FINAL of Contact (POC) rather than four (i.e. diplomatic, technical, national security policy and enforcement) while some felt that all four POC may not be feasible in the event of serious incidents. Nonetheless, recognising that the CBM#1 could accommodate the diversity of institutional framework among ARF Participants, and taking into account of the non-binding and voluntary nature of this initiative, the revised proposal received support from the ARF participants. The Concept Paper of CBM#1 appears as ANNEX 4. b. CBM #2: Sharing of Information on National Laws, Policies, Best Practices and Strategies as well as Rules and Regulations (Co-Lead Countries: Japan and the Philippines), which aims to reduce misunderstanding and miscalculation and prevent possible conflicts by increasing transparency through sharing information of each ARF Participating Country’s system. The Meeting agreed on this proposal, following minor amendment made during the ISM The Concept Paper of CBM#2 appears as ANNEX 5. c. CBM #3: Protection of Critical Infrastructures and Consultations Mechanism (Co-Lead Countries: European Union and Singapore), which will serve as a practical avenue for consultation and information sharing among ARF Participants on measures to protect critical infrastructure from malicious ICTs acts. The Meeting agreed to conduct further consultation on this initiative, taking into consideration potential linkages and overlaps between CBM#1 and CBM#3. The Concept Paper of CBM#3 appears as ANNEX 6. d. CBM #4: Awareness-Raising and Information Sharing on Emergency Responses to Security Incidents in the Use of ICTs (Lead Country: China), which aims to improve regional capacity building to address ICTrelated incidents and ensure timely and appropriate responses. The Meeting expressed general support toward this initiative and a few Participants suggested the inclusion of law enforcement element in the Concept Note. China is currently seeking an ASEAN Member State (AMS) to co-chair this activity. The Concept Paper of CBM #4 appears as ANNEX 7. e. CBM #5: ARF Workshop on Principles of Building Security of and in the Use of ICTs in the National Context (Lead Country: Singapore), which aims to discuss the various approaches towards conceptualising and developing strategies on security in the use of ICTs that best suit the Co-Chairs’ Summary Report of the 1st ARF ISM on ICTs Security Kuala Lumpur, Malaysia, 25-26 April 2018 Page 4 of 8

Select target paragraph3