-4-
PC.DEC/1202
10 March 2016
–
Developing, where appropriate, shared responses to common challenges including
crisis management procedures in case of widespread or transnational disruption of
ICT-enabled critical infrastructure;
–
Adopting voluntary national arrangements to classify ICT incidents in terms of the
scale and seriousness of the incident;
–
Sharing national views of categories of ICT-enabled infrastructure States consider
critical;
–
Improving the security of national and transnational ICT-enabled critical
infrastructure including their integrity at the regional and subregional levels; and
–
Raising awareness about the importance of protecting industrial control systems and
about issues related to their ICT-related security, and the necessity of developing
processes and mechanisms to respond to those issues.
16.
Participating States will, on a voluntary basis, encourage responsible reporting of
vulnerabilities affecting the security of and in the use of ICTs and share associated
information on available remedies to such vulnerabilities, including with relevant segments of
the ICT business and industry, with the goal of increasing co-operation and transparency
within the OSCE region. OSCE participating States agree that such information exchange,
when occurring between States, should use appropriately authorized and protected
communication channels, including the contact points designated in line with CBM 8 of
Permanent Council Decision No. 1106, with a view to avoiding duplication.
Practical Considerations 1
The provisions of these Practical Considerations do not affect the voluntary basis for
the activities related to the aforementioned CBMs.
Participating States intend to conduct the first exchange by October 31, 2014, and
thereafter the exchange of information described in the aforementioned CBMs shall occur
annually. In order to create synergies, the date of the annual exchanges may be synchronized
with related initiatives participating States are pursuing in the UN and other fora.
The information exchanged by participating States should be compiled by each of
them into one consolidated input before submission. Submissions should be prepared in a
manner that maximizes transparency and utility.
Information may be submitted by the participating States in any of the official OSCE
languages, accompanied by a translation in English, or only in the English language.
Information will be circulated to participating States using the OSCE Documents
Distribution system.
Should a participating State wish to inquire about individual submissions, they are
invited to do so during meetings of the Security Committee and its Informal Working Group
1
First adopted as part of Permanent Council Decision No. 1106 on 3 December 2013.