RAK EGA

Information Security and Business Continuity

The Information Security and Business Continuity department takes charge of the critical role of protecting the government’s data and operations from all potential threats and disasters, and ensuring contingency plans are in place for operations to continue without disruption.

When it comes to cybersecurity, the department works on three major focus areas:

  • Strengthening the security of critical information infrastructure and reducing corresponding risk levels. This extends to people, systems, assets, access controls, and third parties.
  • Detecting, responding to, and recovering from cyber security incidents and reducing their impact. The department has developed its own unique incident management process to deal with all types of threats in a systematic way. The department also uses the latest threat monitoring tools and devices in places in addition to conducting proactive penetration testing.
  • Increasing cybersecurity awareness within RAK EGA and at all government departments. The department embeds this awareness into new employee on-boarding processes, internal policies and procedures, and ongoing training. The department also organizes an annual training course on information security available for all government employees.

The department complies with the UAE Information Assurance Standards (IAS) and framework issued by the National Electronic Security Authority (NESA), the UAE’s federal authority on all national matters of cybersecurity.

The department also complies with the Business Continuity Management Standard NCEMA 7000:2015 of the National Emergency Crisis and Disasters Management Authority. This is further evidence by RAK EGA’s 1-click disaster recovery system at RAK EGA’s data centers in Ras Al Khaimah and Dubai that host all the data and applications of RAK EGA and all government departments in Ras Al Khaimah.

The Information Security and Business Continuity department at RAK EGA is the driving force behind obtaining and ensuring successful maintenance of ISO certifications ISO 27001:2013 for Information Security Management System and ISO 22301:2012 for Business Continuity Management System for RAK EGA for, the past three assessment cycles in a row.