1. Develop the capacity to identify, prevent, and respond to cyber threats, vulnerabilities, attacks, and damages to critical information infrastructures and institutions; 2. Ensure the security of imported and local critical information infrastructure products and services; 3. Create coordination and partnership between the public and private sectors to provide special protection for critical information infrastructures; 2.7.3. Strategies and Tactics 1. Building institutional structures and capacity; and establishing operational procedures that enable to identify, defend and respond to potential threats, vulnerabilities, attacks, and damages to critical information infrastructures; Tactic One: A coordinated national cyber security system will be implemented to ensure the cyber security of critical information infrastructure withing public and private institutions; Tactic Two: An entity that can detect and give a rapid response to attacks on critical information infrastructures will be established; Tactic Three: National critical information infrastructure security governance system will be established; it will be updated continuously in compliance with new developments; 2. Building capacity to develop up to the standard control systems for preventing attacks on critical information infrastructure; Tactic One: Public and private institutions will implement international standards and nationally contextualized cyber security laws, policies, standards, and frameworks; Tactic Two: Critical infrastructure sectors will be required to design and incorporate programs that address international issues which comply with the country's information security standards and operational procedures; Tactic Three: Education and training on current issues will be conducted, and discussion forums will be organized for stakeholders to detect, prevent 17

Select target paragraph3