Program/Initiative Time-Frame facility, incidents response coordination, incident response on the web, vulnerability treatment, vulnerability analysis, and vulnerability response and vulnerability response coordination; Proactive services: public notice, technological surveillance, security audit and assessment, security installations and maintenance, security tools development, intrusion detection services and security information dissemination, etc; and Artifacts treatment: artifacts analysis, response to artifacts, coordination of response to artifacts, risk analysis, continuation and resumption of activities after disaster, security consultation and sensitization campaign, education/training and product appraisal or certification. Should be in place in 18 months from the adoption of the policy Program/Initiatives Deliverables and Target Program/Initiative Deliverables Time –Bound Measurable (TBM) Target 6 – months from approval of Policy National CSIRT institution Laboratories, early warning system 12 –months from approval of policy Full operational capacity 18 - Months from approval of policy Program /Initiative: Output, Outcome and Beneficiaries and Estimated Cost National CSIRT 57 | P a g e Fully functional CSIRT with well trained staff and fully equipped laboratories responding to cyber threats and maintain risk to the CNII National Cyber Security Policy & Strategy

Select target paragraph3