3/4/22, 1:38 PM Managing a digital revolution: cyber security capacity building in Myanmar - Routledge Companion to Global Cyber-Security Strategy mmCERT came under the responsibility of Myanmar’s Ministry of Transport and Communications. This ministry also has its own cyber security unit aiming to enhance the cyber security capacity in the country. The CERT is also an operational member of the Asia Pacific Computer Emergency Response Team (APCERT) and the International Multilateral Partnership Against Cyber Threats (IMPACT). While it’s ostensibly providing technical assistance, cataloguing incidents, collaborating with international partners, and assisting police and other agencies its limited resources significantly hamper its ability to deliver on its mandate. The lack of financial resources available for mmCERT results in insufficient technical equipment, lack of human resources, and limited ability to operate as intended. And outside of its international affiliations, private companies and stakeholders in Myanmar hold that mmCERT is not adequately capable of addressing cyber security' threats in Myanmar (Myanmar Centre for Responsible Business, 2015). In addition, there is little awareness of the role and functions of mmCERT, resulting in a lack of information being shared with the organization. While the leading companies, particularly the international ones, have capacities to manage incidents, the cooperation between government and private actors are minimal, further limiting the ability of mmCERT to work as intended.6 When it comes to regional collaborations these are limited. Among the more effective collaborations described by' interviewees during fieldwork in 2016 and 2017, was the engagement with Interpol. This was pointed at as an important channel for cross-border collaboration and information sharing. Interpol, ITU, and ASEAN deliver capacity' building programs to the cybercrime unit at the national police, although not on a regular basis. Regional initiatives through ASEAN intend to develop better, more accessible, and more affordable IT infrastructure. These goals have been established and endorsed in an ASEAN broadband corridor study that also identified key drivers for broadband rollout and recommendations for government initiatives (ASEAN, 2016) as well as improved capacities, knowledge and awareness (ASEAN, 2015). Some regional measures have also been taken to mitigate possible bullet-proof hosting, weak links, and havens of vulnerable ICT architectures in the CLMV countries — Cambodia, Laos, My'anmar, and Vietnam (Heinl, 2014). The collaboration with other ASEAN b t t t ll l i t t t i i i l https://ebrary.net/173520/political_science/managing_digital_revolution_cyber_security_capacity_building_myanmar#aftercont tt h tb 11/19

Select target paragraph3