A/68/156/Add.1
The action plan consists of 29 action lines to be carried out under the abovementioned main areas.
National efforts taken at the national level to strengthen information security and
promote the international cooperation in this field
The Turkish national regulatory body, the Information and Communication
Technologies Authority (BTK), mandated by the Electronic Communications Law
(No. 5809), conducts a range of activities to contribute to efforts to meet national
and international information security requirements.
In this context, the activities of the Authority in the field of cyber security are
stated below.
1.
Regulation and inspections
Several requirements for the authorized operators are defined in the by-law on
Security of Electronic Communications and the related communiqué that takes this
by-law as a basis. The relevant studies aim to promote the level of national cyber
security directly in the activities of operators and to contribute international cyber
security implicitly.
On the other hand, there are also Authority regulations on electronic signature
and registered electronic mail within the context of the Electronic Signature Law
(No. 5070) and the Turkish Trade Law (No. 6112). These regulations contribute to
the efforts for promoting security and reliability of document and electronic mail
exchange processes.
2.
Cyber security exercises
The Information and Communication Technologies Authority organizes cyber
security exercises to further develop the technical and administrative capacity, to
raise awareness and to establish opportunities for international cooperation.
2.1.
National Cyber Security Exercise 2011
National Cyber Security Exercise 2011 was held from 25 to 28 January 2011,
with the participation of 41 public, private and non-governmental organizations
involving representatives of the finance, information and communications
technology, education, defence and health sectors, as well as the judicial and law
enforcement units and various ministries. Six of the aforementioned organizations
participated in the exercise on the observer status.
2.2.
Cyber Shield Exercise 2012
This exercise was held in May 2012 under the coordination of the Information
and Communication Technologies Authority and with the participation of
12 Internet access providers operating in the electronic communications sector. The
participants were the ones with the largest market share in the sector, along with the
third generation (3G) mobile Internet service providers. In the exercise, mainly
Distributed Denial of Service attacks were applied to the participants and the
adequacy of the security measures taken against the attacks was assessed.
22/24
13-47545