CICTE: The Formation of an Inter-American Alert, Watch, and Warning Network to Rapidly Disseminate Cybersecurity Information and Respond to Crises, Incidents, and Threats to Computer Security Because of the rapidly evolving nature of technology, the daily discovery of new vulnerabilities in software and hardware, and the increasing number of security incidents, cybersecurity is impossible without a constant, reliable supply of information about threats, vulnerabilities, and how to respond to and recover from incidents. Therefore, in support of the Comprehensive Inter-American Cybersecurity Strategy, CICTE will develop plans for the creation of a hemisphere-wide 24-hour per day, seven-day per week network and Computer Security Incident Response Teams (CSIRTs) capable of and charged with appropriately and rapidly disseminating cybersecurity information and providing technical guidance and support in the event of a cyber incident. These teams could begin simply as official points of contact located in each state and charged with receiving computer security information to be transformed into CSIRTs in the future. The essential characteristics of the effort to create this hemispheric network are summarized below and fully described in the document "Recommendations of the CICTE Cybersecurity Practitioners’ Workshop on the OAS Integral Cybersecurity Strategy: Framework for Establishing the Inter-American CSIRT Watch and Warning Network" (CICTE/REGVAC/doc.2/04). CICTE shall, along with the member states, create this hemispheric network using the Plan of Action provided in that document (CICTE/REGVAC/doc.2/04, Section IV). Principles The CSIRTs that will participate in CICTE’s initiative will share common principles. They will be: • Indigenous – The hemispheric network should be operated and controlled by national points of contact in each participating nation appointed by the governments. • Systemic – The hemispheric network requires a trained workforce, regular information sharing regarding threats and vulnerabilities, constant reevaluation, the implementation of best practices, and appropriate interaction with policymakers. • Ongoing – Due to the daily evolution of the Internet, the program must be regularly updated and maintained and the staff trained on a periodic basis. • Accountable – Rules with respect to issues such as the handling of information must be understood and adhered to or users will lose confidence and efforts to make the system more secure will be undermined. • Built upon existing arrangements – There are a number of preexisting entities in the Hemisphere that provide cybersecurity services to a greater or lesser extent. Any new system must build upon these preexisting institutions to avoid duplication and encourage active participation. Building the Hemispheric Network

Select target paragraph3