1. Develop the capacity to identify,
prevent,
and respond to cyber threats,
vulnerabilities, attacks, and damages to critical information infrastructures and
institutions;
2. Ensure the security of imported and local critical information infrastructure products
and services;
3. Create coordination and partnership between the public and private sectors to provide
special protection for critical information infrastructures;
2.7.3. Strategies and Tactics
1. Building institutional structures and capacity; and establishing operational procedures
that enable to identify, defend and respond to potential threats, vulnerabilities, attacks,
and damages to critical information infrastructures;
Tactic One: A coordinated national cyber security system will be
implemented to ensure the cyber security of critical information infrastructure
withing public and private institutions;
Tactic Two: An entity that can detect and give a rapid response to attacks on
critical information infrastructures will be established;
Tactic Three: National critical information infrastructure security governance
system will be established; it will be updated continuously in compliance with
new developments;
2. Building capacity to develop up to the standard
control systems for preventing
attacks on critical information infrastructure;
Tactic One: Public and private institutions will implement international
standards and nationally contextualized cyber security laws, policies,
standards, and frameworks;
Tactic Two: Critical infrastructure sectors will be required to design and
incorporate programs that address international issues which comply with the
country's information security standards and operational procedures;
Tactic Three: Education and training on current issues will be conducted,
and discussion forums will be organized for stakeholders to detect, prevent
17