United Nations Mandate Source RegistryBeta Version
UN Secretariat MandatesUN System Mandates
United Nations (opens in new tab)
(opens in new tab) (opens in new tab) (opens in new tab) (opens in new tab) (opens in new tab)
Donate (opens in new tab)
  • A-Z Site Index (opens in new tab)
  • Contact (opens in new tab)
  • Copyright (opens in new tab)
  • FAQ (opens in new tab)
  • Fraud Alert (opens in new tab)
  • Privacy Notice (opens in new tab)
  • Terms of Use (opens in new tab)

Creation of a Global Culture of Cybersecurity and the Protection of Critical Information Infrastructures

A/RES/58/199No PDF available

Who created this mandate?

A Resolution of the General Assembly, under agenda item 91bScience and technology for development, published in 2004.

What subjects does this mandate have?

22 topics
Access to InformationCapacity BuildingCommunication TechnologyCriminal InvestigationCybersecurityData ProtectionDeveloping CountriesDevelopmentDigital DivideEarly Warning SystemsInformation ExchangeInformation SystemsInformation TechnologyInformation WarfareInternational CooperationLaws and RegulationsLeast Developed CountriesPartnershipResearch and DevelopmentStandards

Which reports were submitted under this mandate?

1 report of the Secretary-General submitted under this mandate, 2005.

  • 2005A/60/443Optimizing the international effort to study, mitigate and minimize the consequences of the Chernobyl disaster report of the Secretary-General

iIdentified automatically from the metadata in each report’s UN Digital Library catalogue record.

What does this mandate say?

6 operative paragraphs
1
Takes note of the elements set out in the annex to the present resolution for protecting critical information infrastructures;
2
Invites all relevant international organizations, including relevant United Nations bodies, to consider, as appropriate, inter alia, these elements for protecting critical information infrastructures in any future work on cybersecurity or critical infrastructure protection;
3
Invites Member States to consider, inter alia, these elements in developing their strategies for reducing risks to critical information infrastructures, in accordance with national laws and regulations;
4
Invites Member States and all relevant international organizations to take, inter alia, these elements and the need for critical information infrastructure protection into account in their preparations for the second phase of the World Summit on the Information Society, to be held in Tunis from 16 to 18 November 2005;
5
Encourages Member States and relevant regional and international organizations that have developed strategies to deal with cybersecurity and the protection of critical information infrastructures to share their best practices and measures that could assist other Member States in their efforts to facilitate the achievement of cybersecurity;
6
Stresses the necessity for enhanced efforts to close the digital divide, to achieve universal access to information and communication technologies and to protect critical information infrastructures by facilitating the transfer of information technology and capacity-building, in particular to developing countries, especially the least developed countries, so that all States may benefit fully from information and communication technologies for their socio-economic development.
Elements for protecting critical information infrastructures
1
Have emergency warning networks regarding cyber-vulnerabilities, threats and incidents.
2
Raise awareness to facilitate stakeholders’ understanding of the nature and extent of their critical information infrastructures and the role each must play in protecting them.
3
Examine infrastructures and identify interdependencies among them, thereby enhancing the protection of such infrastructures.
4
Promote partnerships among stakeholders, both public and private, to share and analyse critical infrastructure information in order to prevent, investigate and respond to damage to or attacks on such infrastructures.
5
Create and maintain crisis communication networks and test them to ensure that they will remain secure and stable in emergency situations.
6
Ensure that data availability policies take into account the need to protect critical information infrastructures.
7
Facilitate the tracing of attacks on critical information infrastructures and, where appropriate, the disclosure of tracing information to other States.
8
Conduct training and exercises to enhance response capabilities and to test continuity and contingency plans in the event of an information infrastructure attack, and encourage stakeholders to engage in similar activities.
9
Have adequate substantive and procedural laws and trained personnel to enable States to investigate and prosecute attacks on critical information infrastructures and to coordinate such investigations with other States, as appropriate.
10
Engage in international cooperation, when appropriate, to secure critical information infrastructures, including by developing and coordinating emergency warning systems, sharing and analysing information regarding vulnerabilities, threats and incidents and coordinating investigations of attacks on such infrastructures in accordance with domestic laws.
11
Promote national and international research and development and encourage the application of security technologies that meet international standards.

iParagraph content is machine-extracted from UN documents. For authoritative content, please refer to the official UN document.

Table of contents