started · updated
Congo adopts new national cybersecurity frameworks
The Republic of the Congo’s National Information Systems Security Agency (ANSSI) has adopted two new cybersecurity frameworks to strengthen the nation’s digital infrastructure. Adopted on August 25, 2026, the General Information Systems Security Framework (RGSSI) and the Security Audit Service Provider Framework (RE-PASSI) apply to government bodies, private organizations, essential service operators, and digital service providers.
The RGSSI establishes a national reference for structured governance and digital risk management to standardize security levels across various organizations. Complementing this, the RE-PASSI regulates the providers conducting security audits, setting requirements for their skills, qualifications, and operational methods to ensure the quality and confidentiality of audit work. To support implementation, ANSSI plans to launch an assessment tool to help organizations identify compliance gaps and conduct preliminary audits.
Entities
FARDC · Mak Hazukay Mongba · National Information Systems Security Agency