Ethiopia: Information Network Security Administration issued ruling in cybersecurity investigation into infrastructure providers

Description

Information Network Security Administration issued ruling in cybersecurity investigation into infrastructure providers

On 28 October 2023, the Information Network Security Administration (INSA) issued rulings in the investigation into cybersecurity vulnerabilities affecting infrastructure providers operating in the domains of cloud computing, storage and databases, and internet and telecom services. The investigation identified 657 risk-level gaps across 123 institutions. Of these gaps, 187 were classified as high risk, 273 as medium, and 192 as low risk. The investigation attributed these vulnerabilities to a lack of financial resources, inadequate IT infrastructure, and insufficient expertise. The INSA stated that the government aims to mitigate these risks through enhanced cybersecurity regulations and risk-based approaches, aiming to support Ethiopia's resilience against cyber threats.

Original source

Scope

Policy Area
Data governance
Policy Instrument
Cybersecurity regulation
Regulated Economic Activity
infrastructure provider: internet and telecom services, infrastructure provider: cloud computing, storage and databases
Implementation Level
national
Government Branch
executive
Government Body
central government

Complete timeline of this policy change

Hide details
2023-10-28
in force

On 28 October 2023, the Information Network Security Administration (INSA) issued rulings in the in…

We use cookies and other technologies to perform analytics on our website. By opting in, you consent to the use by us and our third-party partners of cookies and data gathered from your use of our platform. See our Privacy Policy to learn more about the use of data and your rights.