The Cybersecurity Management Control Policy defines the Cybersecurity Division’s information security management control objectives, aligns with the Information Security Management Directives (ISMD), and establishes a risk-based approach for cybersecurity operations. The Cybersecurity Division implements security controls and countermeasures that reduce the risk of a breach of confidentiality, protect data integrity, and ensure the resiliency of digital services.