 Establish a systemized and inculcated action plan that can prepare advanced options for reacting to a Cyber Attack so that Authorities can respond to a crisis while it occurs. Response to Cyber Threats and Cyber Attacks must become an automatic action doctrine. This doctrine shall be based on Lebanon's interpretation of the application of existing international law in Cyber Space. In fact, Lebanon cannot decide to react autonomously to a Cyber Attack without considering and respecting existing international laws and regulations.  Incorporate international legal standards to the national classification system of Cyber Attacks. Integrating national and international principles related to Cyber Security is an essential element of an action doctrine, that also represent an important support tool for the authorities in order to take more effective decisions and act as a relevant means of supporting international cooperation.  Strengthen law enforcement capacity and expertise at the national, regional, and local levels to identify and deter Cyber Criminals in Lebanon and abroad.  Improve the capabilities of digital sovereignty and using data centers physically on the national territory. The prospect of digital sovereignty over data must lead to the establishment of legal and technical solutions. Moreover, mastering key technologies is essential to the exercise of our digital sovereignty. Key technologies include, but are not limited to the encryption of communications and the detection of Cyber Attacks and professional mobile radios.  Adopt a certification framework for high-level security products. The current certification framework is poorly suited to the evaluation of commonly used products, such as connected objects, for which costs and time are prohibitive. For this reason, it is recommended to introduce a basic Cyber Security certification on products, in addition to the existing certification framework. The latter could build on existing systems in contexts other than Cyber Security, such as the CE marking required for the marketing of certain goods and services within Europe. This basic Cyber Security certification shall involve compliance and analysis on Cyber Security best practices, based on predefined specifications. It shall be placed under the control of a private body, with public authorities’ participation limited to indirect actions, such as NCISA-approved assessment entities of Cyber Security accreditation.  Strengthen the fight against Cyber Crime through the advanced criminal tools detection; by increasing the skills and number of people working in the field and improving specification; training different stakeholders, such as judges, public prosecutors, as well as bank employees, etc.; legal assistance to victims of Cyber Crime; disincentives against abusers and offenders; regular Cyber Security training to law enforcement authorities; and finally, regular updating of laws and June 2019 LEBANON NATIONAL CYBER SECURITY STRATEGY 25

Select target paragraph3