acknowledged to be harmful or that may pose threats to international peace and security Group (OEWG). Regionally, we cooperate with Pacific Island and ASEAN neighbours, including through the ASEAN Regional Forum (ARF), Asia-Pacific Computer Emergency Response Team community (APCERT), as well as funding and participating in the Pacific Cyber Security Operational Network (PaCSCON). We have extensive bilateral cyber cooperation, including a number of established cyber policy dialogues. Australia’s $34 million Cyber Cooperation Program has supported over 40 programs bilaterally and regionally to promote a peaceful and stable online environment and support regional partners to improve their cyber resilience. At the ARF, Australia and Malaysia led development of an ARF Cyber Points of Contact Directory. The Directory is a simple but practical confidence building measure that will consist of the relevant senior and working level contacts from participating ARF member countries. The Directory will facilitate direct, real time communication to prevent miscommunication, miscalculation and escalation in the event of cyber security incidents with the potential to impact regional security. Australia’s International Cyber Engagement Strategy committed to diplomatic action to support an international cooperative architecture that promotes stability, and responds to unacceptable behaviour in cyberspace. In responding to malicious cyber activity, Australia will seek to engendered greater compliance with the rules and norms agreed at the UN. Any response will always be consistent with its obligations under domestic and international law, and designed to strengthen the rules-based international order. Our objective is to increase stability and security in the use of ICTs and to prevent ICT practices that are harmful or that may pose threats to international peace and security. (b) In case of ICT incidents, States should consider all relevant information, including the larger context of the event, the challenges of attribution in the ICT environment and the nature and extent of the consequences; Australia has developed and published a Cyber Incident Management Arrangements (CIMA) for the Australian Governments (federal, state and territory). The CIMA outlines the inter-jurisdictional coordination arrangements, roles and responsibilities, and principles for Australian Federal, State and Territory Governments’ cooperation in response to national cyber incidents. It also defines a “National Cyber Incident”. Australia maintains bilateral and multilateral relationships with CERT and cyber security counterparts globally to share information and cooperate during major cyber incidents. During a national cyber incident, the Australian Government’s first priority is to mitigate the impact. Attribution of malicious activity is then necessary to enable a range of strategic response options. Depending on the seriousness and nature of an incident, Australia has the capability to attribute malicious www.dfat.gov.au/cyberaffairs esafety.gov.au/parents

Select target paragraph3