78 No. 39475
GOVERNMENT GAZETTE, 4 DECEMBER 2015
NATIONAL CYBERSECURITY POLICY FRAMEWORK FOR SOUTH AFRICA
e-Crime incidents in the RSA have increased to the value of millions of rands. The banking
sector is especially vulnerable to cybercrime. In light of the above and many more unreported
incidents, there is a need to combat cybercrime.
2.5
The borderless nature of cybercrimes introduces a further dimension to National Security.
Numerous cyber-attacks have been launched against a number of countries , such as the
attack on Estonia in 2007, which crippled the country's electronic systems. South Africa is not
immune to such attacks. The protection of South Africa's critical information infrastructure and
the coordination thereof is therefore essential. South Africa needs to develop mechanisms
that will ensure proactive and coordinated national response to cyber threats and incidents
including combating cybercrime. The Government's leadership role in this regard is important,
whilst acknowledging that Cybersecurity is everyone's responsibility, public sector, private
sector and civil society.
2.6
The role of the ICTs in social and economic development of
a country has been widely
acknowledged; however the full potential of ICTs cannot be realized unless there is
confidence and trust in the secure use of ICTs. Government should take responsibility to
ensure that the private sector and civil society are not only aware of the dangers of operating
in cyberspace but also take necessary measures not to become victims of cybercrime. It is
thus prudent to develop within South Africa a culture of Cybersecurity that will address the
needs of the public sector, private sector and civil society.
2.7
Opportunities of ICT and the challenges of Cybersecurity are fuelled by advances in
technology. Consequently, there is a need to develop the requisite skills to exploit the
opportunities of an information economy and meet the dynamic challenges of Cybersecurity.
South Africa will always lag behind or be vulnerable unless we develop requisite skills. There
is a need to create an enabling environment for Cybersecurity training, education, research
and development and skills development programmes in South Africa.
2.8
South Africa is a consumer of ICTs and depends on overseas manufactured technologies to
secure its cyberspace. The downside of this, is that our critical information infrastructure will
continue to have some degree of vulnerability. Thus it is important to develop indigenous
Cybersecurity technologies. Unless we develop Research and Development capabilities to
address this, we will continue to rely of foreign technologies for this purpose. The absence of
stringent compliance monitoring to ensure that technologies used comply to international and
national Cybersecurity standards.
2.9
South Africa will in the promotion and development of Cybersecurity measures in relation to
this NCPF bear in mind the international instruments and measures that may be relevant such
13
This gazette is also available free online at www.gpwonline.co.za