In a world where checking your phone is almost as natural as breathing, Uganda's growing reliance on digital platforms has turned cybersecurity from a technical issue into a daily lifestyle necessity.
From mobile money transfers to social media scrolling, online shopping to virtual meetings, Ugandans are living more of their lives online than ever before. But with that convenience comes a pressing question: just how safe is your digital footprint?
Maurice Taremwa, president of Information Systems Audit and Control Association (ISACA) Kampala Chapter, puts it simply: "These days, most of our lives are on the internet. No one spends five minutes without checking their phone. We are living our lives in the cyber world, and so being cyber secure is very important."
He was speaking at a breakfast meeting for CEOs and board members at Four Points Hotel in Kampala, a gathering that underscored that digital trust is no longer just an IT problem, but a leadership and lifestyle concern.
What is digital trust, anyway?
Digital trust refers to the confidence that users, consumers and organisations have in the security, privacy, reliability and integrity of digital systems, transactions and interactions.
During the event, Taremwa urged organisations to view digital trust as an enterprise-wide responsibility, adding that such trust is increasingly important as more people and businesses rely on digital platforms to transact, share information and access services.
“Junior technical officers may request budgets to protect their institutions, but it is the board member or senior executive who makes the decision on whether certain training should be done or technology purchased,” Taremwa said.
He urged leaders to listen to technical staff when they request resources to secure enterprises, clients and broader digital ecosystems.
The meeting aimed to equip non-technical decision-makers with the knowledge to ask the right questions about cyber risks.
Taremwa noted that the Digital Trust Ecosystem Framework (DTEF) recommends integrating digital trust into wider governance structures while tailoring it to an organisation’s specific objectives, values and mission.
Boards, he said, should provide strategic direction and define their risk appetite, while management should implement and monitor risk-mitigation measures.
The shift is becoming increasingly urgent as artificial intelligence and machine learning rapidly change how businesses operate.
He added that businesses that successfully combine technological innovation with security and accountability would be better positioned to improve services, reach wider markets and remain competitive.
Addressing the local cybersecurity landscape, Taremwa said Uganda has the capacity to defend itself against cyberattacks, noting that threats affect organisations globally, regardless of their level of technological advancement.
However, he cautioned that no organisation is completely immune to cyberattacks, making preparedness and recovery critical.
“There is no entity out there, be it in Europe, the Americas or Uganda, that cannot be attacked. The question is: how do you recover?” he said.
He stressed that organisations must focus on reducing the likelihood of attacks, minimising their impact and ensuring that systems can be restored quickly when breaches occur.
Taremwa also warned that cybersecurity measures must continuously evolve because cybercriminals are constantly developing new methods of attack.
“The attack method of yesterday is not the same as today,” he said. “So, the way we protected ourselves yesterday is not the same way we have to protect ourselves today.”