Cyber Security Act 2024 (Act 854)
Readiness and compliance for Malaysia's Cyber Security Act 2024 (Act 854), for appointed NCII entities.
Malaysia's Cyber Security Act 2024 (Act 854) places new, time-sensitive obligations on appointed National Critical Information Infrastructure (NCII) entities. Nexagate helps you achieve and maintain compliance across one Act, four cyber security regulations and ten NACSA Chief Executive Directives.
As a NACSA-licensed and CREST-accredited provider, we take you from readiness consultation and gap assessment through to compliance. Our services cover the NCII Cyber Security Audit (once every two years), the annual Cyber Security Risk Assessment (CSRA), Post-Quantum Cryptography (PQC) migration within three months of a NACSA notice, cyber security incident obligations, the National Cyber Security Baseline Assessment (NCSB) and a Crisis Management Plan (CMP). We follow our 5'i' Compliance Journey, and your evidence, gaps and risk register are tracked in NSI.
Act 854 compliance services
Independent cyber security audit for appointed NCII entities, required once every two years.
The annual cyber security risk assessment required under Act 854.
Readiness for and migration to post-quantum cryptography, within three months of a NACSA notice.
Incident notification, response and reporting aligned to the NACSA directives.
Assessment against the national cyber security baseline, with gap closure.
Development and exercising of a crisis management plan for cyber incidents.
Key benefits
How we work
ISO 27001, RMiT, ISO 20000 and ISO 22301 overlap more than most organisations expect. A short call usually narrows it down.
