Accreditation Program
Introduction
to the Program
The Accreditation Program was launched in 2019 under the regulation of the Ministry of Transport, Communications and Information Technology. It is concerned with the accreditation of Information Technology service providers within the scopes specified in the Program, in accordance with approved technical and administrative requirements and standards. The Program covers Information Technology service providers seeking to provide their services to units of the State’s Administrative Apparatus, as well as providers of external auditing services in the field of personal data protection, in accordance with the provisions of the Personal Data Protection Law issued by Royal Decree No. 6/2022 and its Executive Regulation issued by Ministerial Decision No. 34/2024.
The Program aims to govern the delivery of the services covered by it and enhance their quality and efficiency by verifying the competence of service providers and their compliance with the approved standards and requirements. This enhances the reliability of these services and contributes to creating a secure and trusted digital environment that supports the digital transformation journey in the Sultanate of Oman. The Program also contributes to the development of the Information Technology sector and strengthens its role in the digital economy and its contribution to the gross domestic product by enhancing the readiness and competitiveness of local companies and encouraging them to adopt best practices. It also supports the development of national competencies and the creation of quality employment opportunities by encouraging service providers to attract, qualify and empower Omani professionals to compete in the digital labour market.
Services Included in the Accreditation Program
External Auditor in the Field of Personal Data Protection
Accreditation in accordance with the Personal Data Protection Law (6/2022) and its Executive Regulation (34/2024).
Read More Register of Approved Providers
Notice to Security Service Providers
We would like to inform all concerned service providers that the responsibility for the accreditation of Security Service Providers, including Security Assessment Services and Managed Security Services, has been transferred to the Cyber Defence Centre (CDC). Accordingly, concerned service providers are kindly requested to contact the Centre at ACCREDITATION@CDC.GOV.OM regarding the relevant accreditation services and procedures.
Ministerial Circular on the Transfer of the Authorities and Functions of the Security Services Accreditation Program to the Electronic Defense Center.
Notice to Cloud Hosting Service Providers
We would like to inform all concerned service providers that the responsibility for regulating Cloud Hosting Services has been transferred to the Telecommunications Regulatory Authority (TRA). Accordingly, concerned service providers are kindly requested to contact the (TRA) regarding the relevant services and procedures for obtaining the required permit.
Ministerial Circular on Updating the Cloud-First Policy
Events & Activities Overview
Marketing Workshop for the Outputs of the “Makkin” Program to Support Employment and Partnership Building in the ICT Sector – April 2025
A marketing workshop for the outputs of the “Makkin” program was held in collaboration with the Accreditation Program. The workshop highlighted the key outcomes of the Makkin program and the opportunities available to attract Omani talent from program graduates into the areas of work of accredited ICT service providers.
Participation in the Implementation of the “Mu’ahhal” Workshops Initiative to Raise Awareness of Accreditation Programs – May to November 2025
As part of the joint cooperation between the Ministry of Transport, Communications and Information Technology, represented by the Accreditation Program, and the Small and Medium Enterprises Development Authority, the Accreditation Program team is participating in a series of workshops under the “Mu’ahhal” initiative, which covered all governorates of the Sultanate of Oman.
These workshops aim to raise awareness among small and medium enterprises about the importance of obtaining local and international accreditations and standards, due to their significant role in improving the quality of products and services, enhancing institutional efficiency, and opening broader opportunities for export and entry into local and global markets.
Workshop on External Auditor Standards in the Field of Personal Data Protection – 29 September 2025
The Accreditation Program team organized an introductory workshop on the standards for external auditors in the field of personal data protection. The workshop targeted ICT service providers and aimed to introduce them to the approved standards, present the requirements for obtaining accreditation, and clarify the application procedures and evaluation mechanism.
Implementation and Launch of the External Auditor Accreditation Project in the Field of Personal Data Protection – February 2026
The Accreditation Program team played a leading and executive role in managing and implementing the External Auditor Accreditation Project in the field of personal data protection, which is considered one of the program’s key initiatives.
The project covered all its phases, starting from reviewing and developing standards, preparing required documentation and procedures, and culminating in the execution of the first audit process and the accreditation of the first external auditor, ensuring full readiness of the service and its structured launch according to a clear and approved methodology.
FAQ
The Accreditation Program is a regulatory framework overseen by the Ministry of Transport, Communications and Information Technology to register and accredit service providers in accordance with approved technical and administrative standards. It aims to ensure the quality and efficiency of services provided to units of the State’s Administrative Apparatus and the private sector.
The Accreditation Program applies to service providers seeking accreditation from the Ministry for the services included in the program, in accordance with the nature of each service and its regulatory requirements.
This includes—without limitation—information technology service providers wishing to offer their services to units of the State’s Administrative Apparatus, as well as private institutions subject to the provisions of the Personal Data Protection Law No. (6/2022) and its Executive Regulation No. (34/2024), particularly in relation to the External Auditor Accreditation Service.
The 30% Omanization requirement applies only to the technical team.
The validity period of the accreditation is linked to the validity of the External Audit Activity in the Field of Personal Data Protection (Activity No. 620209), added to the Commercial Registration through the Oman Business Platform. The applicant may select an activity validity period of one, two, or three years, provided that the accreditation validity period does not exceed three years. The activity must remain valid throughout the entire accreditation period.