Thailand: Adopted NCSC criteria for defining organisations with missions or services as critical information infrastructure and assigning oversight and regulation

Description

Adopted NCSC criteria for defining organisations with missions or services as critical information infrastructure and assigning oversight and regulation

On 25 June 2021, the National Cyber Security Committee (NCSC) adopted an order establishing criteria for defining organisations with missions or services as critical information infrastructure. This order, under the Cybersecurity Act B.E. 2562, aims to identify organisations whose operations are vital for national security, economic stability, and public health, among others, ensuring they fall under appropriate regulatory oversight. It defines the roles and services of various government and private entities that qualify as critical infrastructure. It also designates responsible regulatory bodies for overseeing cybersecurity measures related to these critical organisations. The guidelines cover a range of sectors, including national security, public services, finance, information technology, transportation, energy, and healthcare.

Original source

Scope

Policy Area
Data governance
Policy Instrument
Cybersecurity regulation
Regulated Economic Activity
cross-cutting
Implementation Level
national
Government Branch
executive
Government Body
other regulatory body

Complete timeline of this policy change

Hide details
2021-06-25
adopted

On 25 June 2021, the National Cyber Security Committee (NCSC) adopted an order establishing criteri…

2021-08-24
in force

On 24 August 2021, the National Cyber Security Committee (NCSC) implemented an order establishing c…