Don’t do SECURITY. Do business SECURELY.

Singapore’s Cybersecurity Act comes into force

Singapore’s Cybersecurity Act establishes a framework for Critical Information Infrastructure protection.

Singapore’s Cybersecurity Act 2018 comes into force today.

Key points

  • Critical Information Infrastructure owners must comply with codes of practice.
  • Audits and risk assessments are required.
  • Owners must take part in exercises.
  • Incidents must be reported to the Cyber Security Agency.

UK suppliers to Singaporean critical infrastructure should expect security requirements in contracts. The Act also licenses certain cyber security service providers, including penetration testing and managed security operations centre services. UK providers offering these services in Singapore should check licensing requirements before starting work.

Source: Cybersecurity Act 2018 (Singapore Statutes Online)

Need help understanding what this change means for your organisation? Get in touch for a pragmatic, no-obligation conversation.

More insights