3/4/22, 1:38 PM
Managing a digital revolution: cyber security capacity building in Myanmar - Routledge Companion to Global Cyber-Security Strategy
mmCERT came under the responsibility of Myanmar’s Ministry of Transport and
Communications. This ministry also has its own cyber security unit aiming to
enhance the cyber security capacity in the country. The CERT is also an
operational member of the Asia Pacific Computer Emergency Response Team
(APCERT) and the International Multilateral Partnership Against Cyber Threats
(IMPACT). While it’s ostensibly providing technical assistance, cataloguing
incidents, collaborating with international partners, and assisting police and other
agencies its limited resources significantly hamper its ability to deliver on its
mandate. The lack of financial resources available for mmCERT results in
insufficient technical equipment, lack of human resources, and limited ability to
operate as intended. And outside of its international affiliations, private companies
and stakeholders in Myanmar hold that mmCERT is not adequately capable of
addressing cyber security' threats in Myanmar (Myanmar Centre for Responsible
Business, 2015). In addition, there is little awareness of the role and functions of
mmCERT, resulting in a lack of information being shared with the organization.
While the leading companies, particularly the international ones, have capacities
to manage incidents, the cooperation between government and private actors are
minimal, further limiting the ability of mmCERT to work as intended.6
When it comes to regional collaborations these are limited. Among the more
effective collaborations described by' interviewees during fieldwork in 2016 and
2017, was the engagement with Interpol. This was pointed at as an important
channel for cross-border collaboration and information sharing. Interpol, ITU, and
ASEAN deliver capacity' building programs to the cybercrime unit at the national
police, although not on a regular basis. Regional initiatives through ASEAN intend
to develop better, more accessible, and more affordable IT infrastructure. These
goals have been established and endorsed in an ASEAN broadband corridor
study that also identified key drivers for broadband rollout and recommendations
for government initiatives (ASEAN, 2016) as well as improved capacities,
knowledge and awareness (ASEAN, 2015). Some regional measures have also
been taken to mitigate possible bullet-proof hosting, weak links, and havens of
vulnerable ICT architectures in the CLMV countries — Cambodia, Laos,
My'anmar, and Vietnam (Heinl, 2014). The collaboration with other ASEAN
b
t t
t
ll
l
i t
t
t i
i i
l
https://ebrary.net/173520/political_science/managing_digital_revolution_cyber_security_capacity_building_myanmar#aftercont
tt
h
tb
11/19