I propose to take Questions Nos. 426 and 427 together.
My Department's ICT services are provided by the Office of the Government Chief Information Officer (OGCIO). The OICGO implements an extensive Information Security Management System (ISMS) comprising of security policies and controls aligned and certified to the industry security standard ISO 27001:2022 to address risks from cyber security attacks. This forms part of the overall service delivery to my Department by the OGCIO.
With regard to the number of actual and attempted cyberattacks I am informed by the OGCIO that they estimate that across OGCIO supported systems they would deal with attempted attacks on a regular basis. With regard to the countries of origin, I am informed that it is not possible to determine this with any degree of certainty.