Establishment Workforce Power Mission and Constituency

228 TWNCERT Taiwan National Computer Emergency Response Team – Chinese Taipei 1. About TWNCERT

1.1. Establishment

TWNCERT Taiwan National CERT was established in 2001. It is under the Government Security Working Group, one of working groups of the National Information and Communication Security Taskforce NICST, which is in charge of cyber security issues of the Taiwan Government.

1.2. Workforce Power

TWNCERT has four task forces, which are Information Gathering, Coordination Service, Research and Development, and Consulting Service.

1.3. Mission and Constituency

TWNCERT aims to enhance the government’s ability to respond and deal with security incidents and internationalize our efforts. It is mainly dedicated to create a response center that can help optimize the capability of real-time monitoring, coordination, response and handing in the face of security incidents. The missions of TWNCERT include:  To coordinate among relevant agencies and organizations to identify pertinent response and actions in case of security incident.  To provide information analysis and exchange center for information at home and abroad.  To help relevant government agencies to set up computer emergency response team CERT.  To provide government agencies reference information for formulation of security policies. TWNCERT director leads the organization, takes charge of formulation and development of policy strategies, and supervises over the routine operation of task forces under TWNCERT and organizational development. TWNCERT services including: 229  Alert and publication: Guarding against and publishing probable security threats e.g. vulnerability analysis.  Technical service: Providing technical service to government agencies.  Assistance in the setup of CERT: Assisting interested agencies to set up their own CERT.  Consultation: Making suggestions regarding operation and RD of computer security and Internet issues.  Strategy recommendation: Making suggestion to government agencies regarding strategic planning.  Risk analysis: Undertaking risk assessment.  Collaboration: Building collaborative relationship with legal community, information security business and ISP.  Coordination: Building coordination and communication channels with domestic and foreign incident response organizations. 2. Operations Activities

2.1. Incident Handling