A/67/167
• Measuring the maturity of information infrastructure protection organizations
in the country and evaluating progress.
Furthermore, cybersecurity programme of the Supreme Council for Information
and Communications Technology continues to work with the legislative body in
drafting laws and standards to constantly improve the nation’s information and
communications technology safeguards in addressing emerging contemporary threats.
The Supreme Council recommends adoption/development of the following
possible measures, through the international community:
• Establishment of international legal frameworks harmonized at the regional
level in all countries, within five years.
• Establishment of a computer incident response team in all countries that do not
currently have one, within three years.
• Development of national cybersecurity strategies, aligned with international
cooperation principles, including critical information infrastructures protection
(CIIP), within five years.
• Development of cybersecurity-related curricula aimed at building capacity and
raising awareness in various constituencies (e.g., Governments, academia,
private sector, schools).
• Emphasizing the importance of online safety awareness programmes for
children and youth.
Turkey
[Original: English]
[31 May 2012]
Information and communication technologies are rapidly penetrating into both
daily life and business processes. Various data critical for individuals, institutions or
Governments is stored digitally and transmitted in cyberspace. Despite its benefits,
technology carries some risks, in terms of the inability to sustain the confidentiality
and integrity of digitally stored data and the availability of information systems.
Vulnerabilities in information and communications systems — stemming from
faulty design, configuration and operation and inadequate technical abilities and
lack of training or security awareness in employees and users — provide an
appropriate environment for those risks to materialize.
In order to avoid or mitigate risks and remedy vulnerabilities, efforts to
develop cybersecurity are increasingly becoming important at national and
institutional levels. In this regard, building technical and administrative capacity
and increasing the security awareness of executives, employees and users in public
and private institutions are regarded as essential parts of these efforts.
The awareness of high-level executives of the Turkish Government about the
need to increase national information security is well established. In addition, the
Information and Communications Authority of Turkey specifically focuses on
researching best practices and emerging threats in cyberspace, organizing and
conducting national cybersecurity exercises, increasing institutional and technical
capacity for responding to emergency situations and performing regular audits of
12-43414
15