A/68/156/Add.1 The action plan consists of 29 action lines to be carried out under the abovementioned main areas. National efforts taken at the national level to strengthen information security and promote the international cooperation in this field The Turkish national regulatory body, the Information and Communication Technologies Authority (BTK), mandated by the Electronic Communications Law (No. 5809), conducts a range of activities to contribute to efforts to meet national and international information security requirements. In this context, the activities of the Authority in the field of cyber security are stated below. 1. Regulation and inspections Several requirements for the authorized operators are defined in the by-law on Security of Electronic Communications and the related communiqué that takes this by-law as a basis. The relevant studies aim to promote the level of national cyber security directly in the activities of operators and to contribute international cyber security implicitly. On the other hand, there are also Authority regulations on electronic signature and registered electronic mail within the context of the Electronic Signature Law (No. 5070) and the Turkish Trade Law (No. 6112). These regulations contribute to the efforts for promoting security and reliability of document and electronic mail exchange processes. 2. Cyber security exercises The Information and Communication Technologies Authority organizes cyber security exercises to further develop the technical and administrative capacity, to raise awareness and to establish opportunities for international cooperation. 2.1. National Cyber Security Exercise 2011 National Cyber Security Exercise 2011 was held from 25 to 28 January 2011, with the participation of 41 public, private and non-governmental organizations involving representatives of the finance, information and communications technology, education, defence and health sectors, as well as the judicial and law enforcement units and various ministries. Six of the aforementioned organizations participated in the exercise on the observer status. 2.2. Cyber Shield Exercise 2012 This exercise was held in May 2012 under the coordination of the Information and Communication Technologies Authority and with the participation of 12 Internet access providers operating in the electronic communications sector. The participants were the ones with the largest market share in the sector, along with the third generation (3G) mobile Internet service providers. In the exercise, mainly Distributed Denial of Service attacks were applied to the participants and the adequacy of the security measures taken against the attacks was assessed. 22/24 13-47545

Select target paragraph3