2 GUIDING PRINCIPLES The National Cybersecurity Strategy is built on the following Guiding Principles: i. Risk-based approach: The Cybersecurity Strategy will ensure that a risk-based approach is adopted by the private sector, the government, academia and civil society in assessing and responding to cyber-related threats or issues. ii. Multi-stakeholder approach: The Cybersecurity Strategy will seek to enhance the effectiveness of all key stakeholders in improving the cybersecurity posture of Malawi by recognizing the various roles and responsibilities of different stakeholders and promoting national cooperation and coordination for cybersecurity-related activities amongst stakeholders. iii. External Co-operation: The Strategy will also promote bilateral, regional and international cooperation, recognizing the borderless nature of cyberspace. iv. Respect for the rule of law and human rights: The Cybersecurity Strategy is aligned with the laws in force in Malawi. It is also aimed at facilitating the promotion, protection and enjoyment of fundamental human rights and freedoms of Malawian citizens. v. Capacity development: The Cybersecurity Strategy will seek to enable the continuous development of the Malawi’s capacity to address fast changing cybersecurity issues and developments. vi. Socio-economic development: The National Cybersecurity Strategy will ensure cyberspace is fully leveraged by Malawi to spur broader socio-economic development, facilitate sustainable socio-economic development across the entire nation. vii. Addressing Cybercrime: The National Cybersecurity Strategy will promote and facilitate both individual and collective action in tackling cybercrime, recognizing both the individual responsibility and collective responsibility in taking steps in combating cybercrime. Page | 11

Select target paragraph3