Cybersecurity Law imposes new obligations on telecom and internet companies

The new Cybersecurity Law that has entered into force in Turkey imposes heavy responsibilities on internet service providers and telecom companies, while TELKODER has issued important warnings regarding the effects of the regulation. It was emphasized that uncertainties could put a strain on small businesses.

Netizen Global

The new Cybersecurity Law that has entered into force in Turkey imposes comprehensive obligations on internet service providers (ISPs) and telecommunications companies. TELKODER has shared its assessments regarding the effects of the regulation on the sector with the public.

With the law, two new institutions named the "Cybersecurity Presidency" and the "Cybersecurity Board" have been established. These structures will determine Turkey's cybersecurity strategies, conduct audits, and implement new security standards. ISPs and telecom companies, in particular, will be the direct counterparts of these institutions.

According to the new regulation, companies are required to take mandatory cybersecurity measures and store user data for specific periods. However, it is not yet clear which measures will be implemented and which standards these processes will be based on. This uncertainty creates concern, especially for small and medium-sized enterprises.

While drawing attention to the importance of digital security, TELKODER emphasizes that the new obligations must be clear, measurable, and fair. It also states that priority should be given to the protection of personal data, the sustainability of companies, and the support of innovation.

Among the sector's demands are the publication of a roadmap for obligations, ensuring compliance with international standards, making audit processes transparent, and including private sector representatives in decision-making processes.

TELKODER is calling for cooperation and wants the new process to be shaped with the contributions of all stakeholders in the sector.