Africa looks to EU and US for cybersecurity regulatory framework inspiration

  • African governments are shaping their cybersecurity frameworks around the EU and US
  • Kenya’s national cyber-incident response team recorded more than 4.5 billion cyber-attacks
  • The African Union–European Union Summit talked about possible solutions

African governments are increasingly shaping their digital and cybersecurity frameworks around European and United States regulatory models, after cyber threats, surveillance concerns, and online abuse have risen across the continent.

Reporters Without Borders has warned that investigative journalists in Africa are now routinely targeted through spyware, device monitoring and online attacks, alongside traditional forms of intimidation.

In other areas, Kenya’s national cyber-incident response team recorded more than 4.5 billion cyber-attacks over three months, which shows just how digital insecurity now affects individuals and businesses.

These issues were spoken about at the African Union–European Union Summit held last month in Luanda, Angola.

While leaders discussed peace, security and economic cooperation, digital safety and regulation were found to be one of the central issues, with officials stressing that digital growth must be matched by stronger cybersecurity measures.

European Union representatives then pointed to existing EU frameworks, including data protection rules and cybersecurity standards, as reference models for African partners.

Europe has already implemented detailed regulations governing critical infrastructure, online platforms and data security, and officials said similar approaches could help African states manage rising risks.

Mathieu Briens, Director for Africa at the European External Action Service, said EU-backed digital programmes aim to support secure infrastructure, regulatory development and skills training, including for rural communities.

He also stressed the need for safe online spaces for women and girls.

EU Ambassador to Kenya Henriette Geiger said cybersecurity now plays a significant role in EU cooperation with African governments, adding that regulatory safeguards should reflect the scale of current threats in the region.

According to Interpol’s Africa Cyberthreat Assessment Report 2025, cyber-attacks are increasingly targeting health systems, telecommunications networks and public administration.

The report notes that weak regulatory enforcement and limited preparedness leave many countries vulnerable to organised criminal groups.

Private cybersecurity firms report similar trends, with a 2025 review by Kaspersky recording rising levels of malware, data breaches and large-scale system attacks.

Fewer than 25,000 certified cybersecurity professionals serving a population of more than one billion people across the continent were found.

At the same time, the International Telecommunication Union revealed that women in Africa are significantly less likely to have internet access, but those who are online face higher levels of harassment and abuse.

Alongside European influence, African policymakers are also watching changes in United States policy.

The latest US National Security Strategy signals a shift away from aid-led engagement with Africa towards trade, investment and market access.

While the document gives limited space to Africa, it shares how partnerships with countries willing to open markets and adopt reliable regulatory environments could be the path to take.

Experts have since argued that adopting external regulatory models alone will not be enough and say effective implementation, local capacity-building and people-centred protections will determine whether digital transformation benefits the wider population.

What do you think?

No Comments

Sorry, the comment form is closed at this time.

1