Financial sector cyber resilience in developing countries

Issue 2/3 2023 News & Events, Information Security

A new Good Practice Guide from CREST, Fostering Financial Sector Cyber Resilience in Developing Countries, has been launched as part of the global not-for-profit’s ongoing work in encouraging greater cyber readiness and resilience in emerging nations.

CREST, a global community of cybersecurity businesses and professionals working to keep information safe in a digital world, received a grant of $1,4 million from the Bill & Melinda Gates Foundation in 2020 to help increase cybersecurity capacity and cyber resilience in Bangladesh, Ethiopia, Indonesia, Kenya, Nigeria, Pakistan, Tanzania and Uganda.

The latest Good Practice Guide describes the need for different kinds of testing, dependent on the cyber maturity of the nation, authority or organisation – as well as the local cybersecurity industry. It also describes international standards, and the varying levels of globally agreed cyber maturity. It concludes with advice for governing authorities, and details challenges they might expect.

Written by Wiebe Ruttenberg, Director of Strategy at cyber threat intelligence product and services company SecAlliance, the guide suggests an urgent need for this appropriate testing to ensure better cyber safety for all.

Ruttenberg says, “Studies show cyber resilience of financial entities in developing countries is often relatively low, leaving them and their clients considerably exposed to cyber risks.”

While authorities in developing countries have stepped up their efforts to improve financial sector cyber resilience, this guide describes how exercises like penetration testing can improve the cyber resilience of critical financial entities. A regular testing programme also contributes to local market maturity in terms of cybersecurity services, benefiting other non-critical companies, and greater society as well.

CREST CEO Nick Benson says, “While we took considerable time and effort to study the cybersecurity capabilities at national and organisational level in a wide range of developing countries under the CMAGE project, this work cannot be viewed in a vacuum. Our latest Good Practice Guide goes some way to help governments and the private sector in developing countries achieve not only a stronger understanding of the cyberattack landscape, but how to develop greater resilience against attack.”

As the Guide states, “Between 2017 and 2021 alone, the average rate of account ownership in developing economies increased by another 8 percentage points, from 63 percent of adults to 71 percent of adults, increasing the number of banked adults by many millions.”

Financial inclusion is a top priority among the international community since the G20 recognised it as one of the main pillars of the 2010 global development agenda, but for the less-privileged, theft of digital savings, malicious alteration of their data, or obstruction of the financial infrastructure affects them hardest, directly endangering their businesses, families and possibly even their lives.

The report is one of several produced by the not-for-profit organisation to help build capacity and consistency in the cybersecurity industry, aimed at helping governments and organisations develop a more sophisticated cyber security toolkit.

The free Guide is now available to download via Research and Reports - CREST (crest-approved.org)




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Reshaping South Africa’s built environment
Securex South Africa Facilities & Building Management News & Events Commercial (Industry)
FM teams are responsible for the overall operational environment of a building, while security teams focus on protection, control, and incident response. Increasingly, both rely on the same data streams, infrastructure, and digital tools.

Read more...
Integrated security key to protecting cloud applications
Infrastructure Information Security
Cloud-native applications have transformed the way businesses operate, enabling faster innovation, greater agility, and enhanced scalability. Yet this evolution brings an equally complex security landscape.

Read more...
Factories, grids, and finance: Critical infrastructure cyber lessons of 2025
Asset Management Information Security Industrial (Industry)
Africa has seen an accelerated, large-scale digitisation of our overall industrial base, and this rapid convergence of IT and OT is happening on a foundation that, in essence, was not designed to be cybersecure.

Read more...
Banking’s AI reckoning
Financial (Industry) News & Events AI & Data Analytics
From agentic commerce disputes to quantum-powered risk modelling, SAS experts offer a ‘banker’s dozen,’ 13 industry-defining predictions that will separate institutions that master intelligent banking from those still struggling with the basics.

Read more...
Axis signs CISA Secure by Design pledge
Axis Communications SA News & Events Surveillance Information Security
Axis Communications has signed the United States Cybersecurity & Infrastructure Security Agency’s (CISA) Secure by Design pledge, signalling the company’s commitment to upholding and transparently communicating the cybersecurity posture of its products.

Read more...
Five key technology trends for the security sector in 2026
Axis Communications SA News & Events Surveillance
Axis Communications examines trends it considers important for 2026, as technology and customer requirements continue to evolve, but the basic security needs of end users remain constant.

Read more...
DeepAlert appoints Howard Harrison as CEO
DeepAlert News & Events AI & Data Analytics
DeepAlert has appointed Howard Harrison as chief executive officer. DeepAlert’s founder and CEO of the past six years, Dr Jasper Horrell, will transition into a newly created role as chief innovation officer.

Read more...
AI agent suite for control rooms
Milestone Systems News & Events Surveillance AI & Data Analytics
Visionplatform.ai announced the public launch of its new visionplatform.ai Agent Suite for Milestone XProtect, adding reasoning, context and assisted decision-making on top of existing video analytics and events — without sending video to the cloud.

Read more...
The global state of physical security
Genetec News & Events Infrastructure
Physical security has become a strategic business function, improving IT collaboration and decision-making. Moreover, interest in AI has more than doubled among users, and organisations seek flexibility to deploy workloads on-premises, in the cloud, or hybrid.

Read more...
AI cybersecurity predictions for 2026
AI & Data Analytics Information Security
The rapid development of AI is reshaping the cybersecurity landscape in 2026, for both individual users and businesses. Large language models (LLMs) are influencing defensive capabilities while simultaneously expanding opportunities for threat actors.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.