Security audits, penetration testing, and compliance support for organizations operating in Egypt, aligned with the data protection and cybercrime framework overseen by the NTRA and EG-CERT.
Last updated — August 22, 2026
Personal data protection in Egypt falls under Law No. 151 of 2020, which sets out the principles governing the collection, processing, and transfer of personal data. Cybercrime is governed by Law No. 175 of 2018 on combating offenses related to information technology. The National Telecom Regulatory Authority (NTRA) regulates the telecommunications and digital services sector, while the Egyptian Computer Emergency Readiness Team (EG-CERT) coordinates the response to information security incidents nationwide.
Engagement mode
On-site missions in Cairo and remote delivery for the rest of the territory
Working language
English and Arabic, with deliverables available in French on request
Regulatory coordination
Support with interactions with the NTRA and EG-CERT
Law No. 151 of 2020, which sets out the principles for the collection, processing, and transfer of personal data.
The Egyptian Computer Emergency Readiness Team coordinates the response to information security incidents nationwide and serves as a point of contact for incident notification.
Telecommunications operators and digital service providers fall under the regulation of the National Telecom Regulatory Authority.
It governs the fight against offenses related to information technology, with cooperation obligations for the parties concerned in the event of an incident.
Data localization or transfer requirements depend on the nature of the processing under Law No. 151 of 2020; we assess this on a case-by-case basis for your activity.
Both. Technical audits and penetration tests can be delivered remotely, with on-site missions for phases requiring physical access.
Telecommunications and digital services, banking and finance, and the public sector are among the most exposed sectors, given their exposure and the value of the data they process.