North Africa  ·  IEC 62443 · NIS2 · NTRA (Egypt) · ANRT (Morocco)

World-Class OT/ICS Cybersecurity Exercisesfor North African Critical Infrastructure

47 ready-to-run tabletop exercises aligned to global standards — IEC 62443, NIST SP 800-82, NIS2, DORA — and layered with North African regulatory context (NTRA Egypt, ANRT Morocco, HAICA Tunisia, AU frameworks). Available in English, French, and Arabic. Purpose-built for Energy, Transport, Finance, and Telecoms sectors.

✓ IEC 62443 ✓ NIST SP 800-82 ✓ NIS2 & DORA ✓ CISA CTEP ✓ NTRA (Egypt) ✓ ANRT (Morocco) ✓ AU Cybersecurity Framework
47
Ready-to-Run Exercises
4
Languages (EN/FR/PT/ES)
8
Global Frameworks Covered
16
Critical Infrastructure Sectors
Global Standards — Included in Every Exercise

The International Frameworks North African Organizations Already Answer To

North Africa is strategically positioned between Europe, the Middle East, and Sub-Saharan Africa — making it subject to global compliance standards from multiple directions simultaneously. Every exercise maps to them all.

IEC 62443
Industrial Cybersecurity Standard

The global benchmark for IACS security — essential for North African oil, gas, and power sector operators working with European and US parent companies. Scenarios map to all security levels.

NIST SP 800-82
ICS Security Guide (Rev. 3)

Widely adopted by North African energy sector multinationals. Threat scenarios reference Rev. 3 controls across OT and ICS environments in all sectors.

NIS2
EU Network & Information Security Directive

European multinationals with North African operations apply NIS2 globally. Given proximity and trade ties, NIS2 is particularly relevant across Morocco, Tunisia, and Egypt operations.

DORA
Digital Operational Resilience Act

North African financial institutions with EU exposure apply DORA globally. Scenarios address ICT risk management and resilience testing requirements for financial sector operators.

CISA CTEP
Cyber Tabletop Exercise Program

All 47 exercises align to CISA CTEP objectives with CPG 2.0 framework mapping and structured After Action Report export for regulatory defensibility.

NERC CIP
Critical Infrastructure Protection

Energy sector multinationals with North African power generation, LNG, and pipeline assets apply NERC CIP standards globally — exercises address all relevant standards.

NIST CSF 2.0
Cybersecurity Framework

Exercises cover all CSF 2.0 functions: Govern, Identify, Protect, Detect, Respond, Recover — universally applicable across North African organizations and sectors.

ISO 27001
Information Security Management

Increasingly required by North African banking regulators and European business partners. Scenarios support Annex A controls for risk assessment and incident response.

North African Regulatory Context

Layered with Local Regulatory Alignment

Global standards form the foundation — North African regulations add the regional layer. With proximity to the EU, North Africa uniquely bridges European and AU regulatory frameworks, and exercises reflect both dimensions.

NTRA (Egypt)
National Telecom Regulatory Authority — Egypt Cybersecurity Directives

Egypt's NTRA and the National Cybersecurity Authority (NCSA) govern cybersecurity obligations for critical infrastructure operators. Exercises cover NTRA reporting requirements and sector-specific NCSA directives for telecoms, energy, and finance.

ANRT (Morocco)
Agence Nationale de Réglementation des Télécommunications — Morocco

Morocco's ANRT and the DGSSI (national cybersecurity authority) set cybersecurity standards aligned with EU practice. Morocco's EU association agreement creates NIS2-adjacent obligations — exercises cover both ANRT and EU-facing requirements.

HAICA / ANSSi
Tunisia — Audiovisual & National Cybersecurity Authority

Tunisia's ANSSi governs critical infrastructure cybersecurity with EU-aligned frameworks given the country's EU association. Exercises reference Tunisian reporting obligations for telecom, energy, and financial sector operators.

AU Conv. / PDPA
African Union Cybersecurity Convention & National Data Protection Laws

The AU Malabo Convention on Cybersecurity provides the continental baseline. All North African operators benefit from exercises aligned to AU frameworks, national data protection acts, and sector-specific cybersecurity requirements.

For Multinationals with North African Operations

Global HQ. North African Sites. One Platform.

The Challenge
Your Cairo, Casablanca, or Tunis facility bridges European NIS2 obligations AND North African national cybersecurity requirements simultaneously

North Africa's unique geopolitical position creates dual regulatory exposure: European business partners and EU-associated trade agreements impose NIS2-adjacent standards, while national authorities (NTRA, ANRT, ANSSi) impose local requirements.

  • HQ mandates IEC 62443, NIS2, and ISO 27001 compliance globally
  • NTRA / NCSA impose Egyptian national cybersecurity obligations
  • ANRT / DGSSI apply EU-aligned but distinct Moroccan standards
  • AU Malabo Convention provides the African multilateral baseline
The Skyhigh Solution
One exercise library. Global + EU standards built in. North African regulatory context layered on top.

Every scenario maps to IEC 62443, NIST SP 800-82, NIS2, DORA, and ISO 27001. North African teams run the same quality exercises as their European counterparts — with NTRA, ANRT, ANSSi, and AU framework alignment included.

  • Defensible to European HQ and North African national regulators simultaneously
  • English, French (critical for Morocco, Tunisia, Algeria) available
  • Energy, telecoms, and finance scenarios address Suez Canal and regional infrastructure
  • After Action Reports referenced to EU and national frameworks both
Key North African Sectors

Built for Your Industry's OT Environment

Scenarios tailored for the critical infrastructure sectors, threat actors, and regulatory obligations unique to the North African operational environment.

Oil & Gas (Egypt, Algeria, Libya)
Electric Power & Renewable Energy
Telecoms & Internet Infrastructure
Banking & Financial Services
Ports & Maritime (Suez Canal Zone)
Phosphate & Mining (Morocco)
Water Treatment & Desalination
Transport & Rail Infrastructure
📁
47 Ready-to-Run Scenarios

From Suez Canal SCADA disruption to North African LNG pipeline attacks — scenarios reflecting the actual threat landscape facing North African OT operators and regional energy infrastructure.

🌐
English & French Support

Full exercise support in English and French — essential for Francophone North Africa (Morocco, Tunisia, Algeria) and bilingual Anglophone/Francophone multinational teams operating across the region.

📄
EU + African Dual-Compliance Reports

Exported AARs reference both global standards (IEC 62443, NIS2, ISO 27001) and North African national frameworks (NTRA, ANRT, AU Convention) — defensible to every regulator.

Scenario Examples — North Africa Relevant

Exercises Built for the North African Threat Environment

From Suez Canal maritime SCADA attacks to North African LNG infrastructure compromise — scenarios reflecting actual threats and dual regulatory obligations.

OT / ICS
Suez Canal Maritime Infrastructure Attack

A threat actor targets port management and vessel traffic systems at the Suez Canal zone. IEC 62443 controls, NTRA reporting, and international maritime incident coordination are all tested.

ICS/SCADA IEC 62443 NTRA / NCSA
⏳ 3–4 Hours 👥 8–18 Players Advanced
Energy Sector
North African LNG Pipeline SCADA Compromise

An adversary disrupts pipeline control systems supplying gas to European markets via Algeria or Egypt. NERC CIP, IEC 62443, EU energy security obligations, and national reporting requirements converge.

Pipeline Attack NERC CIP NIS2
⏳ 3–4 Hours 👥 10–20 Players Advanced
Executive
Board Crisis: EU NIS2 + ANRT Dual Notification

A major OT breach at a Casablanca HQ triggers both EU NIS2 notification (for European clients) and ANRT/DGSSI Moroccan national reporting — simultaneously under board-level scrutiny and media pressure.

Executive ANRT / DGSSI NIS2
⏳ 2–3 Hours 👥 5–10 Players Intermediate
Enterprise Inquiry

Request a North Africa Demo

Tell us about your organization. We'll map the platform to your NIS2, NTRA, ANRT, and global compliance requirements for your specific sector and country.

Ready to Elevate North African OT Cyber Resilience?

Join critical infrastructure teams across North Africa running professional exercises aligned to global, EU, and national regulatory frameworks simultaneously.

Start Free Trial — 3 Exercises View Full Platform