definition of cyber
security,
Trinidad
and
‘Tobago
subscribes
to
the
International
Telecommunications Union’s Telecommunication Standardization Sector,
(ITU-T) Recommendation X.1205(X.cso) which states that:
“Cybersecurity is the collection of tools, policies, security concepts,
security safeguards, guidelines, risk management approaches, actions,
training, best practices, assurance and technologies that can be used to
protect the cyber environment and organization and user’s assets.
Organization and user’s assets include connected computing devices,
personnel,
infrastructure,
applications,
services,
telecommunications
systems, and the totality of transmitted and/or stored information in the
cyber environment. Cybersecurity strives to ensure the attainment and