CSA fines ORC GH¢240,000 for engaging unlicensed cybersecurity provider
The Cyber Security Authority (CSA) has sanctioned the Office of the Registrar of Companies (ORC) for failing to comply with cybersecurity directives requiring institutions designated as Critical Information Infrastructure (CII) to engage only licensed Cybersecurity Service Providers. The CSA has also fined Purpleline Solutions Limited Company GH¢120,000 for providing cybersecurity services…
The Cyber Security Authority (CSA) has imposed a fine of GH¢240,000 on the Office of the Registrar of Companies (ORC) for contravening cybersecurity regulations. The ORC had engaged an unlicensed cybersecurity provider, Purpleline Solutions Limited Company, despite being instructed to use a licensed provider. The CSA had directed the ORC on June 15, 2026, to only use Tier 1 licensed Cybersecurity Service Providers to enhance the security of its Critical Information Infrastructure.
The ORC failed to comply with two directives, violating Section 92 of the Cybersecurity Act, 2020 (Act 1038). As a result, the ORC was fined GH¢240,000, and required to comply with the directives within a month. Purpleline Solutions Limited Company was also fined GH¢120,000 for providing cybersecurity services without the necessary license.
The CSA warned against violating licensing requirements and stressed that organizations must verify the licensing status of cybersecurity service providers before engaging their services.
Written by urgent.news from Adom Online's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.