NITDA Introduces National Framework to Tighten Software Standards, Cybersecurity

By: Ganiyu Olayinka

The National Information Technology Development Agency (NITDA) has rolled out a National Software Quality Assurance Framework, a new set of rules designed to raise the quality, security, and reliability of software running across government institutions and regulated industries.

Unveiled on Tuesday, the framework sets mandatory standards covering how software is built, tested, and rolled out, with the aim of cutting down on costly IT failures, tightening cybersecurity, and rebuilding public trust in digital government services. A statement from the agency’s Director of Corporate Communications and Media Relations, Hadiza Umar, confirmed that Director-General Kashifu Inuwa Abdullahi had approved the framework under the powers granted by the NITDA Act 2007.

The framework rests on three main instruments: the National Software Development Guideline, the National Software Testing Guideline, and the Software Testing Organisations Licensing Guideline. The first requires developers to follow structured development lifecycles, apply secure coding practices, maintain standardised documentation, and meet global accessibility standards for any software facing the public. The second sets benchmarks that software must clear on functionality, cybersecurity, performance, and interoperability before it can go live. The third lays out how independent software testing organisations will be accredited and regulated as they evaluate and certify software solutions.

Going forward, every Federal Government software project will need to pass independent third-party testing and earn official certification before deployment; a requirement that now doubles as a prerequisite for IT Project Clearance. To keep oversight proportionate to risk, NITDA will sort software into three tiers based on how critical it is. Class A, the highest tier, covers systems like core banking platforms, identity management infrastructure, and power grid controls, and will face the most rigorous security assessments, penetration testing, and specialised audits from accredited testers. Class B applies to enterprise platforms carrying moderate risk, while Class C is reserved for lower-risk internal tools.

NITDA says the framework should make digital services more dependable, shield government IT investments from failures and cyberattacks, and open up a regulated market for independent software testing within Nigeria. Beyond that, the agency expects it to spur homegrown tech innovation, generate jobs for software engineers, and help Nigerian-built software hold its own internationally.

Commenting on the rollout, Director-General Kashifu Inuwa described the framework as a significant step toward strengthening trust in Nigeria’s digital ecosystem. “Quality is the foundation of digital trust,” he said. “With this framework, every software solution serving Nigerians, whether built for government or the private sector, will meet clear national standards for security, reliability and interoperability. This is how we modernise government technology and position Nigerian software to compete on the global stage.”

The framework is set to take full effect in the second quarter of 2027. Before then, the agency plans to run stakeholder engagements and capacity-building programmes and begin accrediting software testing organisations, with an Expression of Interest for firms seeking licensing as independent testers expected to go out soon.

Leave a Reply

Your email address will not be published. Required fields are marked *