E-Business
IoT Security Expands Over Half of Global Enterprise IT Security Programs by 2020

The power of objects in the Internet of Things (IoT) to change the state of environments — in addition to generating information — will cause chief information security officers (CISOs) to redefine the scope of their security efforts beyond present responsibilities, according to Gartner, Inc.
Gartner predicts that IoT security requirements will reshape and expand over half of all global enterprise IT security programs by 2020 due to changes in supported platform and service scale, diversity and function.
“The IoT is redrawing the lines of IT responsibilities for the enterprise,” said Earl Perkins, research vice president at Gartner. “IoT objects possess the ability to change the state of the environment around them, or even their own state; for example, by raising the temperature of a room automatically once a sensor has determined it is too cold or by adjusting the flow of fluids to a patient in a hospital bed based on information about the patient’s medical records. Securing the IoT expands the responsibility of the traditional IT security practice with every new identifying, sensing and communicating device that is added for each new business use case.”
Traditional “information” technology is now being supplemented by purpose-built, industry-specific technologies that are tailored by where and how that technology is used and what function it delivers. Information remains a key deliverable and is the fuel for IoT devices.
The device’s ability to identify itself (such as RFID tags that identify cargo), sense the environment (such as temperature and pressure sensors) or communicate (such as devices in ocean buoys that transmit environmental changes to the areas around them) requires information to be generated, communicated and/or used.
Although traditional IT infrastructure is capable of many of these tasks, functions that are delivered as purpose-built platforms using embedded technology, sensors and machine-to-machine (M2M) communications for specific business use cases signal a change in the traditional concept of IT and the concept of securing IT.
“This is an inflection point for security. CISOs will need to deconstruct current principles of IT security in the enterprise by re-evaluating practices and processes in light of the IoT impact,” said Mr. Perkins. “Real-time, event-driven applications and nonstandard protocols will require changes to application testing, vulnerability, identity and access management (IAM) — the list goes on.
Handling network scale, data transfer methods and memory usage differences will also require changes. Governance, management and operations of security functions will need to change to accommodate expanded responsibilities, similar to the ways that bring your own device (BYOD), mobile and cloud computing delivery have required changes — but on a much larger scale and in greater breadth.”
Although the business use cases being identified daily are indeed innovative and new, the technologies and services that deliver them are seldom new as well — they are also seldom uniform in architecture and design. Each use case risk profile has specific requirements that may result in the use of old platform and service architecture with a new technology “overlay” to improve performance and control.
“This represents an interesting challenge for CISOs when delivering secure services for the IoT,” said Mr. Perkins. “In some cases, it may be a ‘past is future’ exercise in evaluating mainframe, client/server, Web, cloud and mobile security options as part of an overall IoT business use case.
Even out-of-maintenance systems such as Windows XP may still play a critical role for some industry infrastructure as part of an IoT security system. Security planners should not throw away their old security technology manuals just yet.”
CISOs should not automatically assume that existing security technologies and services must be replaced; instead, they should evaluate the potential of integrating new security solutions with old. Many traditional security product and service providers are already expanding their existing portfolios to incorporate basic support for embedded systems and M2M communications, including support for communications protocols, application security and IAM requirements that are specific to the IoT.
“At this time, there is no ‘guide to securing IoT’ available that provides CISOs with a framework for incorporating IoT principles across all industries and use cases,” said Mr. Perkins. “Another unique characteristic of the IoT is the sheer number of possible combinations of device technologies and services that can be applied to those use cases. What constitutes an IoT object is still up for argument, so securing the IoT is a ‘moving target.’ However, it is possible for CISOs to establish an interim planning strategy, one that takes advantage of the ‘bottom-up’ approach available today for securing the IoT.”
CISOs should resist the temptation to overthink security planning while patterns and solutions are still emerging. They should start small and develop initial security projects based on specific IoT interactions within specific business use cases. CISOs can build on these use case experiences to develop common security deployment scenarios, core architectural foundations and competency centers for the future.
“The requirements for securing the IoT will be complex, forcing CISOs to use a blend of approaches from mobile and cloud architectures, combined with industrial control, automation and physical security,” said Mr. Perkins.
“Fortunately, many of the security requirements for the IoT will look familiar to the CISO. The technologies and services that have been used for decades to secure different eras of computing are still applicable in most cases.
E-Business
NITDA Introduces Cloud Certification Boost Data Localisation Compliance

National Information Technology Development Agency (NITDA) has introduced so-called Nigeria’s Certified Cloud Register, regulatory framework developed under the agency’s National Sovereign Cloud Initiative to determine which cloud providers are authorized to handle sensitive data, such as banking records.

In effect, from October, NITDA requires banks, fintech companies and other regulated organisations to source cloud infrastructure providers from a national register of certified firms approved to host sensitive financial and government data.
The Certified Cloud Register, is expected to strengthen data sovereignty, improve regulatory oversight and support the implementation of the Central Bank of Nigeria’s (CBN) data localisation policy, which takes effect on January 1, 2027.
Under the framework, banks, fintechs, government institutions and other regulated entities will be able to verify whether cloud service providers, data centre operators, managed service providers and Artificial Intelligence (AI) infrastructure companies have met NITDA’s certification requirements before entrusting them with critical digital workloads.
The initiative is expected to provide regulated institutions with a standardised process for selecting cloud infrastructure providers that satisfy Nigeria’s technical, security and regulatory requirements.
According to NITDA, the framework establishes “a common national standard, an independent assessment process and a public register of approved providers that banks, fintechs and government institutions can rely on when selecting cloud infrastructure partners.”
The register is expected to become a key compliance tool ahead of the CBN’s directive, which requires all payment transaction data generated within Nigeria to be stored and processed locally, effective from January 1, 2027.
The policy applies to deposit money banks, microfinance banks, mobile money operators, payment service providers, switching companies and other financial institutions.
The certification regime is also expected to reshape Nigeria’s cloud computing ecosystem, making regulatory approval a major requirement for cloud providers seeking to handle sensitive data for regulated industries.
Figures cited by NITDA showed that Nigeria’s 10 largest banks spent about N177.91 billion on information technology in the first quarter of 2026, representing a 31 per cent increase over the corresponding period last year.
A sizeable portion of the investment currently supports cloud infrastructure hosted outside Nigeria, a trend the new certification framework is expected to address by encouraging greater utilisation of compliant local infrastructure.
NITDA said the certification programme will apply the same technical and regulatory standards to indigenous cloud providers and international hyperscale operators, creating a level playing field for all companies seeking to provide cloud services to regulated sectors.
The agency also disclosed that more than 85 per cent of Nigerian businesses currently rely on cloud services, with the majority using infrastructure hosted outside the country.
It said the new framework is aimed at improving confidence in Nigeria’s digital infrastructure while promoting local capacity and enhancing oversight of critical national data.
Speaking on the objective of the initiative, Kashifu Inuwa Abdullahi, director-general of NITDA, said the programme is designed to strengthen Nigeria’s position in the global digital economy rather than exclude foreign technology companies.
According to him, the initiative is intended “to redefine the terms under which Nigeria participates in the global digital economy rather than isolate the country from international technology providers.”
The Certified Cloud Register forms part of broader efforts by the Federal Government to deepen digital trust, strengthen cybersecurity and ensure that critical financial and public sector data are managed in line with Nigeria’s evolving data governance and sovereignty objectives.
E-Business
Firm Advocates Healthy IT Habits to Strengthen Cyber Resilience

At the recent Cyber Security Weekend 2026 conference, Kaspersky shared the findings from its survey titled “Cybersecurity in the workplace: Employee knowledge and behaviour” which was conducted among employees from the Middle East, Turkiye and Africa (META) region.

The study highlights that everyday IT habits, including decluttering computers and reducing digital fatigue, can have a direct and often underestimated impact on an organisation’s cyber resilience.
The Kaspersky survey points to a growing challenge of digital fatigue in the workplace. 13.5% of employees surveyed in the META region confirmed that they made IT-related mistakes due to a lack of cybersecurity knowledge – a figure that shows the critical importance of continuous cybersecurity training and awareness programmes.
Among other reasons behind IT mistakes, respondents cited being in a hurry (30%), oversight (14%), being tired or stressed (12.9%) and having too many notifications (10%). The constant barrage of alerts, messages, and on-screen clutter is becoming an acute problem that can lead to costly IT errors, overlooked social engineering attacks, and even to cyber breaches.
The survey also examined employees’ digital workspace habits. An overwhelming 44.5% of respondents in the META region reported having between 10 and 20 icons on their desktop, while 30% admitted to having even more – with half to a full screen covered in them.
Meanwhile, 33% of respondents also keep more than 10 tabs open in their browser at any given time. Excessive icons and open tabs do more than distract attention and fuel procrastination – they can slow device performance and, in the case of unused applications, quietly collect data.
Interestingly, most employees regularly disinfect their keyboards and phone surfaces (21.5% have adopted this habit since the COVID pandemic). However, digital cleanliness has not kept pace: 55% of respondents remove needless files once a month or more often; the rest perform digital clean-ups far less frequently – once a quarter, or even once a year.
Managing digital noise is key to staying alert: only essential notifications should remain active, especially during periods of deep focus on critical project deliverables. Regular breaks are just as vital for maintaining both well-being and cyber vigilance.
According to the survey, 78% of respondents spend their work breaks eating or drinking, while 58% chat with friends and colleagues. However, stretching and physical exercise is a more effective way to relieve stress and recharge focus – a habit adopted by only 14% of employees.
“It is important to recognise that digital fatigue is a real and growing stress factor: the constant stream of notifications, cluttered screens, and information overload gradually erode focus and make employees far more susceptible to mistakes and social engineering attacks. Simplifying your digital environment is not just a productivity tip, it is a cybersecurity measure”, says Brandon Muller, senior security consultant for the META region at Kaspersky.
E-Business
Extremist Groups Are Using Social Media to Recruit African Youth, New Report Warns

Pan-African digital rights organisation Paradigm Initiative (PIN) has warned that violent extremist groups are increasingly exploiting digital platforms to recruit, radicalise and manipulate young people across the Sahel region.

The organisation raised the concern in a new policy brief titled “Digital Frontlines: Countering Online Radicalisation and Violent Extremist Narratives in the Sahel.”
According to the publication, extremist groups are shifting from traditional recruitment methods to digital platforms, including social media, encrypted messaging applications, short-form video platforms and online financial incentives, to target vulnerable populations.
PIN noted that unemployed youths and people facing insecurity and limited economic opportunities are particularly susceptible to online recruitment campaigns.
The organisation said that although governments have intensified efforts to combat violent extremism, responses to the digital dimension of the threat have failed to keep pace with rapidly evolving online tactics.
It argued that addressing online radicalisation requires more than surveillance and restrictive measures, recommending investments in digital literacy, stronger community resilience, improved early-warning systems and credible counter-narratives.
PIN also urged governments to work closely with technology companies and civil society organisations to disrupt extremist recruitment while protecting citizens’ digital rights.
The report further highlighted the growing convergence between organised crime and violent extremist groups, noting that online propaganda increasingly promises financial rewards, belonging and purpose to vulnerable young people.
According to the organisation, this trend underscores the need for policymakers to prioritise prevention alongside conventional security responses.
Speaking on the findings, Moussa Waly SENE, Programmes Officer for Francophone Africa at Paradigm Initiative, described the digital space as a new frontline in the fight against violent extremism.
“As more young Africans come online, stakeholders must ensure that digital platforms remain spaces for opportunity, innovation and civic participation, not recruitment grounds for violent extremist groups. Protecting digital rights and protecting vulnerable communities should be mutually reinforcing objectives,” he said.
Among its recommendations, the policy brief called for stronger regional cooperation to tackle cross-border online extremist networks, rights-respecting content moderation and greater accountability by digital platforms.
It also advocated expanded digital literacy programmes to strengthen resilience against online manipulation and community-led initiatives that empower young people to identify and reject extremist narratives.
The organisation further urged policymakers to develop security measures that balance national security objectives with the protection of privacy, freedom of expression and access to information.
General News2 days agoGuinness Rewards Consumers with ₦17 Million in First Week of ‘Open for More’ Promo Draw
News2 days agoGlovo Pioneers AI Quick-Commerce
News3 days agoFleeing Southeast Asia Scam Syndicates Find New Homes in Nigeria, Kenya- Report
Telecom3 days agoMTN Paid 600Bn in Taxes in H1 2026 – Kadri, MTN CFO
Telecom3 days agoNCC Asks Telcos to Make Budgetary Provisions for Cybersecurity
News3 days agoDSS Arraigns Eze for Allegedly Hacking, Stealing N800m from SunTrust Bank
Telecom3 days agoGlo Leads Internet Growth Figures in Nigeria for May
News3 days agoLiquid Intelligent Uses Light Beam Technology to Bridge Lagos Fibre Gaps



















