National Cybersecurity Policy 1 Introduction 1.1 This National Cybersecurity Policy (the Policy) sets out the Goals, Policies and Objectives for the Republic of Vanuatu in maximizing safety and security in relation to the use of information and communication technology (ICT). 1.2 The Policy pays particular attention to the National ICT Policy, in particular priority 7.1 that defines principles related to Building Trust (Mitigating Risks and Threats related to ICT Development). It also reflect the aims of the Millennium Development Goals, draws upon the recommendations related to ICT arising from the Final Acts of the ITU Plenipotentiary Conference (Guadalajara, 2010), the ITU Global Cybersecurity Agenda and the results of work of the ICB4PAC project in relation to policy and legislation for Pacific Islands. 1.3 The Policy has been developed by a multi stakeholder group appointed by the Prime Minister in December 2012. The inaugural meeting was held in early February 2013 and since then have met 4 times. In addition to discussions among the members of working group, discussions were initiated with national, regional and international experts to ensure a broad participation including open stakeholder consultation. 1.4 The implementation of the Policy will be coordinated by the National Cybersecurity Steering Committee (NCSC) chaired by the DG responsible for ICT. The NCSC consists of public and private representatives (including non-profit organizations). Annex A sets out the Terms and Reference of the NCSC. 1.5 The DG of each Ministry will be responsible for developing action plans to achieve the objectives set out in this Policy. 1.6 The NCSC will prepare Annual Reports on the progress of implementing this Policy. National Cybersecurity Policy — English version 5

Select target paragraph3