Regulatory and Executive Framework: A regulatory framework and a national system for cybersecurity protection need to be established and set up, securing the ICT critical infrastructure, national information systems and databases, online government service portals and websites by preparing Computer Emergency Readiness and Response Teams (CERTs) in critical sectors at the national level, based on the pioneering experience of the ICT sector. CERTs are responsible for cybersecurity monitoring of national ICT networks and connected computers, addressing any cyberthreats or cyberattacks directed against them, raising awareness and strengthening readiness to confront cyberattacks. Scientific Research and Development and Cybersecurity Industry Development: It is essential to encourage, empower and develop scientific research and development, and support cooperation between research institutions and local companies, especially in the field of: advanced malware analysis, cyber forensic analysis, protecting and securing industrial control systems, developing devices and equipment for securing systems and networks, encryption and e-signature, protecting ICT infrastructure, securing cloud computing and protecting major databases. Developing Human Calibers and Enhancing Expertise Needed to Implement Cybersecurity System at Various Sectors This effort is to be carried out in cooperation and partnership with the private sector, universities and CSOs. Implementation Mechanism The Supreme Council for ICT Infrastructure Protection (Egyptian Supreme Cybersecurity Council (ESCC)): The Ministry of Communications and Information Technology (MCIT) led efforts for the creation of a supreme council for ICT infrastructure protection (the Egyptian Supreme Cybersecurity Council (ESCC)), reporting to the Cabinet and chaired by the Minister of Communications and Information Technology. The Council is comprised of stakeholders involved in national security and infrastructure management and operation in critical sectors and public utilities, and experts from the private sector and research and educational entities. ESCC was mandated with developing a national strategy for cybersecurity and confronting cyberattacks. It supervises the implementation and updates of the strategy, in order to keep up with successive technological developments. The Council began its preliminary work in January 2015 and the Prime Minister approved the formation of ESCC Executive Bureau, Technical Committee and the description of their respective roles and responsibilities in June 2016. Cooperating with Friendly Countries and Relevant International and Regional Organizations Cooperation includes exchange of experiences and coordination of positions in fields of improving cybersecurity and combating cybercrimes, since cyberthreats and cybercrimes do not recognize geographical or political boundaries. Community Awareness: Community awareness plans and campaigns need to be developed, highlighting the opportunities and benefits of secure e-services provided to individuals and organizations, and to raise awareness of the significance of cybersecurity to protect these services from the risks and threats that may affect them. This is in addition to protecting privacy and launching children online protection programs. 10 11

Select target paragraph3