QATAR NATIONAL CYBER SECURITY STRATEGY Objective 3: Establish a legal and regulatory framework to enable a safe and vibrant cyberspace. Initiative Action Increase capabilities to combat cyber crime §§ Create new abilities to investigate criminal activity through training, new forensic techniques, and access to technology §§ Enact a Cyber Crime Law to provide law enforcement with additional authority and define criminal acts §§ Collect statistics on cyber crime trends and methods Develop and implement §§ Conduct regular reviews of laws and other policies to laws, regulations, and ensure they remain adequate to address emerging cyber national policies to security needs address cyber security §§ Enact proposed laws (e.g., Data Privacy and Protection Law, and cyber crime Critical Information Infrastructure Protection Law) to prevent misuse of personal information and protect CII Monitor and enforce compliance with cyber security and cyber crime laws, regulations, and national policies §§ Establish a scheme and process for determining if CSOs are adhering to laws and regulations and if they have implemented national policies §§ Develop guidance and resources for CSOs, such as training, tools, and audit workshops, to promote the adoption of cyber security best practices and facilitate compliance with requirements §§ Evaluate the NCSS and report annually on government and CSO efforts to implement the NCSS and improve cyber security Build and maintain strong international relationships to establish cyber security norms and standards §§ Engage regularly with international partners on policy and operations to raise cyber security awareness, identify and address threats, and coordinate actions to improve cyber security worldwide §§ Enhance existing and establish new bilateral and multilateral agreements to promote information sharing, enable cyber crime investigations, and support cyber operations 15

Select target paragraph3