Suspect a breach? Report it immediately — response within 1 hour.Report an incident

Cybersecurity and Compliance in Cameroon

Security audits, penetration testing, and compliance for organizations operating in Cameroon, under Law No. 2010/012 on cybersecurity and cybercrime.

Last updatedAugust 22, 2026

The local regulatory framework

In Cameroon, information systems security, electronic certification, and cybercrime are governed by Law No. 2010/012. The Agence nationale des technologies de l'information et de la communication (ANTIC) is the authority responsible for regulation, certification, and national-level cybersecurity coordination.

Concrete obligations

Certification or accreditation of sensitive information systems with ANTIC where required

Implementation of security measures to prevent offenses covered by Law No. 2010/012

Reporting cybersecurity incidents to ANTIC for systems falling under its jurisdiction

Compliance with electronic certification requirements for trust service providers

Priority sectors

Financial servicesTelecommunicationsPublic sector and government

Delivery modalities

Engagement mode

On-site missions in Douala and Yaoundé, remote delivery for the rest of the territory

Working language

French, with deliverables available in English on request

Regulatory coordination

Dedicated contact for interactions with ANTIC

Local FAQ

What is the reference cybersecurity authority in Cameroon?

The Agence nationale des technologies de l'information et de la communication (ANTIC), responsible for enforcing Law No. 2010/012.

What does Law No. 2010/012 cover?

It governs information systems security, electronic certification, and cybercrime-related offenses.

Do all companies need ANTIC accreditation?

Accreditation mainly applies to sensitive or critical information systems; we assess this obligation based on your sector and systems.

Does Cameroon have a dedicated personal data protection law?

Cameroon's current framework mainly rests on Law No. 2010/012 for cybersecurity and cybercrime; we advise organizations on data protection best practices to complement this framework.

Do you audit electronic certification service providers?

Yes, our security audits cover the technical requirements applicable to trust service providers.

Do you operate outside Douala and Yaoundé?

Yes, technical engagements can be delivered remotely nationwide, with on-site visits as needed.

Get in touch