CYBERSECURITY STRATEGY OF THE REPUBLIC OF CYPRUS 2012 choice, but has become absolutely necessary to achieve the required targets and results. Problems and threats in cyberspace cannot be fully mitigated by a single country alone, and as such, constructive cooperation between states on the European level is required. The Republic of Cyprus, through the activities of OCECPR and of the other competent authorities, is already represented to a high degree at most relevant working groups and international fora which operate under the auspices of the European Commission and of ENISA. The continued representation of the Republic of Cyprus at such fora and working groups is an integral part of this Strategy, with the target of active participation and contribution of Cyprus to significant decisions that are made via the work of these groups. Close ties will be created with respective competent authorities in other member states of the European Union, and these ties will be leveraged for the continuous development and improvement of the strategic response capabilities of the Republic of Cyprus in cybersecurity. Full support of actions and activities, that aim to improve the cybersecurity levels of European information infrastructures, as well as participation in other international activities and related groups7, will also be continued. It is noted that the element of confidentiality must be taken into account during all cooperation and exchange of information and experiences with international organisations and working groups, as described in section 3.3 regarding the formation of the working groups. Action 15 - Phase A – The Republic of Cyprus will continue to build upon its constructive cooperation with the rest of the European Union member states, through its representation and active contributions to relevant working groups and fora. This cooperation will support the actions and activities on a Union level to improve the level of cybersecurity in the whole of Europe. 3.14 Development of a National Contingency Plan for Critical Information Infrastructures The measures and actions that have been discussed in preceding sections will contribute, to a large extent, to the improvement of cybersecurity in the Republic of Cyprus, including both the public and private sectors. The implementation of all of the actions in an organised and effective way will help reach the target of a safer and more secure information society. However, no technological system or set of measures and actions, regardless of how comprehensive they are, will be able to protect cyberspace to an absolute degree, especially the critical information infrastructures of any country. Bearing this in mind, it is essential to develop a National Contingency Plan for Critical Information Infrastructures. The target of this plan will be to guide and develop detailed 7 E.g. IMPACT (International Multilateral Partnership Against Cyber Threats). 26

Select target paragraph3