Regulatory and Executive Framework:
A regulatory framework and a national system for cybersecurity protection need
to be established and set up, securing the ICT critical infrastructure, national
information systems and databases, online government service portals and websites
by preparing Computer Emergency Readiness and Response Teams (CERTs) in critical
sectors at the national level, based on the pioneering experience of the ICT sector.
CERTs are responsible for cybersecurity monitoring of national ICT networks and
connected computers, addressing any cyberthreats or cyberattacks directed against
them, raising awareness and strengthening readiness to confront cyberattacks.
Scientific Research and Development and Cybersecurity Industry Development:
It is essential to encourage, empower and develop scientific research and
development, and support cooperation between research institutions and local
companies, especially in the field of: advanced malware analysis, cyber forensic
analysis, protecting and securing industrial control systems, developing devices and
equipment for securing systems and networks, encryption and e-signature, protecting
ICT infrastructure, securing cloud computing and protecting major databases.
Developing Human Calibers and Enhancing Expertise Needed to Implement
Cybersecurity System at Various Sectors
This effort is to be carried out in cooperation and partnership with the private sector,
universities and CSOs.
Implementation Mechanism
The Supreme Council for ICT Infrastructure Protection
(Egyptian Supreme Cybersecurity Council (ESCC)):
The Ministry of Communications and Information Technology
(MCIT) led efforts for the creation of a supreme council
for ICT infrastructure protection (the Egyptian Supreme
Cybersecurity Council (ESCC)), reporting to the Cabinet and
chaired by the Minister of Communications and Information
Technology. The Council is comprised of stakeholders involved
in national security and infrastructure management and
operation in critical sectors and public utilities, and experts
from the private sector and research and educational entities.
ESCC was mandated with developing a national strategy for
cybersecurity and confronting cyberattacks. It supervises the
implementation and updates of the strategy, in order to keep
up with successive technological developments. The Council
began its preliminary work in January 2015 and the Prime
Minister approved the formation of ESCC Executive Bureau,
Technical Committee and the description of their respective
roles and responsibilities in June 2016.
Cooperating with Friendly Countries and Relevant International and Regional
Organizations
Cooperation includes exchange of experiences and coordination of positions in fields
of improving cybersecurity and combating cybercrimes, since cyberthreats and
cybercrimes do not recognize geographical or political boundaries.
Community Awareness:
Community awareness plans and campaigns need to be developed, highlighting
the opportunities and benefits of secure e-services provided to individuals and
organizations, and to raise awareness of the significance of cybersecurity to protect
these services from the risks and threats that may affect them. This is in addition to
protecting privacy and launching children online protection programs.
10
11