Everything about IS in Kazakhstan. What ET is, who checks you, and how the regulatory system in Kazakhstan works. How to choose a supplier and accept work without being deceived.
15 articles. From basic to advanced. Read what's relevant to you right now.
Understand what KZ regulators require and which risks to close first
Ready-made checklists for audits, pentests, and standards compliance
Learn your responsibility and basic security rules
15
articles · ~60 min read
🇰🇿
KZ standards
Law on Informatization, ST RK standards
ISO
international standards
27001, 15408, NIST, GDPR
You don't need to read everything in order. Pick the block that's relevant to your role and tasks.
What information security is, which documents regulate it, and who is required to comply in Kazakhstan.
CVOIIC, IS department, OTSIB — what they are, why they exist, and how they work.
Compliance testing, IS audits, and instrumental inspection of components.
Trusted software registry, ISO 15408, independent pentest, object classification.
Start here — the foundational article that sets context for the whole methodology.
Important note: the authors do not claim absolute accuracy with respect to Kazakhstan's legal norms (from the standpoint of current regulations). The goal is to improve the protection of your systems and raise awareness.