A/67/167 • Measuring the maturity of information infrastructure protection organizations in the country and evaluating progress. Furthermore, cybersecurity programme of the Supreme Council for Information and Communications Technology continues to work with the legislative body in drafting laws and standards to constantly improve the nation’s information and communications technology safeguards in addressing emerging contemporary threats. The Supreme Council recommends adoption/development of the following possible measures, through the international community: • Establishment of international legal frameworks harmonized at the regional level in all countries, within five years. • Establishment of a computer incident response team in all countries that do not currently have one, within three years. • Development of national cybersecurity strategies, aligned with international cooperation principles, including critical information infrastructures protection (CIIP), within five years. • Development of cybersecurity-related curricula aimed at building capacity and raising awareness in various constituencies (e.g., Governments, academia, private sector, schools). • Emphasizing the importance of online safety awareness programmes for children and youth. Turkey [Original: English] [31 May 2012] Information and communication technologies are rapidly penetrating into both daily life and business processes. Various data critical for individuals, institutions or Governments is stored digitally and transmitted in cyberspace. Despite its benefits, technology carries some risks, in terms of the inability to sustain the confidentiality and integrity of digitally stored data and the availability of information systems. Vulnerabilities in information and communications systems — stemming from faulty design, configuration and operation and inadequate technical abilities and lack of training or security awareness in employees and users — provide an appropriate environment for those risks to materialize. In order to avoid or mitigate risks and remedy vulnerabilities, efforts to develop cybersecurity are increasingly becoming important at national and institutional levels. In this regard, building technical and administrative capacity and increasing the security awareness of executives, employees and users in public and private institutions are regarded as essential parts of these efforts. The awareness of high-level executives of the Turkish Government about the need to increase national information security is well established. In addition, the Information and Communications Authority of Turkey specifically focuses on researching best practices and emerging threats in cyberspace, organizing and conducting national cybersecurity exercises, increasing institutional and technical capacity for responding to emergency situations and performing regular audits of 12-43414 15

Select target paragraph3