The Directorate of Information Systems Security Governance

The Directorate of Information Systems Security Governance is responsible for :


  • Defining the strategic guidelines for the Ministry’s information systems security and aligning them with the National Cybersecurity Strategy, as well as monitoring their implementation in coordination with the various directorates ;
  • Overseeing the development and implementation of the Ministry’s ISS governance mechanisms and coordinating the network of ISS officers from the various directorates ;
  • Ensuring the Ministry’s information systems comply with the directives, rules, regulations, standards, and recommendations issued by the General Directorate of Information Systems Security ;
  • Developing and implementing the Ministry’s general ISS policy in accordance with the directives of the General Directorate of ISS ;
  • Ensuring the Ministry’s information systems comply with the national legal framework relating to ISS ;
  • Supporting the Ministry’s directorates in declaring their critical infrastructures and sensitive information systems, as well as in the process of certifying the security of their systems with the General Directorate of ISS ;
  • Supporting and monitoring the inventory and classification operations of the informational assets and information systems of the Ministry’s various directorates ;
  • Defining the general framework for assessing ISS risks within the Ministry and developing a unified risk mapping for the Ministry ;
  • Conducting internal audits of the Ministry’s ISS ;
  • Monitoring ISS-related audits of the Ministry and overseeing the implementation of their recommendations ;
  • Establishing a ministerial mechanism for monitoring and tracking cyber threats ;
  • Centralizing information related to information systems security incidents within the Ministry and reporting cybersecurity incidents to the General Directorate of ISS ;
  • Developing a crisis management framework for the Ministry’s ISS, supervising its implementation in the event of a cybersecurity incident, and coordinating the intervention of the Ministry’s directorates ;
  • Developing and monitoring the execution of the Ministry’s business continuity or recovery plan, testing it, and updating it regularly ;
  • Developing awareness, training, and skills development programs in the field of cybersecurity and monitoring their implementation ;
  • Preparing an annual report on the Ministry’s ISS and regularly informing the Minister ;
  • Representing the Ministry before the General Directorate of ISS ;
  • Issuing opinions on draft legal texts relating to ISS submitted to the Ministry.