National Information Assurance and Cyber Security Strategy (NIACSS) 2012 1. EXECUTIVE SUMMARY Jordanian Government organizations and private sector have different approaches to ensure the security of their information systems and critical information infrastructures. However, these approaches: are generally basic; not systematic; subjective; have no clear definition or boundaries, are not thorough; do not meet international standards; and do not deal effectively with threats emerging from cyberspace. Moreover, cyber security efforts across Jordanian Government organizations and private sector are not consolidated and risks are not addressed at the national level. The revolution in information and communication technologies, powerful personal computers, high-bandwidth and wireless networking technologies, widespread use of the internet, and the high volume of information exchanged over the internet and local networks make it very difficult within currently adopted approaches to obtain and maintain the desired level of information security. The weaknesses in current approaches, coupled with rapid advancements in technology place national networks at higher risks. The nation needs secure and reliable national information infrastructures which are resilient to malicious attack or arbitrary disruption to maintain a high level of trust in these systems across government, with the private sector, and within the citizenry. Government of Jordan recognizes the challenges posed by malevolent actors’ access to cyberspace. Reports of cyber-attacks and their impact are a routine, daily occurrence around the world. Furthermore, while we know what is known from these reports, the high probability of unreported or unknown attacks or intrusions causes even greater concern. These challenges require coordinated and focused efforts from all government organizations and strong partnerships between the public and private sectors, and with our citizens. Meeting these challenges requires all information assurance and security plans and activities adhere to a nationwide strategy to guarantee consistency and successful implementation of a coordinated and effective cyber defense. Page 4 of 20

Select target paragraph3