Each award is accompanied by four nomination criteria modelled on internationally recognised benchmarks, including the Global InfoSec Awards, SC Awards, the (ISC)² Information Security Leadership Awards, the Cybersecurity Excellence Awards, and the GISEC Global Awards. Nominees should demonstrate measurable, evidence-backed achievement against the criteria stated under each category.
All nominations should be supported by verifiable documentation, references, performance metrics, and (where applicable) independent third-party validation. Self-nominations are permitted unless otherwise stated.
Government & Public Sector
Excellence Awards
National Cybersecurity Initiative of the Year
Recognises a government-led initiative demonstrating measurable impact on national cyber resilience and infrastructure security.
- Demonstrable, quantifiable improvement in national cyber resilience indicators (e.g., reduction in reported incidents, improved ITU Global Cybersecurity Index ranking, or measurable uplift in critical infrastructure protection).
- Scope and scale of impact across critical national infrastructure sectors (finance, energy, telecommunications, health, defence) supported by data and case evidence.
- Strategic alignment with the National Cybersecurity Policy and Strategy and with international frameworks such as the NIST Cybersecurity Framework, ISO/IEC 27001, and the Budapest or Malabo Conventions.
- Sustainability, institutionalisation, and replicability of the initiative across other ministries, departments, agencies, or sub-national governments.
Excellence in Digital Governance & Policy
Awarded for contributions to cybersecurity policy, regulatory frameworks, and digital governance.
- Originality, depth, and demonstrable impact of policy instruments, regulations, or governance frameworks developed or championed within the last 24 months.
- Quality of multi-stakeholder engagement and inter-agency coordination evidenced through consultations, working groups, and published responses.
- Alignment with international standards and instruments (e.g., GDPR, OECD Privacy Guidelines, ITU recommendations, AU Malabo Convention, ECOWAS Supplementary Acts).
- Measurable adoption, enforcement outcomes, and compliance levels achieved within the reporting period, including published enforcement actions or compliance statistics.
Public-Private Partnership in Cybersecurity Excellence
Recognises collaboration between government and industry to strengthen cybersecurity capabilities.
- Clarity and maturity of the partnership governance model (formal MOU, joint task force, shared steering committee, or co-funded vehicle).
- Tangible, jointly delivered outputs such as threat intelligence sharing platforms, joint exercises, capacity building programmes, or co-managed protective infrastructure.
- Evidence of measurable benefit to both public sector security objectives and private sector risk reduction, supported by metrics and third-party testimonials.
- Innovation in the partnership model itself, including novel risk-sharing arrangements, regulatory sandboxes, or joint operational centres.
Technology & Solution Provider
Awards
Best Cybersecurity Solution Provider
Awarded to a provider delivering innovative and scalable solutions with proven impact.
- Technical innovation, originality, and competitive differentiation of the solution validated by independent analyst reviews or peer benchmarks.
- Verified customer deployments with measurable security outcomes, supported by named case studies, customer references, and quantified risk-reduction metrics.
- Scalability, interoperability, and integration with existing enterprise security ecosystems, including support for open standards such as STIX/TAXII, OpenC2, and SCAP.
- Compliance with international product certifications and assurance schemes such as Common Criteria, FIPS 140-3, SOC 2 Type II, ISO/IEC 27001, and ISO/IEC 27017.
Project & Organisational
Awards
Best Cybersecurity Transformation Project
Recognises organisations improving their security posture through transformation initiatives.
- Documented baseline and post-implementation security maturity using a recognised framework such as NIST CSF, C2M2, CMMC, or ISO/IEC 27001 maturity assessments.
- Project scope, complexity, and demonstrated risk reduction, including before-and-after metrics on incidents, dwell time, vulnerability remediation, or audit findings.
- Adoption of modern security paradigms such as Zero Trust Architecture, SASE, DevSecOps, or AI/ML-enabled defence, with evidence of operational integration.
- Quantified Return on Security Investment (RoSI) and operational efficiency gains, including avoided losses, reduced manual effort, and improved compliance posture.
Best Financial Services Cybersecurity Compliance
Awarded to a provider delivering innovative and scalable solutions with proven impact.
- Demonstrated compliance with sector frameworks such as PCI DSS, SWIFT CSP, the CBN Risk-Based Cybersecurity Framework, ISO/IEC 27001, and NDPA.
- Effectiveness of fraud prevention, detection, and response controls evidenced through fraud loss ratios, dispute resolution timelines, and false-positive performance.
- Strength of customer protection initiatives including secure authentication, anti-phishing controls, real-time fraud alerts, and customer awareness programmes.
- Independent third-party audit results, regulatory examination outcomes, and any external accreditations or certifications achieved within the last 24 months.
Best Cybersecurity Awareness & Capacity Building Program
Honours initiatives driving awareness and skill development.
- Reach and demographic diversity of the programme, including the number of beneficiaries, sectors covered, geographic distribution, and inclusion of underrepresented groups.
- Measurable behavioural change among participants, such as documented reductions in phishing click-through rates, completion rates, or post-training assessment scores.
- Quality and currency of curriculum, with alignment to recognised frameworks such as the NDLF, NICE Workforce Framework, ENISA ECSF, or industry certification bodies.
- Sustainability, partnerships, and post-programme outcomes including employment placements, certifications obtained, and continued community engagement.
Cybersecurity Startup of the Year
Awarded to a startup demonstrating innovation and impact.
- Originality and technical novelty of the solution addressing emerging or underserved threats (e.g., AI security, OT/ICS, post-quantum, cloud-native, IoT).
- Market traction within the last 24 months evidenced by paying customers, revenue growth, funding raised, or partnerships with established security vendors.
- Validated security impact through pilots, proofs of value, customer testimonials, or independent product testing reports.
- Strength of the founding team and intellectual property position, including patents filed, peer-reviewed research, or open-source contributions.
Individual Awards
Cybersecurity Leader of the Year (Public and Private)
Recognises two leaders in the private and public sector driving strategic cybersecurity initiatives.
- Strategic leadership in delivering organisation-wide or sector-wide cybersecurity outcomes, supported by named programmes, projects, and quantified results.
- Influence on industry direction through thought leadership, keynote engagements, published articles, advisory roles, or contributions to standards bodies.
- Demonstrable initiatives launched and outcomes achieved within the last 24 months, including risk reduction, capability uplift, or institutional reform.
- Sustained contribution to mentorship, talent pipeline development, and sector capacity building, including support for young professionals and women in cyber.
Chief Information Security Officer (CISO) of the Year
Awarded for excellence in enterprise security leadership.
- Quantifiable enterprise risk reduction during tenure, supported by independent audits, regulatory examinations, or board-reported risk metrics.
- Demonstrated leadership through a major incident, transformation, merger, or regulatory change, with documented outcomes and lessons learned.
- Effective board and executive engagement, including the integration of cyber risk into enterprise risk management and clear translation of technical risk into business language.
- Track record of building, developing, and retaining high-performing security teams, evidenced by team growth, certifications, internal promotions, and retention rates.
Cybersecurity Innovator of the Year
Honours individuals introducing groundbreaking ideas.
- Originality of innovation in product, methodology, research, or operational practice, supported by clear evidence of departure from existing approaches.
- Patents granted or filed, peer-reviewed publications, or significant open-source contributions widely adopted by the security community.
- Documented real-world adoption or deployment of the innovation, with named users, deployment scale, or operational results.
- External recognition by independent industry bodies, academic institutions, professional associations, or recognised technology forums.
Women in Cybersecurity Leadership Award
Recognises outstanding leadership by women in cybersecurity.
- Demonstrated leadership impact in a senior cybersecurity role, supported by quantified achievements in strategy, operations, governance, or innovation.
- Active mentorship and advocacy for gender diversity and inclusion within cybersecurity, evidenced through formal programmes, networks, or named beneficiaries.
- Founding or leading initiatives that materially advance the representation, retention, and advancement of women in cybersecurity at the local, regional, or international level.
- Recognition by peers, professional bodies, or independent industry forums for sustained contribution and role-model leadership.
Lifetime Achievement in Cybersecurity
Honours long-standing contributions to the field.
- Minimum of twenty (20) years of distinguished, continuous contribution to the cybersecurity profession across one or more of policy, practice, research, or industry.
- Sustained influence on the evolution of cybersecurity policy, professional practice, academic discipline, or industry frameworks at national or international level.
- Demonstrable mentorship of next-generation leaders and contribution to institution-building (universities, CERTs, professional associations, regulatory bodies).
- National and international recognition for the body of work, including honours, fellowships, advisory appointments, or formal commendations.
Academia Awards
Cybersecurity Research Institution of the Year
Awarded to a tertiary institution for contributions to cybersecurity research and innovation.
- Volume, quality, and impact of peer-reviewed publications and citations in recognised cybersecurity venues over the last 24 months (e.g., IEEE S&P, USENIX Security, ACM CCS, NDSS).
- External research funding secured from national agencies, international donors, or industry partners, with evidence of grant management and delivery.
- Active industry-academic collaboration and technology transfer, including joint laboratories, spin-out companies, licensed IP, or co-developed standards.
- Production of qualified cybersecurity graduates and faculty expertise, including programme accreditations, employer destinations, and academic-industry advisory boards.
International Category
Global Cyber Diplomacy & International Cooperation Award
Recognises a government, agency, or individual that has significantly advanced cross-border cybersecurity cooperation, multilateral norm-setting, or international cyber-policy coordination.
- Demonstrated leadership in negotiating, championing, or implementing cross-border cyber agreements, treaties, or coordination platforms.
- Substantive contribution to international norms-setting bodies, capacity building forums, or confidence-building measures with documented outputs and adopted instruments.
- Successful joint operations, coordinated takedowns, or formalised threat intelligence-sharing arrangements across two or more jurisdictions, with measurable disruption of malicious activity.
- Sustained, multi-year impact on multilateral cybersecurity capacity, including engagement with developing nations and support for inclusive participation in global cyber governance.