National Cybersecurity Strategy
National Cybersecurity Strategy
12-1025000-000003-01
CYBERSECURITY
NATIONAL
STRATEGY
National
Cybersecurity
Strategy
The Republic of Korea leads the world in information and communications technology (ICT) and
related infrastructure, and the development of a diverse and convenient cyberspace has allowed
people to broaden their horizons. Additionally, cyberspace is now the foundation for providing the
government's administrative services as well as operating the nation's critical facilities.
However, the recent rise in cybercrime and terrorism threatens the lives of ordinary people and
business activities of companies. Systematic and sophisticated cyber attacks present a grave
challenge to national security.
To address these growing threats, the Korean government has drawn up this National
Cybersecurity Strategy. We will safeguard the people's safety, rights and interests against
cybercrime. We will swiftly detect and block cyber threats to guarantee that key operations
of the government continue. We will foster cybersecurity talent and continue to support the
development of the cybser security industry.
At the heart of cybersecurity lies the people, and the government has devised three fundamental
cybersecurity principles to protect the people. We will guarantee the public’s basic rights and carry
out security activities rooted in the rule of law. We will realize clear and transparent cybersecurity
by ensuring citizen participation.
With the cooperation of the government, companies and citizens alike, we can secure our
cyberspace. The government will spare no effort in creating an open and safe online environment.
I call on my fellow Koreans to join in these endeavors to make Korea a leading cybersecurity
nation.
5
Ⅰ BACKGROUND
1. Changing Environment and New Challenges 6
2. Review and Evaluation 8
3. A New Course of Action 10
11
Ⅱ VISION AND GOALS
13
Ⅲ STRATEGIC TASKS
NATIONAL CYBERSECURITY STRATEGY
25
Ⅳ PLANS FOR IMPLEMENTATION
National
Cybersecurity
Ⅰ
Strategy
BACKGROUND
Response Capabilities
The government has continued to bolster its cyber defense
capabilities by building a system to detect and respond to cyber
attacks in real time, as well as separating internal government
networks from the public Internet.
However, it is time to further enhance the resilience of national core
services and implement active response measures to evolving cyber
attacks.
Security Awareness
The government’s efforts to raise awareness, coupled with
increased damage caused by malicious cyber attacks, has
improved both individuals' and companies’ awareness of the
importance of cybersecurity.
Still, many people do not practice basic security rules, while many
companies do not take the action needed to protect information
and security, creating a gap between awareness and practice.
International cooperation
In order to respond to transnational cyber threats, the
government is striving to build a cooperative mechanism with
allies and international organizations, such as the UN and ITU.
Ⅱ
Strategy
Ⅲ
Strategy
STRATEGIC
TASKS
2 Improve
cybersecurity environment for critical
infrastructure
1) Improve schemes to enable the government to designate and swiftly
protect critical infrastructure facilities whose disruption in the case of
an attack would significantly unsettle people’s daily lives.
2) Support institutions operating critical infrastructure to create
departments dedicated to cybersecurity and allocate sufficient
budget for cybersecurity
3) Issue guidelines for institutions to factor in security at the initial phase
of establishing critical infrastructure and create relevant inspection
schemes.
4) Foster an environment that allows voluntary security assessments
of network/information equipment acquired by infrastructure
operators in the private sector.
5) Compose evaluation standards for sector-specific security
vulnerabilities and implement measures to ensure services continue
in the event of a security incident.
3 Develop
next-generation cybersecurity infrastructure
1) Prepare technical and institutional plans to respond to emerging
security threats triggered by technological convergence and the
advent of new technologies.
2) Implement “security by design” in ICT products and services that
directly impact peoples’ lives to ensure their safety.
3) Develop and distribute high-assurance networks which are
fundamentally protected against cyber threats.
4) Establish next-generation security authentication infrastructure to
enable the public to conveniently and safely use online services in a
hyper-connected and AI-driven environment.
16 National Cybersecurity Strategy
04
Create an innovative ecosystem for the cybersecurity industry
Build to secure the competitiveness of technology, human resources,
Foundations for and industries which are critical to national cybersecurity
Cybersecurity
Industry
Growth
Ⅳ
Strategy
Plans for
Implementation
26 National Cybersecurity Strategy