Related Terms
What is CST’s cybersecurity role?
In accordance with the Telecommunications and information technology Act, CST’s Bylaw and CST powers granted thereby, including those related to protecting public and users interests, maintaining ICT confidentiality, CST's role is to raise cybersecurity maturity in ICT sector in the Kingdom and boost service providers confidence in taking all necessary measures. Strengthening and regulating cybersecurity has become greatly important in order to increase confidence in safety of ICT services resilience, protect public and users interest, and to maintain ICT confidentiality in accordance with highest quality and security standards, as well as to raise overall sectoral cybersecurity maturity. CST has issued the Cybersecurity Regulatory Framework (CRF) for service providers in the ICT sector, which contains a comprehensive set of cybersecurity requirements and controls. CRF provides requirements for improving the management of cybersecurity risks through an approach consistent with best global practices and local cybersecurity frameworks, to promote cybersecurity best practices for ICT service providers. This will reflect on raising confidence in integrity of service providers’ infrastructure, in addition to supporting regulatory framework to adopt a risk management methodology to meet cybersecurity requirements, encourage service providers to adopt best practices to develop appropriate cybersecurity measures, raise service providers’ readiness against cyber-attacks, and to ensure confidentiality, safety and availability of services provided to their clients.
The ICT sector is a key pillar of economic growth, providing basic competitiveness of national economy through high-speed broadband, electronic services, and information assets. Given the increasing expectations for continued availability of services and transparency of user experience, as well as effectiveness of protecting critical systems and data, strengthening cybersecurity in the Kingdom has become extremely important to increase confidence of digital nation in safety and resilience of the ICT sector infrastructure and services.