Baku: Fines are being introduced for violations of the requirements of normative legal acts in the field of ensuring cybersecurity, APA reports. This is reflected in the proposed new Article 371-2 of the Code of Administrative Offenses, which was discussed at a joint meeting of the Milli Majlis Committees on Legal Policy and State Building and on Labor and Social Policy.
According to Azeri-Press News Agency, the draft outlines penalties for computer incident response centers, security operations centers, and information infrastructure entities, including internet resource owners, internet providers, and hosting providers, failing to meet cybersecurity mandates. The violations include non-compliance with instructions from the designated authority on cybersecurity measures, failure to report cyber threats or incidents promptly, and not conducting real-time monitoring or initial response to cyberattacks.
Entities will face fines ranging from 500 to 1,000 manats for officials and from 1,000 to 2,000 manats for legal entities if they fail to uphold cybersecurity responsibilities. Operating without registration in the "Registry of Computer Incident Response Centers and Security Operations Centers" will incur fines between 1,000 to 1,500 manats for officials and 1,500 to 2,500 manats for legal entities.
These measures will not apply to critical information infrastructure, state bodies, financial market entities, and certain protected infrastructures. The Central Bank of the Republic of Azerbaijan and designated institutions by the executive authority are also exempt from these provisions.