CHAPTER II
DEVELOPMENT AND IMPLEMENTATION OF CYBER SECURITY POLICY
Article 4. Authorities Developing and Implementing Cyber Security Policy
1. Strategic goals and priorities of cyber security policy as well as measures necessary to
achieve them are determined by the Government of the Republic of Lithuania.
2. Cyber security policy is developed, its implementation is organised, controlled and
coordinated by the Ministry of National Defence of the Republic of Lithuania. The National
Cyber Security Centre takes part in the development of the cyber security policy to the extent to
which legal regulation of activities of cyber security entities has to be established for the
performance of functions laid down in this law.
3. Cyber security policy is implemented by the National Cyber Security Centre, the State
Data Protection Inspectorate, the Lithuanian Police and other authorities the functions of which
are related to cyber security.
Article 5. Powers of the Government in the field of cyber security
The Government:
1) approves the National Cyber Security Strategy;
2) approves the institutional composition of the Cyber Security Council;
3) approves the methodology for identification of critical information infrastructure and
the list of critical information infrastructure and its managers;
4) approves organisational and technical cyber security requirements imposed on cyber
security entities;
5) approves the National Cyber Security Management Plan;
6) supervises cyber security crisis management.
Article 6. Powers of the Ministry of National Defence in the field of cyber security
The Ministry of National Defence:
1) coordinates the preparation of the National Cyber Security Strategy, submits it to the
Government for approval;
2) submits to the Government organisational and technical cyber security requirements
imposed on cyber security entities for approval;
3) submits the National Cyber Incident Management Plan to the Government for
approval;