BR100 Increased By (0.81%)
BR30 Increased By (1.02%)
KSE100 Increased By (0.53%)
KSE30 Increased By (0.55%)
BECO 6.12 Increased By ▲ 0.35 (6.07%)
BML 52.61 Decreased By ▼ -0.39 (-0.74%)
BOP 34.40 Increased By ▲ 0.41 (1.21%)
CNERGY 8.15 Increased By ▲ 0.04 (0.49%)
DCL 12.20 No Change ▼ 0.00 (0%)
FCCL 53.37 Increased By ▲ 0.54 (1.02%)
FCSC 5.19 Increased By ▲ 0.12 (2.37%)
FFL 18.07 Increased By ▲ 0.12 (0.67%)
FNEL 1.32 Increased By ▲ 0.03 (2.33%)
HUMNL 10.88 No Change ▼ 0.00 (0%)
KEL 8.10 Increased By ▲ 0.08 (1%)
KOSM 5.41 Decreased By ▼ -0.11 (-1.99%)
MLCF 87.39 Increased By ▲ 0.88 (1.02%)
NBP 187.35 Increased By ▲ 2.19 (1.18%)
PACE 10.72 Increased By ▲ 0.14 (1.32%)
PAEL 40.00 Increased By ▲ 0.58 (1.47%)
PIAHCLA 26.16 Decreased By ▼ -0.06 (-0.23%)
PIBTL 17.00 Increased By ▲ 0.33 (1.98%)
PPL 229.70 Increased By ▲ 1.52 (0.67%)
PRL 34.86 Increased By ▲ 0.18 (0.52%)
PTC 67.14 Increased By ▲ 1.81 (2.77%)
SEARL 90.98 Increased By ▲ 0.85 (0.94%)
SSGC 26.83 Increased By ▲ 0.23 (0.86%)
TELE 8.65 Increased By ▲ 0.37 (4.47%)
THCCL 58.66 Increased By ▲ 0.16 (0.27%)
TPLP 8.66 Increased By ▲ 0.44 (5.35%)
TREET 24.79 Increased By ▲ 0.26 (1.06%)
TRG 69.85 Increased By ▲ 0.14 (0.2%)
WAVES 10.09 Increased By ▲ 0.15 (1.51%)
WTL 1.29 Increased By ▲ 0.01 (0.78%)

ISLAMABAD: The National Cyber Emergency Response Team (National CERT) of Pakistan has issued a cybersecurity advisory to all individuals, public and private organisations handling Personally Identifiable Information (PII) of Pakistani citizens.

The advisory mandates immediate and strategic data protection actions in response to an alarming rise in data breaches, identity theft, and privacy violations across key sectors. This advisory applies to all entities that collect, store, process, or transmit PII of Pakistani citizens, regardless of the nature, size, or infrastructure, including on-premises, cloud, and hybrid environments.

The National Cyber Security Policy 2021 recognised citizen data protection as a matter of national security and public trust.

‘Cyber security authority to be set up by 2025’

The advisory highlights growing threats posed by weak internal controls, outdated systems, unencrypted data flows, installation of malicious apps, and poor cyber hygiene, all of which make organisations vulnerable to financial fraud, operational disruption, reputational damage, and potential regulatory action under laws such as PECA 2016.

Breaches involving CNIC numbers, health records, or financial information not only erode public trust but also increase risks of exploitation by both criminal and hostile entities.

The organisations urged to take immediate and structured action including classifying data by sensitivity, applying strict access controls, encrypting PII in storage and transit, and ensuring that all software and systems are kept up to date.

The organisations should also adopt a secure development lifecycle, retain PII only as required by law, implement clear breach response protocols, and audit third-party vendors handling personal data.

Over the long term, entities are expected to align with regulatory standards, adopt zero-trust principles, ensure disaster recovery readiness, and build a security-aware workforce through regular training and testing. The National CERT also urged individuals to safeguard their personal data. Citizens are advised to only share CNICs and personal documents when absolutely necessary and to clearly label any copies provided (e.g., “For SIM registration only”).

Strong, unique passwords and multi-factor authentication should be enabled on all critical accounts. People should be cautious about oversharing personal details online or with unverified service providers, and should avoid downloading malicious applications from unofficial sources that may leak sensitive data The National CERT emphasised that proactive data protection is not just a compliance requirement but a strategic necessity. It calls on both organisations and individuals to act decisively to secure personal data, preserve national digital infrastructure, and restore confidence in Pakistan’s cyber ecosystem.

Copyright Business Recorder, 2025

Comments

Comments are closed for this article.

JPG Aug 23, 2025 10:34am
State: Citizens should protect themselves from thieves. We are here to serve ourselves only.
0