Singapore to hold CII boards accountable as AI reshapes OT threat landscape
Market
Board-level cyber resilience for critical infrastructure
Trend
Singapore’s updated code will make CII boards directly accountable for documented risk tolerance, mitigation, transfer, and recovery, while ransomware groups reaching OT grew 49% year over year.
Tech Highlight
The operating model combines annual board review, Cyber Trust Mark level five, interconnected-system oversight, segmented threat detection, adversarial simulation, and hyperscaler-specific cloud controls.
6-Month Outlook
Boards will need evidence that OT and cloud controls work across suppliers, not another maturity score; watch exercise results, recovery metrics, and accountable risk owners become procurement requirements.