Advocating for Digital Rights and best practices in Nepal

Digital Rights Weekly/Year 2/Issue 35

Sep 01, 2023
View this email in your browser
NRB Released Cyber Resilience Guidelines
Nepal Rastra Bank (NRB) has rolled out the Cyber Resilience Guideline (CRG) 2023, in alignment with its fiscal year 2022/23 monetary policy (policy number 128). This guideline is aimed at bolstering cyber risk management in response to the growing prevalence of electronic transactions. It applies not only to banks and financial institutions but also extends its reach to payment system operators and payment service providers.
Key points covered by the CRG include the need for service providers to develop strategies aligned with NRB’s guidelines to ensure the safety and effectiveness of their information technology and financial infrastructure systems. NRB expects strict compliance with these standards, with an emphasis on managing cyber risks in line with each institution’s objectives. The CRG has placed the ultimate responsibility for cyber risk management on the boards of these institutions. They are tasked with establishing cyber risk tolerance levels, endorsing cyber resilience strategies, and specifying roles and responsibilities related to cyber risk management, including the safeguarding of data integrity.
Government Halts Software Development by Government Agencies  
The government has decided to halt development of unnecessary software by the government agencies due to concerns about escalating expenditures and potential security risks. A meeting of secretaries on 22 August decided to halt indiscriminate software development, emphasizing the need to maintain interoperability among existing software and retaining source code for in-house software. Additionally, the government plans to conduct security audits of software used in government offices, with support from the Ministry of Communications and Information Technology and the Electronic Good Governance Commission. The decision stems from the realization that significant annual expenditures are incurred on procurement and development of high number of software which are not used, and some even lack source code.
Recent reports indicate a haphazard trend of buying software by the agencies without necessary preparation. Notably, the national payment gateway system, which cost approximately Rs 250 million, remains unused due to a lack of preparation and discussion in its procurement process. Investigation by the Commission for the Investigation of Abuse of Authority (CIAA) into procurement of national payment gateway software by the National Information Technology Centre have further highlighted concerns. Additionally, contractor company IDEMIA’s reluctance to share the software for the National Identity Card Management System, which contains sensitive citizen information, has underscored the issue of important government software being under foreign company control. These incidents have also raised doubts about the security of vital government and personal information.

Nepal Leads SAARC Region in Fastest Fixed-Broadband Internet Speed
Nepal has emerged as the leader in the South Asian Association for Regional Cooperation (SAARC) region in fixed-broadband internet speed, outpacing countries like India. According to Ookla’s global broadband internet speed report for July, Nepal ranks 82nd worldwide with an impressive 55.57 Mbps download speed for fiber internet. The upload speed stands at 50.03 Mbps, with a low latency of 5 ms, making it a satisfying experience for users. This remarkable improvement in internet speed in Nepal is attributed to fierce competition and the introduction of high-speed internet packages over the past two years. In the SAARC region, Nepal has overtaken India (53.42 Mbps) to secure the top position in fixed-broadband internet speed.

While TERAMOCS Still in Limbo, NTA Proposed Another Similar System
Despite the Telecom Authority of Nepal (NTA) projecting TERAMOCS as a system for quality enhancement, it has come to light that NTA is concurrently in the process of acquiring another similar testing system. In the proposed budget for the fiscal year 2080/81 BS, NTA has outlined plans to install additional quality measuring equipment and systems under a separate program. According to the proposed NTA annual budget 120 million rupees has been designated for the installation of a QoS monitoring system covering both voice and data. The NTA sources have expressed concerned over decision of buying similar system and hinted possibility of resource misuse in this process.

Death Penalty for Saudi Man over Online Posts
In Saudi Arabia, Mohammed bin Nasser al-Ghamdi has received a death sentence for his online posts on platforms like X (formerly Twitter) and YouTube. This judgment is part of a broader crackdown on dissent, despite international criticism. Notably, other individuals, including doctoral student Salma al-Shehab, are also facing lengthy prison sentences for their online comments. Nasser al-Ghamdi’s charges include “betraying his religion,” “disturbing the security of society,” “conspiring against the government,” and “criticizing the kingdom and the crown prince” – all stemming from his online activities, as revealed in court documents.

‘Advancing Evidence-Based Policy-Making through Data Management’
On August 27, 2023, Digital Rights Nepal organized an event in collaboration with Data for Development and Open Knowledge Nepal at Birgunj Metropolitan City to promote evidence-based policy-making through the use of legal and technical instruments for data management. During the event partners and officials from the Birgunj Metro explored the steps of data management, reviewed the roll-out of Integrated Data Management System (IDMS) system and delved into the development of implementation guidelines for IDMS. Following the meeting’s outcome, DRN has initiated the process of developing IDMS Implementation Guidelines in collaboration with Birgunj Metropolitan City and other.
Publication
Enhancing Digital Civic Space Through the OGP Process
Digital technologies enhance open government by enabling information sharing and data access, improving public services, accountability, and fighting corruption. To promote digital open government, focus on preserving digital civic space, addressing legal, social, and technological aspects, investing in accessible digital services, safeguarding privacy, adopting responsible content management, implementing AI safeguards, and reinforcing e-participation, open data, and civic engagement is imperative. The ICNL guide offers principles, OGP commitments, and positive practices for government officials and civil society to create an open and inclusive digital environment.
For more: Enhancing Digital Civic Space Through the OGP Process – ICNL

Nepal: Revise cybersecurity policy to avoid further internet fragmentation
Article 19 published an article by Michael Caster, Asia Digital Programme Manager, addressing the necessity of revising Nepal’s cybersecurity policy to prevent internet fragmentation. Recently, Nepal’s cabinet approved a new National Cyber Security Policy, which proposes a government-owned intranet and the establishment of a national internet gateway. Caster has argued that a national internet gateway would not only affect the internet freedom of the people of Nepal, but also risk arbitrarily restricting the free flow of information between Nepal and the rest of the world, furthering internet fragmentation.
For detail: https://www.article19.org/resources/nepal-revise-cybersecurity-policy-to-avoid-further-internet-fragmentation/

Opportunity
Application opens for TOT program on Financial Literacy!!
Nepal Rastra Bank (NRB) is inviting applications for a Training of Trainers (TOT) program on Financial Literacy, scheduled to take place from October 8 to October 13, 2023. NRB has offered this opportunity to 25 individuals who hold a master’s degree in economics, public administration, or possess CA/ACCA/CPA qualifications. If interested, submit your application by September 7, 2023.
For more info: Notice-for-TOT-Participants-corrected.pdf (nrb.org.np)
Digital Rights Weekly is a week-based update on Digital Rights and ICT issues, that happened throughout the week, compiled and analyzed from the digital rights perspective by Digital Rights Nepal (DRN). DRN is a not-for-profit initiative dedicated to the protection and promotion of digital rights, including the right to online freedom of expression and association, online privacy, access to information, and related issues such as internet governance, cyber laws/policies, and cyber securities in Nepal.
twitter
facebook
Website
Instagram
Copyright © *|2023|* *|Digital Rights Nepal|* , All rights reserved.

Our mailing address is:
Digital Rights Nepal
OpenGov Hub Nepal
47-Neel Saraswati Marga
Gairedhara-2, Kathmandu

Want to change how you receive these emails?
You can update your preferences or unsubscribe from this list.

Email Marketing Powered by Mailchimp

share share
Tweet Tweet
Forward Forward

Digital Rights Nepal is a not-for-profit initiative dedicated to the protection and promotion of digital rights in Nepal.

Footer Image