94   No. 39475 GOVERNMENT GAZETTE, 4 DECEMBER 2015 NATIONAL CYBERSECURITY POLICY FRAMEWORK FOR SOUTH AFRICA (b) Establishing the National Cybersecurity Advisory Council (NCAC) to advise the Minister of Telecommunications and Postal Services on policy and technical issues, and other matters pertinent to Cybersecurity pursuant to building confidence and trust in the secure use of ICTs; (c) Establishing the Cybersecurity Hub and to facilitate the establishment of any other sector CSIRTs. 16.5 The Department of Defence and Military Veterans ( DOD&MV) has overall responsibility for coordination, accountability and implementation of cyber defence measures in the Republic as an integral part of its National defence mandate. To this end, the Department will develop policies and strategies pursuant to its core mandate. 16.6 The Department of Science and Technology (DST) has the responsibility for the development, program. coordination and implementation of national Furthermore, capacity development the Department shall be responsible for developing and facilitating the implementation of a national Cybersecurity research and development agenda for South Africa. 1 6.7 All other Organs of State are required to align their ICT policies and practices with this NCPF in so far as it relates to Cybersecurity. 1 7. The role and Responsibility of the Private Sector 17.1 The private sector is responsible for implementing information security measures at least equivalent to those that are implemented by Government. The NCPF therefore promotes cooperation between the information security bodies that predominantly represent the private sector with equivalent bodies in Government. The Department of Telecommunications and Postal Services (DTPS) and the National Cybersecurity Hub will help facilitate such cooperation. 1 8. The Role and Responsibility of Civil Society 18.1 Each person has a responsibility to ensure that his or her computer, mobile phone or any ICT infrastructure at his or her disposal that links to the cyberspace has updated malware protection. Each person also has a responsibility to report information security incidents to the police or the most accessible CSIRT. DTPS will help facilitate campaigns to raise awareness in this regard. 29 This gazette is also available free online at www.gpwonline.co.za

Select target paragraph3