Description

Announced revision of Cybersecurity Act

On 4 March 2022, the Cyber Security Agency of Singapore (CSA) announced that it will amend and expand the Singapore Cyber Security Act. The goals are to improve awareness about threats over Singapore’s cyberspace, protect virtual assets (including cloud infrastructures) and enhance the Critical Information Infrastructure sectors that support essential services. Moreover, the review will cover key digital infrastructures and services such as mobile applications. Finally, the modifications will enhance the CSA Codes of Practice for the owners of Critical Information Infrastructures, for instance by promoting a threat-based approach to identify harmful actors and allowing domain-specific security practices. To collect contributions from the relevant stakeholders, the CSA will conduct a public consultation on the proposed modifications in early 2023.

Original source

Scope

Policy Area
Data governance
Policy Instrument
Cybersecurity regulation
Regulated Economic Activity
cross-cutting, infrastructure provider: internet and telecom services, infrastructure provider: cloud computing, storage and databases, infrastructure provider: network hardware and equipment, infrastructure provider: other
Implementation Level
national
Government Branch
executive
Government Body
other regulatory body

Complete timeline of this policy change

Hide details
2022-03-04
under deliberation

On 4 March 2022, the Cyber Security Agency of Singapore (CSA) announced that it will amend and expa…

2023-12-15
in consultation

On 15 December 2023, the Cyber Security Agency of Singapore (CSA) opened a consultation until 15 Ja…

2024-01-15
processing consultation

On 15 January 2024, the Cyber Security Agency of Singapore (CSA) closed its consultation on the Cyb…

2024-04-03
under deliberation

On 3 April 2024, the Cybersecurity (Amendment) Bill No. 15/2024 was introduced to the Singapore Par…

2024-05-07
adopted

On 7 May 2024, the Cybersecurity (Amendment) Bill No. 15/2024 was adopted by the Singapore Parliame…

Key regulatory dimensions

Regulated subjects

The businesses, government agencies or individuals affected by this policy or regulatory change.
producer / supplier
1
Type Any
Economic activity cross-cutting
Category All

Policy change by business practice

The detailed activities within the scope of this policy or regulatory change.
financial asset: resources: operate
Regulatory tool
Preventive security requirement
Responsive security requirement
Sanctions
Regulated subjects
1
service (digitally delivered): operate
Regulatory tool
Preventive security requirement
Responsive security requirement
Sanctions
Regulated subjects
1

Policy change by business practice

The detailed activities within the scope of this policy or regulatory change.

financial asset: resources: operate

service (digitally delivered): operate