acknowledged to be harmful
or that may pose threats to
international peace and
security
Group (OEWG). Regionally, we cooperate with Pacific Island and ASEAN
neighbours, including through the ASEAN Regional Forum (ARF), Asia-Pacific
Computer Emergency Response Team community (APCERT), as well as
funding and participating in the Pacific Cyber Security Operational Network
(PaCSCON). We have extensive bilateral cyber cooperation, including a
number of established cyber policy dialogues. Australia’s $34 million Cyber
Cooperation Program has supported over 40 programs bilaterally and
regionally to promote a peaceful and stable online environment and support
regional partners to improve their cyber resilience.
At the ARF, Australia and Malaysia led development of an ARF Cyber Points
of Contact Directory. The Directory is a simple but practical confidence
building measure that will consist of the relevant senior and working level
contacts from participating ARF member countries. The Directory will
facilitate direct, real time communication to prevent miscommunication,
miscalculation and escalation in the event of cyber security incidents with
the potential to impact regional security.
Australia’s International Cyber Engagement Strategy committed to
diplomatic action to support an international cooperative architecture that
promotes stability, and responds to unacceptable behaviour in cyberspace.
In responding to malicious cyber activity, Australia will seek to engendered
greater compliance with the rules and norms agreed at the UN. Any
response will always be consistent with its obligations under domestic and
international law, and designed to strengthen the rules-based international
order. Our objective is to increase stability and security in the use of ICTs
and to prevent ICT practices that are harmful or that may pose threats to
international peace and security.
(b) In case of ICT incidents,
States should consider all
relevant information,
including the larger context of
the event, the challenges of
attribution in the ICT
environment and the nature
and extent of the
consequences;
Australia has developed and published a Cyber Incident Management
Arrangements (CIMA) for the Australian Governments (federal, state and
territory). The CIMA outlines the inter-jurisdictional coordination
arrangements, roles and responsibilities, and principles for Australian
Federal, State and Territory Governments’ cooperation in response to
national cyber incidents. It also defines a “National Cyber Incident”.
Australia maintains bilateral and multilateral relationships with CERT and
cyber security counterparts globally to share information and cooperate
during major cyber incidents.
During a national cyber incident, the Australian Government’s first priority is
to mitigate the impact. Attribution of malicious activity is then necessary to
enable a range of strategic response options. Depending on the seriousness
and nature of an incident, Australia has the capability to attribute malicious
www.dfat.gov.au/cyberaffairs
esafety.gov.au/parents