ANNEX 5. DEFINITIONS / GLOSSARIES ANNEX 5. DEFINITIONS / GLOSSARIES CEPTOAR CEPTOAR council CI CI operators CI sectors CI services (CISs) CISs crisis Capability for Engineering of Protection, Technical Operation, Analysis and Response; Functions which provide information sharing and analysis at CI operators, and organizations which serve as these functions The council composed of representatives of each CEPTOAR which carries out information sharing between CEPTOARs; An independent body, not positioned under other agencies, including government organizations The backbone of national life and economic activities formed by businesses providing services that are extremely difficult to be substituted; If the function of the services is suspended, deteriorates or becomes unavailable, it could have a significant impact on the national life and economic activities. Operators designated in "Applicable CI operators" in "ANNEX 1. SCOPE OF CI OPERATORS AND CRITICAL INFORMATION SYSTEM EXAMPLES" and groups composed of those designated operators Sectors regarding CI designated for each business type; Specifically, as follows: "information and communication services," "financial services," "aviation services," “airport services,” "railway services," "electric power supply services," "gas supply services," "government and administrative services (including local government)," "medical services," "water services," "logistics services," "chemical industries," "credit card services" and "petroleum industries" Services and/or a set of procedures provided by CI operators necessary to utilize those services that are designated as those to be protected in particular for each CI sector, taking into account the extent of their impact on national life and economic activities Large-scale CISs outages which require intensive response by the government such as the establishment of the Cabinet Response Office at the Crisis Management Center in the Prime Minister's Office Situation where system failures hinder safe and continuous provision of CI services CISs outages Contingency plans Crisis management ministries Critical information systems Cybersecurity measures Cybersecurity agencies related Cybersecurity ministries related Plans formulated in advance with regard to policies, procedures, readiness, etc. for initial responses (emergency responses) to be taken by top management and officials, etc. immediately after CI operators recognize the occurrence or a possibility of CISs outages The National Police Agency (NPA); Fire and Disaster Management Agency (FDMA); Japan Coast Guard (JCG); Ministry of Defense (MOD) Information systems required to provide CI services, designated for each CI operator, taking into account of the degree of impact on its CI services A wide range of activities for preventing CISs outages from affecting the national life and economic activities The National Police Agency Cyber Force; National Institute of Information and Communications Technology (NICT); National Institute of Advanced Industrial Science and Technology (AIST); Information-Technology Promotion Agency (IPA); ICT Information Sharing And Analysis Center Japan (ICT-ISAC Japan); Japan Computer Emergency Response Team Coordination Center (JPCERT/CC); Japan Cybercrime Control Center (JC3) The National Police Agency (NPA); Ministry of Internal Affairs and Communications (MIC); Ministry of Foreign Affairs (MOFA); Ministry of Economy, Trade and Industry (METI); Secretariat of the Nuclear Regulation Authority(*); Ministry of Defense (MOD) * The ministry engaging in cybersecurity-related duties from the perspective of ensuring safety of nuclear power plants 64

Select target paragraph3