Justina Nelson, Chief Executive Officer, MIIF, speaking at the event
Justina Nelson, Chief Executive Officer, MIIF, speaking at the event
Featured

MIIF calls for stronger cyber resilience to secure mining operations

The Minerals Income Investment Fund (MIIF) has called for stronger cyber resilience across Ghana’s mining sector, stressing that the protection of Operational Technology (OT) and Industrial Control Systems (ICS) is critical to ensuring safe, secure and sustainable mining operations.

The Chief Executive Officer (CEO) of MIIF, Justina Nelson, who made the call at a workshop organised by the Cyber Security Authority (CSA) in Accra, said Ghana’s mining industry was rapidly adopting automation, artificial intelligence (AI) and digital technologies to improve safety, efficiency and productivity.

However, Mrs Nelson cautioned that increased connectivity also created new vulnerabilities that could expose mining operations to cyber threats.

The workshop, part of activities marking this year’s National Cyber Security Awareness Month, was held on the theme “Critical Information Infrastructure Resilience Beyond IT: Securing Ghana’s Operational Technology Ecosystem.”

It brought together stakeholders to examine emerging cybersecurity risks associated with increasingly connected and automated critical infrastructure.

Mrs Nelson emphasised that cyberattacks on mining control systems should not be viewed solely as an IT concern, as disruptions to OT and ICS could have direct implications for human safety, production and national revenue.


“Digital resilience is fundamental to the integrity of Ghana’s mineral revenue,” she pointed out.

The MIIF CEO explained that the integrity of data generated across the mining value chain was critical to mining companies, the state and ultimately citizens who benefitted from Ghana’s mineral resources.

Mrs Nelson said cyber resilience must go beyond preventing attacks to ensuring that organisations were prepared to detect, respond and recover from incidents, while maintaining business continuity.

She, therefore, called for regular cybersecurity exercises, simulations, incident-response drills and continuous improvement, as well as stronger collaboration among mining companies, the CSA, regulators, technology providers, law enforcement agencies, financial institutions and other critical infrastructure operators.

The Director-General of the Cyber Security Authority, Divine Selase Agbeti, who delivered the welcome remarks, encouraged participants to translate the lessons from the workshop into practical improvements within their respective organisations.

Justina Nelson (left), Chief Executive Officer, MIIF, in a chat with Samuel Nartey George, Minister of Communication, Digital Technology and Innovations, during the event

Justina Nelson (left), Chief Executive Officer, MIIF, in a chat with Samuel Nartey George, Minister of Communication, Digital Technology and Innovations, during the event

He emphasised the serious consequences of compromising Operational Technology and ICS, stating: “A compromise of Operational Technology and Industrial Control Systems have dire consequences.

This makes the security of Operational Technology a critical component of cyber security architecture.”

The Minister of Communication, Digital Technology and Innovations, Samuel Nartey George, highlighted the interconnected nature of Ghana’s digital ecosystem, stating that the security of the country’s digital systems was inseparable from the health, financial and other sectors of the economy.

He pointed out that disruption in one sector could have cascading effects on others, and stressed that resilience, rather than deterrence, must remain the watchword of Ghana’s cybersecurity strategy.

“We will measure our resilience and success not by the number of attacks we prevent but by how the systems run and how we are able to recover from attacks and ensure business continuity,” the minister said.


He further stated that many cyberattacks originated beyond Ghana’s borders and, therefore, encouraged cybersecurity professionals and organisations to ensure compliance with the country’s cybersecurity directives.

“The question is not when an attack will come but whether we are ready when the attacks come,” Mr George stated.


Our newsletter gives you access to a curated selection of the most important stories daily. Don't miss out. Subscribe Now.