- 52 -
Collaboration may, inter alia, include:
‒
Sharing information on ICT threats;
‒
Exchanging best practices;
‒
Developing, where appropriate, shared responses to common challenges
including crisis management procedures in case of widespread or
transnational disruption of ICT-enabled critical infrastructure;
‒
Adopting voluntary national arrangements to classify ICT incidents in
terms of the scale and seriousness of the incident;
‒
Sharing national views of categories of ICT-enabled infrastructure States
consider critical;
‒
Improving the security of national and transnational ICT-enabled critical
infrastructure including their integrity at the regional and subregional
levels; and
‒
Raising awareness about the importance of protecting industrial control
systems and about issues related to their ICT-related security, and the
necessity of developing processes and mechanisms to respond to those
issues.
16. Participating States will, on a voluntary basis, encourage responsible
reporting of vulnerabilities affecting the security of and in the use of ICTs and
share associated information on available remedies to such vulnerabilities,
including with relevant segments ofthe ICT business and industry, with the
goal of increasing co-operation and transparency within the OSCE region.
OSCE participating States agree that such information exchange, when
occurring between States, should use appropriately authorized and protected
communication channels, including the contact points designated in line with
CBM 8 of Permanent Council Decision No. 1106, with a view to avoiding
duplication.