emergencies. The law enforcement agencies will establish collaboration with
international institutions such as Interpol and the Virtual Global Taskforce (VGT) on
child abuse material to address Cybersecurity.
4.3.6 Regulatory Authorities (BOCRA, NBIFIRA, Bank of Botswana etc.)
The regulators are mainly responsible for the consumer protection, therefore it will play
an important in the implementation of the national Cybersecurity strategy. For example
BOCRA provides regulatory oversight over the communications sector as aligned to the
MTC policy direction. Further, BOCRA, in collaboration with MTC, ensures compliance
within the communications sector; that operators adhere to national Cybersecurity laws,
policies and standards
4.3.7 National Critical Information Infrastructure Owners
NCII owners are keys to Botswana’s efforts to maintain Cybersecurity as they
continually assess and address threats and vulnerabilities as well as ensure various
mitigation measures are well implemented. They also ensure compliance with relevant
National Cybersecurity laws, policies, standards, procedures, frameworks, etc.
The following sectors are identified as national critical infrastructure sectors with regard
to the cybersecurity: finance, communications, energy, water, emergency
services, food, public safety, health, public services and e-government
4.3.8 Consumers & General Public
Effective implementation of security at individual level involves some level of
understanding with cyber security threats (e.g. viruses, spam, etc.) and the adoption of
appropriate technical safeguards (e.g. updating anti-virus software, firewalls, etc.). The
national cybersecurity strategy has to focus on the dissemination of appropriate basic
cybersecurity awareness information to the general public. For example consumers
have to be made aware that they cannot share information such as password, PIN,
online with unknown persons and regularly they have to change their passwords and
update the anti-virus.
4.3.9 Service Providers
The regulator (BOCRA) has to ensure that service providers implement appropriate
technical measures, procedures and standards to enhance the information security
through their networks. A cybersecurity technical measures framework needs to be
developed and implemented that would incorporate technical (e.g., standards,
software), procedural (e.g., guidelines, standards, or mandatory regulations) and
34 | P a g e
National Cybersecurity Strategy