{"id":30239,"date":"2022-02-11T23:10:46","date_gmt":"2022-02-11T12:10:46","guid":{"rendered":"https:\/\/www.kaspersky.com.au\/blog\/kaspersky-apac-online-policy-forum-series\/30239\/"},"modified":"2022-05-05T03:28:39","modified_gmt":"2022-05-04T16:28:39","slug":"kaspersky-apac-online-policy-forum-series","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.au\/blog\/kaspersky-apac-online-policy-forum-series\/30239\/","title":{"rendered":"Kaspersky&#8217;s Asia-Pacific Online Policy Forum series"},"content":{"rendered":"<p>Amidst the accelerated pace of digitalization arising from the pandemic, cybercriminals have also stepped up their game, and cyberattacks have grown with increased sophistication. On the upside, countries in Asia-Pacific (<strong>APAC<\/strong>) have been doubling down on cybersecurity, but who is winning the race remains to be seen.<\/p>\n<p>Recognizing the global scale of cyber incidents, the urgent need for global discourse, and with the prolonged pandemic pushing communities to connect online, Kaspersky adapted the way we engage our partners and hosted our inaugural APAC Online Policy Forum (<strong>OPF<\/strong>) in August 2020. The series convened leaders across government, industry and academia for an open dialogue on the latest trends in cybersecurity. It is with a heavy heart that we draw the series to a close, but as we end on the high of the fourth instalment in January 2022, it is timely to look back at the past 18 months, insights from 13 expert panelists hailing from the region, and accompanied by over 6,000 registered participants.<\/p>\n<div id=\"attachment_43671\" style=\"width: 693px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/102\/2022\/02\/11231053\/kaspersky-apac-online-policy-forum-series-1.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-43671\" class=\"size-full wp-image-30240\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/102\/2022\/02\/11231053\/kaspersky-apac-online-policy-forum-series-1.jpg\" alt=\"Speakers from India, Japan and Singapore at our inaugural APAC OPF hosted by Eugene Kaspersky, CEO, and moderated by Genie Sugene Gan, Head of Government Affairs, APAC\" width=\"683\" height=\"406\"><\/a><p id=\"caption-attachment-43671\" class=\"wp-caption-text\">Speakers from India, Japan and Singapore at our inaugural APAC OPF hosted by Eugene Kaspersky, CEO, and moderated by Genie Sugene Gan, Head of Government Affairs, APAC<\/p><\/div>\n<p>In August 2020, the inaugural Forum exchanged views on <a href=\"https:\/\/www.kaspersky.com\/about\/policy-blog\/general-cybersecurity\/a-look-back-at-the-inaugural-asia-pacific-online-policy-forum\" target=\"_blank\" rel=\"noopener nofollow\">\u201cCyber-resilience in the \u2018new normal\u2019: risks and new approaches\u201d<\/a>. In March 2021, we discussed strategies to combat cyber criminals in <a href=\"https:\/\/www.kaspersky.com\/about\/policy-blog\/index\/asia-pacific-online-policy-forum-ii-guardians-of-cyberspace-can-justice-prevail\" target=\"_blank\" rel=\"noopener nofollow\">\u201cGuardians of Cyberspace: Can Justice Prevail?\u201d<\/a>, and in September 2021, we dived deeper into concrete steps to build <a href=\"https:\/\/www.kaspersky.com\/about\/policy-blog\/index\/apac-online-policy-forum-iii-on-the-greater-cyber-resilience-through-cyber-capacity-building\" target=\"_blank\" rel=\"noopener nofollow\">\u201cGreater Cyber-resilience through Cyber Capacity Building\u201d<\/a>. The finale in January 2022 covered a discourse on <a href=\"https:\/\/www.kaspersky.com\/about\/policy-blog\/index\/apac-online-policy-forum-iv-on-strengthening-ict-supply-chain-resilience\" target=\"_blank\" rel=\"noopener nofollow\">\u201cStrengthening ICT Supply Chain Resilience\u201d<\/a>, a growing trend in the region. We reflect on the key themes and policy proposals that emerged over the conversations.<\/p>\n<h2>Different stages and solutions across APAC<\/h2>\n<p>The diversity in culture, geography and people across APAC also speaks to the vast differences across the region, including its cybersecurity landscape. It is thus untenable to define the state of cyber resilience in APAC as a whole. Instead, we appreciate the varied stages of development and approaches across the region, and the common recognition of the importance of cybersecurity. Taking a look at the region,<\/p>\n<p>Both <strong>India and Indonesia are on the cusp of releasing their national cybersecurity strategies<\/strong>, highlighting growing recognition of the importance of the issue, as well as the challenges posed by the pandemic. Elaborating on the progress made, <em>Mr. Nur Achmadi Salmawan, Director of National Critical Information Infrastructure, National Cyber and Crypto Agency (BSSN), Indonesia<\/em> depicted Indonesia\u2019s understanding of cyberspace in three layers \u2013 the physical (infrastructure including the PC, satellite, submarine cable), logical (software, applications) and social, and its intent to both protect national interests and increase national economic growth through its national strategy. Reflecting on the impact of the pandemic, <em>Lt General Dr. Rajesh Pant, National Cyber Security Coordinator of India<\/em> shed light on how the lockdowns in India had created a shortage in manpower for Security Operation Centres across Ministries, thereby posing an implementation challenge. Nonetheless, in spite of these challenges, and in parallel to rolling out national guidelines, both countries are making commendable efforts to strengthen their cyber capacities, which Kaspersky is honored to be supporting.<\/p>\n<p>Other countries have developed or refreshed their<strong> national masterplans and strategies<\/strong> in view of the fast evolving landscape. <em>Mr. Nguyen Huy Dung, Vice Minister for the Ministry of Information and Communications, Vietnam<\/em> described his country\u2019s <strong>four-layer protection model<\/strong> which comprises (a) an in-house team; (b) 24\/7 cybersecurity services by a professional provider; (c) an independent security audit; and (d) independent monitoring by the National Cybersecurity Center. In the Australian Cyber Security Strategy 2020 and Malaysian Cybersecurity Strategy 2020-2024, education and skills development was another priority area that featured heavily.<\/p>\n<p>Some others are going one step further by <strong>taking a regional outlook<\/strong>. Singapore unveiled its <strong>ASEAN-Singapore Cybersecurity Centre of Excellence<\/strong> in 2019, which offers policy and technical programs for member states to bolster regional cybersecurity capabilities. <em>Ms. Mihoko Matsubara, Chief Cybersecurity Strategist at NTT Corporation, Japan<\/em>, shared how Japan has also expanded its partnership across Southeast Asia with the construction of new facilities such as the <strong>ASEAN-Japan Cybersecurity Capacity Building Center in Thailand<\/strong>, and conducting U.S.-Japan training workshops on areas like industrial control systems.<\/p>\n<p>There is no right answer, or one-size-fits-all approach to cybersecurity given the varied needs of each country. But a multi-faceted approach is certainly a step in the right direction.<\/p>\n<div id=\"attachment_43672\" style=\"width: 953px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/102\/2022\/02\/11231100\/kaspersky-apac-online-policy-forum-series-2.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-43672\" class=\"size-full wp-image-30242\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/102\/2022\/02\/11231100\/kaspersky-apac-online-policy-forum-series-2.jpg\" alt=\"Speakers from Australia, Indonesia, Malaysia and Vietnam at our APAC OPF II hosted by Eugene Kaspersky, CEO, and moderated by Genie Sugene Gan, Head of Government Affairs, APAC\" width=\"943\" height=\"560\"><\/a><p id=\"caption-attachment-43672\" class=\"wp-caption-text\">Speakers from Australia, Indonesia, Malaysia and Vietnam at our APAC OPF II hosted by Eugene Kaspersky, CEO, and moderated by Genie Sugene Gan, Head of Government Affairs, APAC<\/p><\/div>\n<h2>Building cyber awareness and education<\/h2>\n<p>\u201cPeople\u201d featured heavily in discussions across the series. As <em>Mr. David Koh, Commissioner of Cybersecurity, Chief Executive of the Cyber Security Agency of Singapore <\/em>nicely put it, the \u201chuman dimension\u201d poses a significant challenge across all societies, besides the usability, security and cost of ensuring cybersecurity. <strong>In contrast to the instincts we have for our physical security, we lack the same level of instincts for cybersecurity<\/strong>.<\/p>\n<p>In terms of solutions, Mr. Koh shared that the Singapore government had sent out advisories to companies and guidelines to educate individuals on cybersecurity safeguards, even helping some face-to-face through digital ambassadors. <em>Dr. Greg Austin, Professor of Cyber Security, Strategy and Diplomacy, University of New South Wales; and Senior Fellow for Cyber, Space and Future Conflict, International Institute for Strategic Studies<\/em> discussed the <strong>need for enhanced emphasis and investment in cybersecurity education at the tertiary level<\/strong>, noting that most countries were not investing in education in line with their ambitions, with an estimated $100-200 million required over 5-10 years to support a robust national curriculum in Australia. There was also a need to pursue <strong>educational reforms<\/strong> in the field, for instance by incorporating more exercises, simulations, red teaming \u2014 an area for the private sector to collaborate with tertiary institutions (as some, like Kaspersky Academy are already doing).<\/p>\n<p>In a separate discussion, <em>Professor Gabriel Kim Seungjoo, Head of the Department of Cyber Defense of Korea University, and a Member of the Presidential Committee on the 4th Industrial Revolution <\/em>identified <strong>higher education as an important starting point for students to hone their practical skills<\/strong> (e.g. through data driven exercises). The ultimate goal would be for them to fill a gap in security experts with in-depth knowledge of systems and threats specific to their domain, and hands-on experience to be ready for activation from the get go.<\/p>\n<p>In terms of ways to strengthen the emphasis on education, <em>Professor Li Yuxiao, Vice President of the Chinese Academy of Cyberspace Studies, and Secretary General of the Cyber Security Association of China<\/em>, shared that China had launched various <strong>laws and polices<\/strong> (e.g., Cybersecurity Law, Personal Information Protection Law, Critical Information Protection Legislation, etc.) to ensure cybersecurity. He viewed that cyber capacity building should first focus on cyber infrastructure, and be sensitive to the challenges posed by cybersecurity. Developing a talent training system would be key. More importantly, we should take a long term view to build a community with a shared future in cyberspace.<\/p>\n<p>Besides individuals, <em>Dato\u2019 Ts. Dr. Haji Amirudin Abdul Wahab, Chief Executive Officer of CyberSecurity Malaysia<\/em> (<strong>CSM<\/strong>) talked about the need for SMEs to also pay attention to cyber resilience. Given the important role of SMEs as the backbone of various sectors, a cyberattack targeting the group could potentially send a ripple effect across the industry. While the finance and telecommunication sectors in Malaysia have been hardest hit, it was important for businesses across sectors to invest in cybersecurity in view of the growing digitalization across the entire economy. Dato Amirudin shared Malaysia\u2019s holistic approach to strengthening cybersecurity, focused on <strong>people, process and technology<\/strong>. For instance, the focus on \u201cpeople\u201d in CSM\u2019s SiberKASA program manifests through awareness building, education and training efforts across all functions within an organization from management to technical practitioners, via programs like vulnerability assessment, malware scanning, and assessment of risk and compliance.<\/p>\n<p>More broadly, there was concern that the <strong>broader society considered cybersecurity to be someone else\u2019s problem<\/strong>, and therefore not an issue of personal concern. <em>Dr. Pratama Persadha, Chairman of the Communication &amp; Information System Security Research Center (CISSReC), Indonesia<\/em> challenged this notion by pointing out the risks of relying on a small group of ICT vendors\/ third parties \u2014 any lapses in IT security could go undetected in the absence of cyber awareness\/ knowledge from subscribers (e.g. on how ICT supply chain attacks work, where they come from).<\/p>\n<div id=\"attachment_43673\" style=\"width: 908px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/102\/2022\/02\/11231109\/kaspersky-apac-online-policy-forum-series-3.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-43673\" class=\"size-full wp-image-30244\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/102\/2022\/02\/11231109\/kaspersky-apac-online-policy-forum-series-3.jpg\" alt=\"Speakers from China, Korea and INTERPOL at our APAC OPF III with Chris Connell, APAC Managing Director and Global Sales Network VP, and moderated by Genie Sugene Gan, Head of Government Affairs, APAC\" width=\"898\" height=\"503\"><\/a><p id=\"caption-attachment-43673\" class=\"wp-caption-text\">Speakers from China, Korea and INTERPOL at our APAC OPF III with Chris Connell, APAC Managing Director and Global Sales Network VP, and moderated by Genie Sugene Gan, Head of Government Affairs, APAC<\/p><\/div>\n<h2>Partnerships are key<\/h2>\n<p>With the scale of cyberattacks, and the impact on stakeholders across sectors, various panelists echoed the need to tighten coordination across stakeholders, summarized well by Mr. Achmadi\u2019s depiction of Indonesia\u2019s <strong>quadrihelix approach<\/strong> to mobilize stakeholders from all segments: government, enterprise\/ businesses, academia, and the broader public.<\/p>\n<p><strong>Within the government<\/strong>, coordination continues to be key to implementing cybersecurity, particularly across the broader public. <em>Ms. Azleyna Ariffin, Principal Assistant Director, National Cyber Security Agency (<strong>NACSA<\/strong>), Government of Malaysia<\/em> described how NACSA actively partners CyberSecurity Malaysia on policy implementation, and in the realm of general education efforts, coordinates closely with the Ministry of Education and Ministry of Communications and Multimedia in Malaysia.<\/p>\n<p><strong>Between the public and private sectors<\/strong>, there exists boundless opportunities to exchange best practices and tap on the cybersecurity expertise of the private sector. Vice Minister Dung and Ms. Azleyna highlighted the importance of engaging the private sector in the drafting process, and successful implementation of Vietnam and Malaysia\u2019s cybersecurity strategies respectively. For Vietnam, Kaspersky for example, was privileged to be a partner in the National Cyber Security Centre\u2019s 2020 campaign to remove malware, which saw a 50% reduction in the number of botnet IPs. For Malaysia, Ms. Azleyna commended the involvement of various industry players including CEOs, CFOs and CIOs, who contributed ideas on how to translate the goals in Malaysia\u2019s cybersecurity strategy into reality.<\/p>\n<p><strong>Globally, <\/strong>international organizations play a crucial role in convening stakeholders, processing global data, and promoting alignment towards a rules-based approach in cyberspace. <em>Craig Jones, INTERPOL\u2019s Cyber Crime Director<\/em> shared how INTERPOL aggregates national and regional data to provide governments with a more comprehensive view of the significant impact of cyber incidents, and the interconnectedness of the problem, thereby highlighting the need for integrated solutions. Additionally, INTERPOL leveraged its expertise and networks to set up its <strong>ASEAN Cyber Capacity Development Project<\/strong> for countries to jointly identify capability and capacity gaps, needs and solutions. In a separate discussion, Lt Gen Dr. Pant reiterated the importance of cross-border collaboration, especially at international platforms like the UN Group of Government Experts, to facilitate threat attribution.<\/p>\n<p><em>Shri Rajeev Chandrasekhar, Minister of State in the Ministry of Electronics and Information Technology, and the Ministry of Skill Development and Entrepreneurship, India<\/em> additionally clarified that strong governance can be complemented and enhanced through partnership \u2013 while he stressed the responsibility of governments to ensure an open, inclusive, safe and trusted cyberspace in light of the significance of the internet and technology to the overall economy, the Minister noted that central to the strategy was partnership: <strong>cross-border collaboration<\/strong> for a coordinated effort against cybercriminals.<\/p>\n<div id=\"attachment_43674\" style=\"width: 835px\" class=\"wp-caption aligncenter\"><a href=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/102\/2022\/02\/11231117\/kaspersky-apac-online-policy-forum-series-4.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-43674\" class=\"size-full wp-image-30246\" src=\"https:\/\/media.kasperskydaily.com\/wp-content\/uploads\/sites\/102\/2022\/02\/11231117\/kaspersky-apac-online-policy-forum-series-4.jpg\" alt=\"Speakers from India, Indonesia and Malaysia at our APAC OPF IV hosted by Eugene Kaspersky, CEO, and moderated by Genie Sugene Gan, Head of Government Affairs, APAC\" width=\"825\" height=\"375\"><\/a><p id=\"caption-attachment-43674\" class=\"wp-caption-text\">Speakers from India, Indonesia and Malaysia at our APAC OPF IV hosted by Eugene Kaspersky, CEO, and moderated by Genie Sugene Gan, Head of Government Affairs, APAC<\/p><\/div>\n<h2>Conclusion<\/h2>\n<p>We have covered good ground over the course of the APAC OPF series. Just like how we conceived an online series in the thick of the pandemic, it is now time to rethink our approach to continue engaging a wider community alongside the evolving pandemic situation. The discourse does not end here, and we look forward to further engaging the community, contributing to conversations, and supporting the implementation of cybersecurity strategies in the days, weeks, months, and years ahead.<\/p>\n<p><em>Special thanks to our esteemed panelists for their important contributions to this ongoing discourse:<\/em><\/p>\n<p><em>OPF I<\/em><\/p>\n<ul>\n<li><strong> General (Dr.) Rajesh Pant<\/strong>, National Cyber Security Coordinator of India<\/li>\n<li><strong> David Koh<\/strong>, Commissioner of Cybersecurity, Chief Executive of the Cyber Security Agency of Singapore<\/li>\n<li><strong> Mihoko Matsubara<\/strong>, Chief Cybersecurity Strategist at NTT Corporation, Japan<\/li>\n<\/ul>\n<p><em>OPF II<\/em><\/p>\n<ul>\n<li><strong> Nguyen Huy Dung<\/strong>, Vice Minister, Ministry of Information and Communications, Government of the Socialist Republic of Vietnam<\/li>\n<li><strong> Nur Achmadi Salmawan<\/strong>, Director of National Critical Information Infrastructure, National Cyber and Crypto Agency (BSSN), Government of Indonesia<\/li>\n<li><strong> Azleyna Ariffin<\/strong>, Principal Assistant Director, National Cyber Security Agency, Government of Malaysia<\/li>\n<li><strong> Greg Austin<\/strong>, Professor of Cyber Security, Strategy and Diplomacy, University of New South Wales; and Senior Fellow for Cyber, Space and Future Conflict, International Institute for Strategic Studies<\/li>\n<\/ul>\n<p><em>OPF III<\/em><\/p>\n<ul>\n<li><strong>Director Craig Jones<\/strong>, INTERPOL\u2019s Cybercrime Director<\/li>\n<li><strong>Professor Li Yuxiao<\/strong>, Vice President of the Chinese Academy of Cyberspace Studies, and Secretary General of the Cyber Security Association of China<\/li>\n<li><strong>Professor Gabriel Kim Seungjoo<\/strong>, Head of the Department of Cyber Defense of Korea University, and a Member of the Presidential Committee on the 4th Industrial Revolution<\/li>\n<\/ul>\n<p><em>OPF IV<\/em><\/p>\n<ul>\n<li><strong>Shri Rajeev Chandrasekhar<\/strong>, Minister of State in the Ministry of Electronics and Information Technology, and the Ministry of Skill Development and Entrepreneurship, India<\/li>\n<li><strong>Dato\u2019 Ts. Dr. Haji Amirudin Abdul Wahab<\/strong>, Chief Executive Officer of CyberSecurity Malaysia<\/li>\n<li><strong> Pratama Persadha<\/strong>, Chairman of the Communication &amp; Information System Security Research Center (CISSReC), Indonesia<\/li>\n<\/ul>\n<input type=\"hidden\" class=\"category_for_banner\" value=\"kesb-trial\">\n","protected":false},"excerpt":{"rendered":"<p>Recognizing the global scale of cyber incidents especially during the pandemic Kaspersky hosted APAC Online Policy Forum series.<\/p>\n","protected":false},"author":2706,"featured_media":30248,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[2647],"tags":[3510,28,3511,3512],"class_list":{"0":"post-30239","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-special-projects","8":"tag-apac","9":"tag-kaspersky","10":"tag-online-policy-forum","11":"tag-opf"},"hreflang":[{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/kaspersky-apac-online-policy-forum-series\/30239\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/kaspersky-apac-online-policy-forum-series\/23895\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.au\/blog\/tag\/apac\/","name":"APAC"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/posts\/30239","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/users\/2706"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/comments?post=30239"}],"version-history":[{"count":6,"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/posts\/30239\/revisions"}],"predecessor-version":[{"id":30263,"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/posts\/30239\/revisions\/30263"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/media\/30248"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/media?parent=30239"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/categories?post=30239"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.au\/blog\/wp-json\/wp\/v2\/tags?post=30239"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}