IV. Activities Taken by Stakeholders
2. Activities by Responsible Ministries for CI
(viii)Build a core organization responsible for the sharing of incident information among stakeholders ahead of the
Olympic and Paralympic games
(ix) Compile key points for audits concerning risk management and incident readiness and provide them to CI
operators
(5) Enhancement of the basis for CIP
(i) Continue efforts for reviewing the scope of protection including supply chains and continuously offer
cooperation and proposals for initiatives by relevant ministries (not limited to responsible ministries for CI), in
light of the necessity of "protection as plane" for mission assurance
(ii) Carry out PR activities through providing information on the website, issuing newsletters and holding lectures
(iii) Listen to public opinions through visit surveys, workshops and seminars
(iv) Enhance international cooperation through active utilization of bilateral, inter-regional and multilateral
frameworks
(v) Actively provide case examples and best practices obtained through international cooperation to domestic
stakeholders
(vi) In collaboration with responsible ministries for CI, make appeals to the top management of CI operators and
obtain knowledge therefrom at the same time to utilize such knowledge in improving activities under this
Cybersecurity Policy
(vii) Compile relevant documents for common reference by stakeholders and issue the compiled documents as a
collection of regulations for the purpose of equalizing the knowledge base of stakeholders involved in CIP
(viii) Compile relevant regulations and make them visible
(ix) Encourage CI operators to use products certified under a third-party certification system
2. Activities by Responsible Ministries for CI
(1) Maintenance and promotion of the safety principles
(i) Provide information, etc. related to the safety principles that can be newly positioned as the Guidelines for Safety
Principles to the Cabinet Secretariat
(ii) When the relevant ministry has established the safety principles, it should revise them as necessary, in addition
to implementing periodic analysis and verification thereof; Continue efforts, together with the Cabinet Secretariat,
for appropriately improving institutional frameworks as necessary for maintaining safety, by means such as
through positioning cybersecurity measures as safety regulations among relevant laws and embodying the
service maintenance level in relevant laws for ensuring implementation of proper cybersecurity measures from
the viewpoint of mission assurance
(iii) Support the analysis and verification of the safety principles for each CI sector
(iv) Promote dissemination of the safety principles among CI operators including environmental arrangement for
packaging measures
(v) Cooperate with the Cabinet Secretariat every year with its efforts to ascertain the conditions of continued
improvements of the safety principles, etc.
33