CICTE: The Formation of an Inter-American Alert, Watch, and Warning Network to
Rapidly Disseminate Cybersecurity Information and Respond to Crises, Incidents, and Threats
to Computer Security
Because of the rapidly evolving nature of technology, the daily discovery of new
vulnerabilities in software and hardware, and the increasing number of security incidents,
cybersecurity is impossible without a constant, reliable supply of information about threats,
vulnerabilities, and how to respond to and recover from incidents. Therefore, in support of the
Comprehensive Inter-American Cybersecurity Strategy, CICTE will develop plans for the creation of
a hemisphere-wide 24-hour per day, seven-day per week network and Computer Security Incident
Response Teams (CSIRTs) capable of and charged with appropriately and rapidly disseminating
cybersecurity information and providing technical guidance and support in the event of a cyber
incident. These teams could begin simply as official points of contact located in each state and
charged with receiving computer security information to be transformed into CSIRTs in the future.
The essential characteristics of the effort to create this hemispheric network are summarized
below and fully described in the document "Recommendations of the CICTE Cybersecurity
Practitioners’ Workshop on the OAS Integral Cybersecurity Strategy: Framework for Establishing
the Inter-American CSIRT Watch and Warning Network" (CICTE/REGVAC/doc.2/04). CICTE
shall, along with the member states, create this hemispheric network using the Plan of Action
provided in that document (CICTE/REGVAC/doc.2/04, Section IV).
Principles
The CSIRTs that will participate in CICTE’s initiative will share common principles. They
will be:
•
Indigenous – The hemispheric network should be operated and controlled by national
points of contact in each participating nation appointed by the governments.
•
Systemic – The hemispheric network requires a trained workforce, regular
information sharing regarding threats and vulnerabilities, constant reevaluation, the
implementation of best practices, and appropriate interaction with policymakers.
•
Ongoing – Due to the daily evolution of the Internet, the program must be regularly
updated and maintained and the staff trained on a periodic basis.
•
Accountable – Rules with respect to issues such as the handling of information must
be understood and adhered to or users will lose confidence and efforts to make the
system more secure will be undermined.
•
Built upon existing arrangements – There are a number of preexisting entities in the
Hemisphere that provide cybersecurity services to a greater or lesser extent. Any
new system must build upon these preexisting institutions to avoid duplication and
encourage active participation.
Building the Hemispheric Network