{"id":64773,"date":"2014-08-13T09:29:22","date_gmt":"2014-08-13T14:29:22","guid":{"rendered":"http:\/\/www.ict-pulse.com\/?p=64773"},"modified":"2017-04-07T20:40:09","modified_gmt":"2017-04-08T01:40:09","slug":"snapshot-cybersecurity-health-card-select-caribbean-countries-part-1","status":"publish","type":"post","link":"https:\/\/ict-pulse.com\/2014\/08\/snapshot-cybersecurity-health-card-select-caribbean-countries-part-1\/","title":{"rendered":"Snapshot: cybersecurity health card for select Caribbean countries \u2013 part 1"},"content":{"rendered":"
Insights on the state of cyber security in 2013 in seven out of thirteen Caribbean countries, as reported by the Organisation of American States and Symantec in their Latin American + Caribbean Cyber Security Trends report.<\/em><\/p>\n A few months ago, the Organisation of American States (OAS), in collaboration with Symantec, a leading network security firm, published Latin American + Caribbean Cyber Security Trends<\/em><\/a>. This report, which was published in June 2014, highlights key cybersecurity and cybercrime related developments in Latin America and the Caribbean in 2013. It also includes individual country reports on the state of cybersecurity in select countries \u2013 13 Caribbean countries were in included.<\/p>\n In this article, part one of two, a snapshot of cybersecurity in seven Caribbean countries is presented below \u2013 Antigua and Barbuda, Barbados, Belize, Dominica, Dominican Republic, Grenada and Guyana. For each country, the state of cybersecurity is drawn directly from the Latin American + Caribbean Cyber Security Trends<\/em> report, to provide insights on the following:<\/p>\n National cybersecurity strategy and policy<\/strong>: In train, but none adopted<\/p>\n CSIRT<\/strong>: No<\/p>\n Cybersecurity awareness campaign<\/strong>: None undertaken as yet<\/p>\n In depth training nationally<\/strong>: No specialized cybersecurity training programmes<\/p>\n Cyber incidents status\/trends<\/strong>: In 2013, the Regional Cyber Investigation Laboratory, which is housed within the Antigua and Barbuda Police Force, received only a very small number of reports of hacked personal email accounts. However, due to the lack of reporting, especially by the private sector, national authorities cannot pinpoint any trends or significant cybersecurity incidents that may have taken place within the country.<\/p>\n Recent developments<\/strong>: In 2013, passage of the Electronic Transactions Bill, the Electronic Evidence Act, the Electronic Crimes Act, and the Data Protection Act<\/p>\n Key concerns:<\/strong> There is no official body tasked with responding to cyber incidents, and neither are there frameworks requiring private sector entities to report cybersecurity incidents.<\/p>\n Critical factors to advance cybersecurity<\/strong>: Buy-in from policymakers; developing a cybersecurity policy; launching a national CSIRT.<\/p>\n National cybersecurity strategy and policy<\/strong>: In train, but none formally adopted<\/p>\n CSIRT<\/strong>: In the process of being created<\/p>\n Cybersecurity awareness campaign<\/strong>: A series of campaigns have been undertaken since 2010<\/p>\n In depth training nationally<\/strong>: No specialized cybersecurity training programmes<\/p>\n Cyber incidents status\/trends<\/strong>: Although no hard numbers are available yet, the government reports that the Telecommunications Unit is collecting data on cyber attacks and incidents across government departments. Also reported were a series of incidents in early 2014 that affected numerous government offices<\/p>\n Recent developments<\/strong>: \u00a0<\/strong>None reported<\/p>\n Key concerns:<\/strong> No legal requirement for private sector entities to report cybersecurity incidents, though government recognizes it as a priority and is likely to be addressed with new legislation<\/p>\n Critical factor to advance cybersecurity<\/strong>: Securing sufficient funding.<\/p>\n National cybersecurity strategy and policy<\/strong>: None<\/p>\n CIRT<\/strong>: None<\/p>\n Cybersecurity awareness campaign<\/strong>: A series of campaigns have been undertaken since 2010<\/p>\n In depth training nationally<\/strong>: None available<\/p>\n Cyber incidents status\/trends<\/strong>: Although it does not presently maintain official statistics, the Government of Belize reported a notable increase in cybersecurity incidents over the past year.<\/p>\n Recent developments<\/strong>: None reported<\/p>\n Key concerns:<\/strong> Inadequate legal framework; the need for resources (including personnel, training, equipment, software and office space)<\/p>\n Critical factors to advance cybersecurity<\/strong>: Capacity building; policy development; adopting a national strategy; reforming the legal system; and establishing a national CIRT.<\/p>\n National cybersecurity strategy and policy<\/strong>: None, but efforts underway to prepare one<\/p>\n CSIRT<\/strong>: None, but work underway to establish one<\/p>\n Cybersecurity awareness campaign<\/strong>: None has been undertaken<\/p>\n In depth training nationally<\/strong>: None available<\/p>\n Cyber incidents status\/trends<\/strong>: Financial institutions have circulated sporadic advisories in the wake of phishing and other attacks, but no other details or other types of incidents were provided<\/p>\n Recent developments<\/strong>: None reported<\/p>\n Concerns:<\/strong> Lack of a national policy and strategic framework; absence of capacity building and awareness raising initiatives<\/p>\n Critical factors to advance cybersecurity<\/strong>: Capacity building; policy development; adopting a national strategy; reforming the legal system; and establishing a national CIRT\/Cyber Security Centre.<\/p>\n National cybersecurity strategy and policy<\/strong>: Cybercrime laws exist, but no official overarching national strategy or policy for cybersecurity<\/p>\n CSIRT<\/strong>: None<\/p>\n Cybersecurity awareness campaign<\/strong>: A series of campaigns have been undertaken<\/p>\n In depth training nationally<\/strong>: None currently available, but work underway to develop relevant coursework and certification programs<\/p>\n Cyber incidents status\/trends<\/strong>: As the number of Internet users in the Dominica Republic has steadily increased, so has the number of victims of attacks and exploitation. Available statistics indicate an increase in cyber incidents in the country of approximately seven to ten percent (7\u201310 percent) per year over the past three years. The most common incidents reported include: credit card cloning, defamation through email and social networks, digital identity theft, phishing, and telephone-related scams. There were also numerous attacks against and defacements of government websites, largely by carried hacktivist groups.<\/p>\n Authorities reported having opened 654 cybercrime related cases in 2013, resulting in 300 submissions for prosecution. They also reported having successfully dismantled hacktivist groups within the country.<\/p>\n Recent developments<\/strong>:\u00a0 None reported<\/p>\n Key concerns:<\/strong> Lack of a national policy and strategic framework; absence of capacity building and awareness raising initiatives; no formal framework for private sector reporting of cyber incidents<\/p>\n Critical factors to advance cybersecurity<\/strong>: Capacity building and training are seen as key priorities.<\/p>\n National cybersecurity strategy and policy<\/strong>: None<\/p>\n CIRT<\/strong>: None<\/p>\n Cybersecurity awareness campaign<\/strong>: None has been undertaken, but is being considered<\/p>\n In depth training nationally<\/strong>: None available<\/p>\n Cyber incidents status\/trends<\/strong>: National authorities report not having observed an increase in the number of cyber incidents or other illicit cyber activity in the past year, and have no record of any significant cyber incidents having taken place<\/p>\n Recent developments<\/strong>: <\/strong>None reported<\/p>\n Key concerns:<\/strong> Lack of a national policy and strategic framework; absence of capacity building and awareness raising initiatives; no reporting frameworks or active collaboration with the private sector<\/p>\n Critical factor to advance cybersecurity<\/strong>: Establishing a national CIRT.<\/p>\n National cybersecurity strategy and policy<\/strong>: None, but efforts underway to prepare one<\/p>\n CIRT<\/strong>: Yes, the Guyana National Computer Incident Response Team (GNCIRT<\/a>)<\/p>\n Cybersecurity awareness campaign<\/strong>: Currently being planned<\/p>\n In depth training nationally<\/strong>: None available<\/p>\n Cyber incidents status\/trends<\/strong>: Since GNCIRT\u2019s creation in August 2013, the country has experienced numerous cybersecurity incidents ranging from the defacement of government websites to credit card fraud to the defrauding of a prominent businessman. Although authorities do not have hard data indicating a quantitative increase or decrease in the number of incidents, there has been a clear rise in the number of incidents reported by the public<\/p>\n Recent developments: <\/strong><\/strong>Establishment of the Guyana National Computer Incident Response Team, or GNCIRT in August 2013<\/p>\n Key concerns:<\/strong> No legal requirement for private sector entities to report cyber incidents to government; CIRT-to-CIRT collaboration has been low<\/p>\n Critical factor to advance cybersecurity<\/strong>: Capacity building and training opportunities; though recognized as a priority, cybersecurity must be viewed as a first level security imperative.<\/p>\n <\/p>\n Image credits:\u00a0 Free Press Pics<\/a> (flickr); All flags – Wikipedia<\/a><\/em><\/p>\n ____________<\/p>\n","protected":false},"excerpt":{"rendered":" Insights on the state of cyber security in 2013 in seven out of thirteen Caribbean countries, as reported by the Organisation of American States and Symantec in their Latin American […]<\/p>\n","protected":false},"author":2,"featured_media":49521,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","om_disable_all_campaigns":false,"_exactmetrics_skip_tracking":false,"_exactmetrics_sitenote_active":false,"_exactmetrics_sitenote_note":"","_exactmetrics_sitenote_category":0,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[82,17,27,11],"tags":[105,32,34,61],"class_list":["post-64773","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-business","category-caribbean","category-computing","category-ict-tech","tag-cybercrimecybersecurity","tag-information-society","tag-lists-2","tag-snapshot-series","et-has-post-format-content","et_post_format-et-post-format-standard"],"jetpack_publicize_connections":[],"aioseo_notices":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"https:\/\/i0.wp.com\/ict-pulse.com\/wp-content\/uploads\/2014\/01\/Cybersecurity-by-Free-Press-Pics-flickr.jpg?fit=640%2C181&ssl=1","jetpack_shortlink":"https:\/\/wp.me\/p2iE1G-gQJ","jetpack-related-posts":[],"_links":{"self":[{"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/posts\/64773","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/comments?post=64773"}],"version-history":[{"count":5,"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/posts\/64773\/revisions"}],"predecessor-version":[{"id":97154,"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/posts\/64773\/revisions\/97154"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/media\/49521"}],"wp:attachment":[{"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/media?parent=64773"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/categories?post=64773"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ict-pulse.com\/wp-json\/wp\/v2\/tags?post=64773"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}\n
\u00a0Antigua and Barbuda<\/h3>\n
Barbados<\/h3>\n
Belize<\/h3>\n
Dominica<\/h3>\n
Dominican Republic<\/h3>\n
Grenada<\/h3>\n
Guyana<\/h3>\n