1. Facilitate and supervise the design, implementation, and coordination of secure inter-ministerial/inter-departmental means of electronic communications at the governmental level. 2. Elaborate the implementation of the country’s Cyber Security Policy for Information Systems and secure the effectiveness of the measures adopted based on a yearly, confidential audit and evaluation report that shall be submitted to the Prime Minister. 3. Support in establishing, at the national level, the Cyber Security Incidents Response Team (CSIRT) that works daily with the ministries and law enforcement agencies. The CSIRT is the central repository of cyber incidents across the territory, where all stakeholders exchange their notification of Cyber Attacks. The CISRT supports all participants in the remediation, defense and prevention against the notified attacks. Also, it defines the Cyber Threat scale and issues a yearly National Threat Watch Report. It cooperates closely with the international CSIRT community (FIRST). 4. Build an event or incident detection system for threats that can affect the national information systems security and coordinate the intervention in response to these events. 5. Organize, as needed, Cyber Security training courses and awareness-raising campaigns for governmental institutions, government personnel, and interested private entities in the field of information systems Cyber Security and Cyber Defense. 6. Assist and advise public administrative entities and institutions as well as the private sector on the implementation of secured information systems that are resistant to Cyber Attacks and diffuse threat assessment and recommendations to the public and private sectors and to the citizens. 7. Apply appropriate Cyber Security standards and enforce their adoption in all government agencies. 8. Provide dynamic intelligence on criminal Cyber Threats in a common database, which the industry can interface with to better defend itself. 9. Identify standards and practices and safety tips related to observed Cyber Security incidents. 10. Cooperate with relevant operators, mainly operators of vital importance (OIV) and critical infrastructure, to identify and characterize Cyber Attacks affecting their operation. 11. Protect the Government’s classified and highly sensitive information and assets from Cyber Attacks. June 2019 LEBANON NATIONAL CYBER SECURITY STRATEGY 41

Select target paragraph3