← Dated values

Dated values

Cyber Trust Mark transition requirements for CII owners and auditors

Cyber Trust Mark transition requirements for CII owners and auditors

Status: provisional

Record details

Value
CIIOs have until 31 December 2027 to obtain CTM Level 5 for qualifying non-CII systems; CII auditors have until 31 December 2026 to obtain organisation-level CTM
Unit
cybersecurity certification transition timetable
Value type
observation
Population
Critical Information Infrastructure owners and auditors conducting audits for CIIOs
Denominator
The requirement is scoped to the systems and organisations specified by CSA and is not a universal CTM requirement for every Singapore business
Reference period
CSA announcement 2 March 2026; transition deadlines 31 December 2026 and 31 December 2027
Retrieved
2026-09-10
Published
2026-03-02
Geography
sg.geo.country.singapore
Notes
Licensed cybersecurity provider Tier 3 requirements are covered separately; confirm current CSA implementation materials for operational compliance details.

Dates describe this record’s own period and applicability. A verification date does not mean a rule is currently in force.

Sources

Collection as of 2026-10-07 · An expanding collection. Published counts show available knowledge, not complete coverage of Singapore.