> ## Content Index
> Fetch the complete content index at: https://www.techloy.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Lagos State Issues New Cybersecurity Guidelines: What Businesses Need to Know
- URL: https://www.techloy.com/lagos-state-issues-new-cybersecurity-guidelines-what-businesses-need-to-know/
- Published: 2026-04-20T11:21:01.000Z
- Updated: 2026-04-20T11:21:01.000Z
- Description: As Nigeria records billions in cybercrime losses, Lagos introduces scalable cybersecurity best practices for businesses and public agencies.
- Author: Louis Eriakha
- Tags: / Startups, / Cybersecurity, Lagos State

In recent months, reports of cyberattacks across Nigeria have become almost routine. From financial institutions to universities and government systems, breaches and data leaks are no longer rare headlines. According to a survey by [TechAfrica News](https://techafricanews.com/2026/04/14/check-point-research-reports-nearly-2000-weekly-cyber-attacks-per-organisation-in-march-2026/#:~:text=%E2%80%93%20Ian%20van%20Rensburg%2C%20Head:,%2C%20and%20Consumer%20Goods%20&%20Services.), the country experiences 4,090 attacks per organisation per week, the highest of any African country in its survey. 

Just weeks ago, a threat actor known as ByteToBreach [claimed to have breached systems](https://www.premiumtimesng.com/news/top-news/869669-ndpc-investigates-remita-sterling-bank-for-alleged-data-breach.html) at Sterling Bank, prompting regulatory scrutiny. More recently, Lagos State University was [allegedly hit by a cyber incident](https://x.com/DailyDarkWeb/status/2045639139350192401) involving sensitive staff and academic data. These events, combined with figures showing Nigeria has lost over [₦1.1 trillion to cybercrime in three years](https://lagosstate.gov.ng/cybersecguide) and ₦53.4 billion in 2024 alone, make the urgency behind the guidelines easier to understand. 

Against this backdrop, the Lagos State Government, on Sunday, introduced a [set of cybersecurity guidelines](https://lagosstate.gov.ng/cybersecguide), not new laws, but practical recommendations – designed to help businesses and public institutions reduce their exposure to cybercrime and respond better when incidents occur. This announcement was made by Gbenga Omotoso, the Commissioner of Information & Strategy, [via the Lagos State official X handle.](https://x.com/followlasg/status/2045921884219625532) 

> LAGOS STATE GOVERNMENT UNVEILS COMPREHENSIVE CYBERSECURITY GUIDELINES TO STRENGTHEN DIGITAL SAFETY  
>  
> The Lagos State Government has released a set of Cybersecurity Guidelines, a strategic framework designed to enhance digital safety for businesses, public institutions, and… [pic.twitter.com/q3dxBPxtE7](https://t.co/q3dxBPxtE7)
> 
> — The Lagos State Govt (@followlasg) [April 19, 2026](https://twitter.com/followlasg/status/2045921884219625532?ref%5Fsrc=twsrc%5Etfw)

Per the [post on X](https://x.com/followlasg/status/2045921884219625532), the goal is to provide “clear, practical, and scalable cybersecurity best practices for small businesses, medium and large enterprises, and MDAs.” In other words, this is about giving organisations a playbook they can actually follow, regardless of size.

[Nigeria Introduces New Tax Law to Track and Tax Cryptocurrency ActivityUnder the NTAA 2025, crypto users and platforms in Nigeria must now link transactions to real identities and report activity to tax authorities.![](https://static.ghost.org/v5.0.0/images/link-icon.svg)TechloyJeminipe Fasheun-Motesho![](https://images.unsplash.com/photo-1618828665011-0abd973f7bb8?crop=entropy&cs=tinysrgb&fit=max&fm=jpg&ixid=M3wxMTc3M3wwfDF8c2VhcmNofDF8fG5pZ2VyaWF8ZW58MHx8fHwxNzY4Mjg4NTI0fDA&ixlib=rb-4.1.0&q=80&w=2000)](https://www.techloy.com/nigeria-introduces-new-tax-law-to-track-and-tax-cryptocurrency-activity/)

For small businesses, especially, the document focuses on foundational steps that cost little but offer significant protection. One key recommendation is regular cybersecurity awareness training. The goal, as the guidelines note, is “to empower your employees to be your first line of defence." This practice educates your team on how to recognise and avoid common digital threats.” 

There is also a strong emphasis on password management and multi-factor authentication (MFA). It recommends “mandate MFA on all business applications, email, and cloud services." Equally important is data backup, specifically the "3-2-1" rule. It recommends businesses to "keep three copies of your data, use at least two different storage types (like a local hard drive and a cloud service), and keep one copy offsite. Regularly test your backups to make sure you can actually restore your data when needed." Automatic software updates are also flagged as essential to prevent attackers from exploiting vulnerabilities in outdated systems. 

For medium to large enterprises, the tone becomes more strategic. Organisations are advised to adopt established security frameworks like the NIST Cybersecurity Framework or ISO 27001 as a structured way to assess and improve their security posture. Alongside this, they should conduct regular risk assessments to identify their most significant threats and most valuable assets. 

The guidelines repeatedly stress reporting obligations, reminding organisations to notify the Nigeria Computer Emergency Response Team (ngCERT) within 72 hours of discovering an incident and, where personal data is involved, to inform the Nigeria Data Protection Commission (NDPC) and affected individuals as well. 

The release of these guidelines also comes at a telling time.

[Nigerian Regulators Select Private Companies to Oversee Crypto in New Pilot ProgrammeThe Central Bank of Nigeria has selected Flutterwave, Paystack, KuCoin and others for a new pilot programme focused on supervising virtual asset service providers.![](https://static.ghost.org/v5.0.0/images/link-icon.svg)TechloyJeminipe Fasheun-Motesho![](https://storage.ghost.io/c/c1/a6/c1a6d111-d951-41ad-a392-c1e841210b93/content/images/thumbnail/photo-1554457606-ed16c39db884)](https://www.techloy.com/nigerian-regulators-select-private-companies-to-oversee-crypto-in-new-pilot-programme/)