GOAL 2 Objective 5 Create a child online protection working group (COPWG) to identify areas of child online protection (such as technical protection measures, curriculums for school and information material for parents and guardians) that need to be integrated in Vanuatu. The COPWG shall also evaluate different technical measures that services providers must introduce to protect children online and parameters that shall be included in a report submitted to guardians upon request (see GOAL 2, Objective 4). This shall include recommendations for measures how to prevent an abuse of the service. A report shall be submitted to the NCSC until December 2013. Objective 6 Develop a strategy to encourage the reporting of Cybersecurity incidents. The increase of information shall feed into concrete warnings about recent trends, regular information about latest trends for press and general public and quarterly reports about the development of incidents for NCSC. Set up of a central website for reporting Cybersecurity incidents by businesses and citizens as well as providing information and tools. Objective 7 Development of unit within law enforcement that serves as single point of contact for requests from government institutions as well as citizens and businesses. The creation of a contact point and the installation of the website shall increase the amount of information available. Objective 8 To carry out a coordinated survey and assessment, to analyse how far citizens, businesses and government are affected by Cybersecurity incidents and Cybercrime Standardization and Services Policy Statement: Defining and controlling technical minimum standards for operators of national critical infrastructure to ensure basic security standards. Furthermore, provide services for citizens and businesses. The objectives for Goal 2 are: 8 Objective 1 Identify operators of national critical infrastructure and determine the use of ICT by those operators and the related risks. Objective 2 Develop technical and organizational minimum standards for the operator of critical infrastructure and the related control/evaluation mechanisms to ensure that the risk of Cybersecurity related attacks are minimized. Objective 3 The CERT shall carry out the same assessment and development of minimum standards as defined in objective 1 with regard to ICT operated and used by government institutions. This shall include National Cybersecurity Policy / Politique nationale de cybersécurité / Nasonal Cybersekuriti Polisi

Select target paragraph3