tag

Wednesday, October 07, 2026 | Daily Newspaper published by GPPC Doha, Qatar.

Tag Results for "cybersecurity" (32 articles)

Gulf Times
Qatar

NCSA organises national cybersecurity conference

Under the patronage of His Excellency the Prime Minister and Minister of Foreign Affairs Sheikh Mohammed bin Abdulrahman bin Jassim al-Thani, the National Cyber Security Agency (NCSA) organised the fifth National Cyber Governance and Assurance Affairs (NCGAA) conference Monday. Held under the theme of Securing the Digital Future in an Era of Convergence, the event was attended by His Excellency the Minister of Communications and Information Technology Mohammed bin Ali bin Mohammed al-Mannai, and NCSA President Eng. Abdulrahman bin Ali al-Farahid al-Malki, alongside top officials and representatives of government entities and private firms in the nation. The conference featured the launch of the national cybersecurity risk management framework and the institutional cybersecurity risk management framework, as well as the announcement of several high-impact initiatives reflecting strategic directions aimed at strengthening cybersecurity. In his inaugural remarks, al-Malki stressed that securing the digital future has become a strategic responsibility that goes beyond protecting systems to encompass ensuring confidence, continuity and adaptability. This action, he said, requires a proactive cybersecurity approach grounded in innovation, information and expertise interchange, strengthening national capacities, as well as public-private sector collaboration and persistently remaining focused on emerging threats. Al-Malki added that a secure and enduring digital future can be built by virtue of achieving cyber resilience that substantially supports innovation and growth and maintains the trust of society and the economy in digital services and technologies. The NCSA, he continued, has been working to strengthen national cyber resilience to ensure that it is capable of preempting sophisticated cyber threats, responding to them and healing from their impacts, with a particular emphasis on the continuity of services and critical infrastructure. The director of National Cyber Governance and Assurance Affairs at the NCSA, Eng. Dana Yousef al-Abdulla, said that when people talk about securing the digital future, they are talking about one of the key enablers of Qatar’s development and transformation journey under Qatar National Vision 2030. She asserted that cybersecurity today is not limited to protecting systems and data; it is also tied to service continuity, protecting infrastructure, supporting the digital economy and strengthening trust in the digital environment. Al-Abdulla added that as the cyber challenges facing critical sectors continue to mount, it is no longer possible to address them in isolation. Instead, convergence among regulatory authorities, critical sectors and technology providers has become essential to strengthening cyber resilience readiness. She unveiled a new collaboration with the Qatar Financial Markets Authority (QFMA), including the launch of a tailored compliance programme for entities regulated by the QFMA and the adoption of supplementary controls for the national cybersecurity standards, further strengthening the integration of cybersecurity and sectoral regulation. Al-Abdulla also announced the launch of projects and initiatives aimed at advancing the cybersecurity landscape, including planning for the post-quantum era and examining a roadmap for implementing the Operational Technology Cybersecurity Assessment Programme developed by the International Society of Automation (ISA). The programme, she noted, will play a role in strengthening the security of critical sectors, while also unlocking new economic opportunities for companies and cybersecurity service providers. During the conference, several companies and enterprises that had obtained accreditation and compliance certifications under the National Information Assurance (NIA) standard, as well as the Qatar Common Criteria Scheme (QCCS), were honoured. The conference also saw the signing of a memorandum of understanding (MoU) between the NCSA and Crest International, aimed at strengthening co-operation, raising cybersecurity standards and achieving mutual recognition of requirements for accredited providers of penetration testing services. The conference featured panel discussions and presentations involving a contingent of cybersecurity experts. The first session focused on digital sovereignty in a convergent world: an outlook on future trends in achieving sovereignty, with the second session examining readiness for the post-quantum era: aligning governance, industry and assurance. The third session was laser-focused on convergence in regulatory requirements, data governance, artificial intelligence (AI) and supply chains. The fourth session drilled down on risks associated with the use of artificial intelligence in operational technology, while the sessions concluded with a presentation on who owns cybersecurity risk when everything is interconnected. On the sidelines of the conference, four workshops were held on the national and institutional framework for information security risk management, opening new business opportunities and strengthening trust through penetration testing certification, the national information assurance standard certification for financial market participants, and the evolving landscape of data privacy, including trends, risks and challenges. 

Sumanta Roy
Qatar

Mannai Corporation strengthens ICT leadership with appointment of Sumanta Roy

Mannai Corporation QPSC announced the appointment of technology industry veteran Sumanta Roy as Group President for Information and Communication Technology (ICT). Roy will lead the Group’s ICT business across the Middle East, and Africa, strengthening its technology capabilities and advancing its regional expansion, with Saudi Arabia among its priority markets.Saudi Arabia stands as a strategic priority for Mannai with the Group deepening its operations in the Kingdom through Mannai Information Technology Saudi Arabia. In his new role, Roy will steer the next phase of growth from the company's base in Riyadh, drawing on Mannai's regional capabilities and global partnerships to build on its technology presence in the Kingdom and support the Group's broader expansion across Middle East and Africa. This will include deepening relationships with customers and technology partners, while widening the portfolio across high-growth areas such as AI, cybersecurity, cloud, digital transformation, intelligent infrastructure and managed services.Alekh Grewal, Group CEO, Mannai Corporation QPSC, said: “Sumanta joins Mannai at an important point in the evolution of our technology business. He brings more than three decades of industry experience, an exceptional understanding of the Middle East and Africa, and a proven ability to build businesses, deepen customer relationships and lead growth across complex and rapidly evolving markets.”Roy said: “My focus will be on bringing together the strength of our people, capabilities and global technology partnerships to create greater value for our customers, while accelerating our growth in strategic markets, particularly Saudi Arabia, and expanding Mannai’s technology footprint across Middle East and Africa.”Roy brings more than thirty years of leadership experience in IT services, business transformation and regional growth. 

David de Paula Santos Silva, founder and CEO of CyberX.
Business

Local ecosystem seen vital to protecting Qatar's critical digital infrastructure

Securing Qatar’s rapidly expanding digital infrastructure requires a cybersecurity workforce trained through realistic scenarios rather than relying solely on academic qualifications.CyberX founder and CEO David de Paula Santos Silva said the country is investing heavily in smart-city technologies and e-government platforms, making the need for capable local talent increasingly urgent.While Qatar has established a strong research foundation in locations like Education City, Silva noted there is a clear opportunity to connect this academic base directly with actual cybersecurity operations.According to Silva, theoretical knowledge is insufficient to protect national networks. He said people become proficient penetration testers and incident responders only by facing realistic situations repeatedly.To bridge this gap, he suggested investing in cyber ranges, industrial control system laboratories, cybersecurity events, and capture-the-flag environments.Silva also recommended internships and establishing regular incident exercises that bring together government agencies, universities, and critical infrastructure operators. Students need early opportunities to work alongside experienced professionals before they are expected to manage a national-level incident, Silva pointed out.“Students should have opportunities to work alongside experienced penetration testers, red teamers, incident responders and threat researchers before they are expected to handle a national-level incident,” pointed out Silva, who explained that offensive security training is highly important in this development phase.“If you want someone to defend infrastructure against a sophisticated attacker, they need to understand how attackers think, how they combine vulnerabilities and how they move through an environment after the initial compromise,” Silva said.According to Silva, these local defenders will face complex challenges as malicious actors adopt new technologies. He noted that artificial intelligence (AI) is changing the economics of cyberattacks by making reconnaissance faster and allowing attackers to process large volumes of public information.“Critical infrastructure operators also need to recognise that their threat model is different from that of an ordinary company. The concern is not only ransomware or someone stealing credit-card information,” he emphasised.Silva warned that state-sponsored operations often involve espionage and gaining persistent access to infrastructure that could become strategically useful during geopolitical conflicts.“The smarter and more connected a country becomes, the more systems begin to depend on each other,” he said, noting that transport, telecommunications, energy, and cloud platforms increasingly become part of the same ecosystem.This interconnectedness “creates enormous opportunities” but also means cybersecurity cannot be treated as an afterthought, he stated.Discussing the role of foreign professionals, Silva noted that international expertise helps accelerate the learning process, provided it includes knowledge transfer. The ultimate objective is not to eliminate all external experts, he explained.“It should be to make sure Qatar is never critically dependent on external expertise when an incident is actually happening,” Silva said.Silva said he established his firm’s presence at the Qatar Science & Technology Park (QSTP) to be close to researchers and the broader innovation ecosystem. He said Qatar has the national ambition and technology investment required to develop these capabilities locally.“Qatar has the universities, research environment, technology investment and national ambition to develop some of that capability locally rather than simply importing cybersecurity solutions from abroad,” he emphasised.Building this workforce from within ensures that a highly connected country also becomes a highly tested and secure country, noted Silva, who recently won the ‘Cybersecurity Leader of the Year’ award at ‘Cysec Qatar 2026’.

Gulf Times
Business

Critical infrastructure operators urged to close verification gap amid rapid digitisation

As Qatar accelerates the digitisation of critical sectors such as energy, finance, healthcare, water, and transport, corporate spending on defensive cybersecurity tools is reaching record levels.  However, a significant gap remains between installing security software and verifying if those controls can withstand a real-world attack, according to David de Paula Santos Silva, the founder and CEO of CyberX, an ethical hacking services firm headquartered at the Qatar Science and Technology Park (QSTP). “Organisations are often willing to invest significant amounts in defensive technology... The problem is that installing a security control does not prove that the control will work when somebody actively tries to bypass it,” Silva told Gulf Times in an exclusive interview.  Silva emphasised that operational technology environments within the energy, water, and transport sectors require special attention. He said these areas combine rapid digitalisation with critical safety requirements, making it difficult to take systems offline for routine maintenance or testing.  While companies spend heavily on systems like firewalls, endpoint detection, monitoring platforms, and threat intelligence, Silva explained that these investments demand active validation. He noted that a sophisticated security stack could still fail to detect an attack, allow network segmentation to be bypassed, or reveal a broken incident response process during a simulation.  “You can have an expensive security stack and still discover during a penetration test or red-team exercise that an attack was not detected, network segmentation could be bypassed, an endpoint was not properly monitored, or the response process did not work as expected,” he explained.  Instead of asking what security tools have been purchased, Silva noted that boards should ask when someone was last authorised to try and defeat those exact tools. Assuming a network is protected without independent testing is primarily a governance problem, he stressed.  Silva compared the situation to installing a fire alarm: The green indicator light shows the device is turned on, but only actual smoke proves the system functions during an emergency. He pointed out that cybersecurity requires the exact same verification mindset, even if the testing produces uncomfortable answers for IT departments.  According to Silva, a simulated incident exercise might reveal that an expensive security tool missed a specific technique, or that staff do not know who has the authority to isolate a compromised system late at night.  “A red team is effectively an exam for the security investments you have already made. A penetration test can tell you whether vulnerabilities can be exploited,” stated Silva, adding that organisations need both defence and verification.  While Qatar already has a substantial cybersecurity framework, Silva cautioned against relying solely on compliance standards. He recommended strong requirements around independent risk-based penetration testing, periodic red-team exercises, third-party risk assessments, and mandatory retesting after significant vulnerabilities are fixed.  Incident response exercises are equally critical, said Silva, noting that an organisation might possess an excellent response document but discover during a drill that phone numbers are outdated or an important supplier cannot be reached outside business hours.  He said, “Supply-chain exposure deserves particular attention because critical infrastructure increasingly depends on external software, cloud services, maintenance companies and technology providers.”  Silva added: “The regulator should not only be asking: ‘What security products do you have?’ It should also be asking: ‘Show me the last time somebody tested whether those controls could actually be bypassed, what they found and whether you fixed it’. That creates a very different security culture.”

Gulf Times
Qatar

Cyber Security Youth Camp fetes teams for best projects

The National Cyber Security Agency (NCSA) Tuesday held the closing ceremony of the third edition of the Cyber Security Youth Camp, with the participation of around 400 male and female students aged 13-17, representing a number of public and private schools across Qatar. NCSA President Engineer Abdulrahman bin Ali al-Farahid al-Malki, in the presence of His Excellency the Undersecretary of the Ministry of Education and Higher Education Dr Ibrahim bin Saleh al-Nuaimi along with agency partners and cybersecurity experts, honoured the camp’s partners, expert speakers, winners of the Consultation Corner competition, and the teams that developed the best projects. The Agency explained that the camp, organised in co-operation with the Ministry of Education and Higher Education and the Ministry of Sports and Youth, and hosted by Qatar Science and Technology Secondary School for Boys, forms part of its efforts to build a highly capable and cybersecurity-conscious generation, in line with Qatar National Vision 2030’s focus on human development and strengthening digital capabilities across society. Over 20 days, participants received more than 50 hours of intensive practical and applied training covering 15 cybersecurity topics, including web fundamentals, attack analysis, networks and systems, cyber defence, and ethical hacking. The Agency also noted that more than 1,000 students from different countries joined the camp remotely each day, expanding its impact beyond Qatar’s borders and strengthening the country’s role in promoting cybersecurity awareness and digital inclusion. Field visits to Ooredoo gave students first-hand exposure to cybersecurity applications in real-world work environments, as well as insights into specialised careers and skills in the sector. Discussions also addressed emerging threats driven by artificial intelligence and ways to prevent them. The camp featured dialogue sessions with seven leading experts in cybersecurity and education, who shared their expertise in digital protection. It also included 15 diverse recreational and interactive activities that strengthened teamwork, renewed participants’ energy, and created a safe and inspiring learning environment. The programme further featured six challenges through the Consultation and Cybersecurity Corner, in addition to a Capture The Flag (CTF) competition, allowing participants to apply their skills in a genuine competitive environment and sharpen their ability to think under pressure and solve problems creatively. The participants concluded their experience by developing 80 graduation projects aimed at addressing real-world cybersecurity challenges.  

Gulf Times
Qatar

Expert cautions against foreign AI dependence

As artificial intelligence becomes deeply embedded in healthcare, government services, cybersecurity, scientific research, and economic development and with possible restrictions on existing AI platforms, a Qatari researcher has cautioned that countries can no longer afford to depend entirely on foreign AI providers highlighting the need for sovereign AI for each nation. “Sovereign AI is a nation's ability to build, run, and govern its own artificial intelligence. That means owning or at least controlling the computing infrastructure, the data, the AI models and the rules that shape how the technology is developed and used. From this perspective, AI is rapidly becoming as strategically vital to nations as electricity, telecommunications, and energy,” Dr Aref al-Tamimi, senior manager of the National Cyber Security Research Lab at Qatar Computing Research Institute (QCRI) told Gulf Times.Dr al-Tamimi, said artificial intelligence has evolved from an emerging technology into a critical national asset. “Its importance reaches far beyond the technology itself. A country with sovereign control over its AI infrastructure is better placed to protect sensitive government and citizen data, safeguard its language and culture, strengthen its economy, and ease its reliance on technologies built elsewhere. Above all, it becomes far more resilient when geopolitics turn unpredictable, and unpredictable is exactly what the current moment has become,” he explainedDr al-Tamimi noted that the urgency of achieving AI sovereignty became evident following recent international developments. He described “In June 2026, the US government invoked export controls to suspend access to Anthropic's most advanced AI models, Fable 5 and Mythos 5, for all foreign nationals. The concern was understandable; the consequences, however, were global. Because Anthropic could not verify users' nationality in real time, both models went dark for everyone, everywhere, overnight. Although Claude Fable 5 is now officially back online after the controls were lifted in early July, the nineteen-day blackout demonstrated how quickly access to critical AI tools can vanish.”This incident, he said, has highlighted the risks of relying exclusively on external AI platforms. “A university running AI research, a startup building its first product, a hospital relying on AI-assisted diagnostics, or a ministry delivering digital services can all be left stranded by a decision taken in another capital, with no warning and no appeal. It does not matter how loyal a customer you are or how legitimate your use case is; if the tool is not yours, it can be taken away. For governments and institutions in the Gulf and beyond, the episode was a wake-up call: total reliance on external AI providers is not a convenience; it is a strategic vulnerability,” he cautioned. "The message was clear," Dr al-Tamimi continued. "If a country's critical AI systems depend entirely on technologies owned elsewhere, they remain vulnerable to decisions made beyond their control."The official said that Qatar has already read the moment well. “Through its National AI Strategy, and through institutions such as the Qatar Computing Research Institute and Hamad Bin Khalifa University, the country has made real strides in AI research, Arabic language technologies, cybersecurity, and digital transformation. A prime example is Fanar, the Arabic-centric large language model developed by QCRI, a homegrown AI system built to serve the language, culture, and values of the region, and a concrete demonstration of what sovereign AI capability looks like in practice,” he highlighted. He further recommended that diversifying AI sources—including commercial platforms, open-source models, and domestically developed systems—would improve resilience against future disruptions.“Every year AI models get bigger, the datasets get more complex, and entire industries discover new uses for intelligent systems, from analysing security data to powering government services. Meeting that rising demand will require continued and expanded investment in high-performance computing, national AI infrastructure, skilled local talent, and sustained support for startups and researchers. The foundation is in place; the challenge now is to keep building on it at the speed the technology demands,” added Dr al-Tamimi.

Patrick Dannacher, president director and CEO of ITSEC Asia.
Business

Cybersecurity should reach SMEs and families, not just big firms, says expert

Organisations rushing to adopt artificial intelligence (AI) without the right safeguards risk opening new vulnerabilities that attackers are already looking for, a senior executive at an Indonesia-based cybersecurity firm has warned. Earlier, Patrick Dannacher, president director and CEO of ITSEC Asia, told Gulf Times that Qatar’s investments in AI, smart infrastructure, and the digital economy have made cybersecurity both relevant and essential to the country’s long-term growth. The pressure to implement AI is understandable, he said, but speed of adoption is not the same as safe adoption. “Today, many organisations feel pressure to implement AI to improve productivity and stay competitive. That is absolutely the right direction, but the important question is not whether you should adopt AI, it is how you adopt it safely,” he explained.Dannacher said, “Bad actors have already embraced AI. We are seeing more sophisticated phishing campaigns, convincing deepfakes, AI-assisted malware, and automated attacks operating around the clock.”  “Unlike people, AI does not need to sleep. As long as it has power, it can keep working, learning and looking for weaknesses,” reiterated Dannacher. Dannacher said the future of cybersecurity is not a choice between people and technology, but a combination of both. To that end, he said ITSEC Asia developed Bronyx, an AI-powered autonomous penetration testing platform that continuously checks security controls and flags weaknesses before they can be exploited. He noted that this gap is not limited to large enterprises. Small and medium-sized enterprises (SMEs), schools, and communities often lack access to the security tools and expertise available to well-resourced organisations, leaving them exposed, he emphasised. Dannacher said the company offers IntelliBron Orion, a plug-and-play platform designed for organisations that do not have large security teams, as well as IntelliBron Aman Enterprise, tailored for businesses and schools seeking to build safer digital environments for employees and students. “We believe cybersecurity awareness and protection should start early, and educational institutions play a critical role in building future cyber resilience,” he said. At the consumer level, Dannacher said individuals and families also need straightforward and accessible protection against phishing attempts, malicious links, and online scams, which the company addresses through IntelliBron Aman. Because technology alone is not enough, he noted, the company also established the ITSEC Cyber and AI Academy to help organisations and professionals build the skills the AI era demands. Dannacher said this view connects to a broader shift that is taking shape across the region, noting that countries are no longer content to depend entirely on external technologies to protect their most critical systems. “Across the Global South, we believe local innovation, local talent and locally developed solutions will become increasingly important,” he said. He said the company’s UAE base, which has served as its gateway to the Middle East since 2017, positions it to grow alongside the region’s accelerating digital transformation. “We want to make cybersecurity practical, sustainable and easy to adopt. Because cybersecurity should create confidence, not complexity,” Dannacher added.

Dr Thamer al-Qadi
Qatar

Cyber resilience is crucial to Qatar’s digital future: expert

As Qatar advances its ambitious Digital Agenda 2030, cybersecurity must evolve from a technical function into a shared national responsibility, according to Dr Thamer al-Qadi, who is widely recognised as one of Qatar's leading technology executives. He has more than 25 years of experience shaping the country's digital landscape through innovation, cybersecurity, and strategic technology leadership. He is currently director of Information Technology at Katara Cultural Village Foundation.Speaking to Gulf Times, Dr al-Qadi said the country's rapid adoption of artificial intelligence, cloud computing, smart infrastructure and digital services makes cyber resilience fundamental to sustainable development. While technology continues to reshape the way organisations operate, he stressed that trust, governance and human awareness remain the strongest safeguards against increasingly sophisticated cyber threats."The greatest challenge over the coming years will be the erosion of digital trust," he said. "Artificial intelligence (AI) now enables criminals to create convincing emails, forged documents, deepfake voices and realistic videos. People can no longer rely solely on what they see or hear. Trust must be based on verification."Dr al-Qadi rejected the common perception that employees are the weakest link in cybersecurity, arguing instead that people become an organisation's strongest defence when properly trained and supported.Most cyber incidents, he noted, result from everyday mistakes such as clicking phishing links, approving fraudulent multi-factor authentication requests, reusing passwords or opening malicious attachments. Attackers increasingly impersonate banks, government agencies, telecom providers and delivery companies, using urgent messages in Arabic and English to trick victims into revealing sensitive information.Simple measures, including unique passwords, multi-factor authentication, regular software updates and verifying unexpected requests through a separate communication channel, remain among the most effective forms of protection, he said.For organisations, annual awareness campaigns are no longer sufficient."Cybersecurity awareness must be continuous and practical," he said, advocating regular phishing simulations, role-specific training and an environment where employees can report suspicious activity without fear of blame.AI, Dr al-Qadi said, has transformed both cyberattacks and cyber defence. AI enables criminals to launch highly personalised phishing campaigns at unprecedented speed, but it also allows security teams to detect unusual behaviour, prioritise threats and respond more rapidly to incidents."AI should enhance professional judgement, not replace it," he said, emphasising that strong governance and human oversight remain essential as organisations adopt intelligent technologies.The expansion of hybrid and remote working has also redefined cybersecurity. Traditional office boundaries have disappeared as employees increasingly access corporate systems from homes, airports and public networks.To address these risks, Dr al-Qadi advocates a Zero Trust security model in which every user, device and connection is continuously verified regardless of location. Organisations should centrally manage corporate devices, implement strong authentication, encrypt sensitive information and establish clear policies governing remote work."Providing a laptop and VPN is no longer enough," he said. "Security must be integrated into the entire operating model."Dr al-Qadi also warned against the misconception among small and medium-sized enterprises (SMEs) that they are too small to attract cybercriminals.Automated attacks constantly scan the internet for vulnerable systems, regardless of company size, while smaller businesses frequently become gateways into larger organisations through supply-chain attacks.Rather than investing immediately in costly security infrastructure, SMEs should focus on the fundamentals: protecting critical data, enabling multi-factor authentication, maintaining secure backups, keeping systems updated and developing practical incident-response plans.He added that outsourcing IT services does not transfer cybersecurity responsibility. Organisations remain accountable for protecting their information and ensuring service providers comply with clearly defined security and data protection requirements.Looking ahead, Dr al-Qadi believes Qatar's growing investment in smart cities and Internet of Things (IoT) technologies presents enormous opportunities, provided cybersecurity is embedded from the outset.Connected devices controlling transport systems, utilities, buildings and public services can improve efficiency, but they also create new attack surfaces if security is overlooked. He called for secure-by-design principles, robust procurement standards and continuous monitoring of connected infrastructure throughout its lifecycle.Despite the growing sophistication of cyber threats, Dr Al Qadi stressed that the objective is not to eliminate risk but to build resilience."No organisation or individual is ever completely unhackable," he said. "Success lies in preventing attacks where possible, detecting breaches quickly, limiting their impact and recovering rapidly."He urged organisations to test backups regularly, rehearse incident-response plans and clearly define responsibilities before an attack occurs rather than during a crisis.For Qatar, he concluded, cybersecurity has become a strategic enabler of economic diversification and digital innovation.Cybersecurity is no longer the responsibility of the IT department alone," Dr al-Qadi said. "It belongs to every individual, every organisation and every leader. By embedding secure behaviour into our daily lives and combining innovation with strong governance, Qatar can build a trusted and resilient digital future."He urged organisations to regularly rehearse incident-response plans, test backups and clarify responsibilities before crises occur.Ultimately, he said, cybersecurity extends far beyond technology."It is a shared responsibility that belongs to every individual, every organisation and every leader," he said.With Qatar investing heavily in digital infrastructure, cloud computing, artificial intelligence and smart services, Dr al-Qadi believes trust will determine the success of the country's digital future."Cybersecurity is not simply about protecting computers," he said. "It is about protecting confidence in the digital economy. By embedding secure behaviour into everyday life and combining innovation with good governance, Qatar can build a resilient digital future that supports sustainable growth for generations to come." 

Gulf Times
Qatar

Qatar wins WSIS cybersecurity award again

Qatar, represented by the National Cyber Security Agency, has won the World Summit on the Information Society (WSIS) 2026 Award for the second consecutive year in the ALC5 – Building Confidence and Security in the Use of Information and Communication Technologies category.The award was received by National Cyber Security Agency Director-General Ahmed Mohammed al-Mutawa al-Hammadi during the official ceremony in Geneva.The achievement followed a competitive selection process involving hundreds of projects from countries around the world.The nominated projects underwent a comprehensive evaluation, including public voting, expert assessment, and review by specialised committees, before the National Cybersecurity Training Programme was selected as the winning project.The programme was recognised for its significant contribution to achieving the objectives of the WSIS and supporting the implementation of the 2030 Sustainable Development Agenda. 

Gulf Times
Qatar

NCSA, beIN MEDIA GROUP sign MoU to enhance cybersecurity awareness, capacity building

The National Cyber Security Agency (NCSA) and beIN MEDIA GROUP have signed a memorandum of understanding (MoU) aimed at strengthening cooperation in the fields of cybersecurity awareness and national capacity building. The MoU was signed on behalf of the National Cyber Security Agency by Dalal al Aqeedi, Assistant Director of Cyber Security Policies and Strategies Department, and on behalf of beIN MEDIA GROUP by Hamad al-Sheikh, Human Resources Director for the Middle East and North Africa, in the presence of senior officials from both parties. The MoU reflects the shared commitment of both parties to expanding cooperation between the government and media sectors in support of national efforts to enhance cybersecurity and promote digital awareness across the State of Qatar. For her part, Dalal al-Aqeedi, Assistant Director of the Cyber Security Policies and Strategies Department at the National Cyber Security Agency, stated that the MoU establishes a framework for collaboration on future initiatives and projects related to cybersecurity and digital safety, reinforcing national efforts to build a secure and digitally aware society. The MoU outlines cooperation across several areas, most notably offering training opportunities to beIN MEDIA GROUP employees through the Agency’s specialised national programmes, including the Graduate Bootcamp, Professionals Programme, Managers Programme, and Leaders Programme, in addition to participation in cybersecurity workshops and awareness sessions. Hamad al-Sheikh, Human Resources Director at beIN MEDIA GROUP, stated that the partnership reflects the growing importance of cybersecurity as a cornerstone of national security in the State of Qatar, particularly in light of the rapidly evolving cyber threats targeting individuals, organisations, and critical infrastructure. He emphasised that awareness and training constitute the first line of defence against cyber threats, and that investing in a strong security culture is as critical as investing in advanced technologies, given its pivotal role in strengthening resilience and mitigating cyber risks. He further stated that the collaboration reflects beIN MEDIA GROUP’s commitment to supporting the national cybersecurity ecosystem through raising awareness, developing capabilities, and strengthening the protection of its digital infrastructure, to ensure the continuity of its media and sports services in accordance with the highest standards of security and reliability. He added that the partnership is aligned with the State of Qatar’s strategy to establish a secure national cybersecurity ecosystem founded on partnership, innovation, national capacity building, and enhanced preparedness to address evolving cyber threats. The MoU further encompasses cooperation in promoting the Agency’s national training programmes and initiatives through beIN MEDIA GROUP’s internal channels and digital platforms, supporting the dissemination of cybersecurity and digital safety awareness campaigns and public service announcements across its media platforms and television channels, and exploring opportunities to develop and produce awareness content and programmes for children on cybersecurity and digital safety, thereby promoting digital awareness among younger generations and fostering safe online practices. The MoU forms part of the National Cyber Security Agency’s ongoing efforts to strengthen strategic partnerships with national and regional entities and leverage influential platforms to raise cybersecurity awareness and promote a culture of safe and responsible use of technology, in support of Qatar’s cybersecurity and digital safety objectives. The National Cyber Security Agency continues to implement a range of national initiatives and programmes aimed at enhancing cybersecurity awareness, developing national capabilities, and strengthening digital readiness across all segments of society, thereby contributing to a secure and trusted digital environment that supports Qatar’s development and digital transformation agenda.

Gulf Times
Community

Hunting the Hunters: The Indian Cyber Entrepreneur Tracking thousands of Global Threat Actors in Real-Time

Every single day, millions of personal records, corporate secrets, and sensitive data points vanish into the dark, hidden corners of the internet. For most people, the digital underworld is an invisible, terrifying abstraction, a place where anonymous threat actors strike without warning, leaving ruined reputations and financial chaos in their wake. But where the world sees an untamable digital wilderness, Nandakishore Harikumar sees a landscape that can be mapped, understood, and defended. Over a decade ago, the tech professional from Mavelikara,a town in the Alappuzha District of Kerala, India looked at the escalating global cyber crisis and chose an unconventional path: instead of just fixing the locks after a house had been robbed, he decided to track the burglars themselves. Today, as a recognized subject-matter expert in threat intelligence and cybercrime, he has turned that proactive philosophy into a global security shield, proving that deep-tech innovation can scale from India to the absolute frontiers of international cybersecurity. The Architecture of Foresight: Turning the Tables on Cyber AdversariesThe foundation of this journey began in February 2018 with the birth of Technisanct, a big-data cybersecurity company that set out to close the critical gaps in threat management. In the early days, operating as a consultancy for prominent brands across India, the process of gathering leaked data was a grueling, labor-intensive manual chore. Recognizing that time is the ultimate casualty in a data breach, Nandakishore envisioned an artificial-intelligence-powered, software-as-a-service platform that could dramatically accelerate threat detection. The result was Falcon Feeds, a flagship product that fundamentally flipped the traditional security narrative. While standard security systems passively wait to log incidents and events, Falcon Feeds actively monitors more than 22,000 adversaries simultaneously spanning dark web vendors, APT groups, hacktivists, initial access brokers, ransomware groups, and data brokers tracking their infrastructure, tactics, techniques, and procedures. By decoding the behavior of these adversaries before they strike, the proprietary platform democratizes cybersecurity, giving organizations without massive in-house teams the power to mitigate digital risk early. This distinctive approach caught the attention of the global market, and today, Falcon Feeds serves over 200 customers including governments, corporate giants, the Big Four firms, and specialized cybersecurity enterprises across more than 55 countries, with a primary footprint in Europe and the United States. Unmasking Digital Deception and Looking Beyond the HorizonNandakishore’s expertise extends far beyond standard code and firewalls into the complex human and geopolitical dimensions of the digital age. His daily work delves into deep, niche disciplines like analyzing fraud networks, mapping the cyber dimensions of international geopolitical crises, and monitoring coordinated inauthentic behavior, fake news, and propaganda operations. This deep understanding of how malicious actors exploit digital communication has made him a trusted ally for multiple law enforcement agencies in India and abroad, supporting sensitive investigations into the darkest corners of the cyber domain. As the regulatory environment matures and demands for stricter data protection and privacy tighten, Technisanct is already engineering its next chapters. The company's intelligence engine now spans more than 50,000 Telegram groups covering cybercrime, cybersecurity, and geopolitics surfacing threat-actor activity and brand risks as they unfold. Backed by a landmark investment from IIT Kanpur, India, a powerful validation of the company's research foundation Nandakishore is advancing proprietary AI models to profile cyber threats with unprecedented precision. From its roots in Kerala, India, Technisanct continues to execute a bold, data-centric roadmap, carrying homegrown, cutting-edge threat intelligence to the global stage and rewriting the rules of proactive digital defense. 

Patrick Dannacher, president director and CEO of ITSEC Asia.
Business

Cyber threats to grow more automated and targeted, warns expert

Qatar’s businesses and policymakers may face a more automated, more targeted and more persistent wave of cyber threats over the next five years, a top executive at an Indonesia-based cybersecurity firm has said. “I think there are several trends that organisations in Qatar and across the Gulf should be preparing for. The first is that attacks will become more automated, more targeted and more persistent because of AI,” Patrick Dannacher, president director and CEO of ITSEC Asia, told Gulf Times. According to Dannacher, artificial intelligence (AI) is lowering the barriers that once separated serious threat actors from opportunistic ones, allowing attacks to run at a scale that was not previously possible. Critical infrastructure is also drawing more attention as Qatar’s digital footprint expands, he said, with sectors such as energy, transportation, telecommunications, and financial services “becoming increasingly attractive to sophisticated threat actors.”Visibility is another gap organisations will need to close, Dannacher noted. “You cannot protect what you cannot see, so having a clear understanding of where you are vulnerable will become increasingly important,” he said. On the talent side, Dannacher said every country in the world is dealing with a shortage of cybersecurity professionals, and Qatar is no exception. He noted that technology will automate a growing number of tasks, but skilled professionals remain the ones making decisions, investigating incidents, and managing risk. The fifth trend Dannacher identified is a shift away from annual or periodic security assessments toward continuous validation and monitoring. “The threat landscape changes too quickly for organisations to check their security once or twice a year and assume everything is fine,” he pointed out. Dannacher said the organisations best placed to handle what is coming are not necessarily those that manage to avoid every attack, but those that build the habit of continuous improvement and adapt quickly when something goes wrong. Behind those five trends lies a broader mindset problem that, according to Dannacher, cuts across industries and geographies. “I think this is less about the Middle East and more about how organisations around the world think about cyber risk,” he said.He said many organisations only shift their attention to cybersecurity after something goes wrong, citing a breach, a ransomware attack, or a significant incident. “If nothing happens for a couple of years, people become comfortable again and attention moves elsewhere,” Dannacher pointed out. Dannacher said, “We need to move from a reactive mindset to a proactive one. Organisations should be continuously monitoring their environment, understanding how the threat landscape is changing, and identifying where they are most vulnerable before an incident occurs.”Citing fire drills as an example, Dannacher said most organisations run them several times a year and staff generally know what to do, where to go, and who is responsible. Cyber exercises rarely get the same treatment: “But how many organisations run cyber drills with the same frequency?” he noted.“Cyber drills help identify weaknesses, test response capabilities and ensure the right people and processes are in place before something happens,” he emphasised. Dannacher also cautioned against treating regulatory compliance as the finish line. “Compliance is important, but the threat landscape moves much faster than regulations. The most resilient organisations are the ones that go beyond compliance, continuously improve and prepare for the risks of tomorrow, not just the requirements of today,” he said.Dannacher explained that building that kind of resilience requires governments, regulators, academia, and industry to work together and share what they know. “The more we share information, learn from each other’s experiences and work together, the stronger and safer the entire ecosystem becomes,” he said.He added: “The more we share information, learn from each other’s experiences and work together, the stronger and safer the entire ecosystem becomes.”