Free resources for South African businesses

Whether you are evaluating managed IT, planning a cloud migration, or preparing for compliance, having the right information at hand matters. Our resources include a glossary of common IT terms, free calculators and assessment tools, and links to authoritative frameworks and regulators so you can validate your understanding and stay aligned with best practice.

We also link to official sources – such as the Information Regulator for POPIA, ISO 27001 for information security, and the NIST Cybersecurity Framework – so you can go straight to the source when you need to.

External resources & official frameworks

Links to regulators, standards bodies, and authoritative frameworks. These sources provide the definitive guidance for compliance, security, and governance.

Information Regulator (POPIA)

Official body for POPIA compliance, Information Officer registration, and data protection guidance in South Africa.

Visit Information Regulator (POPIA) → POPIA, data protection, compliance

King IV Report

South African corporate governance code. Covers IT governance, risk, and transparency.

Visit King IV Report → Corporate governance, IT governance

Cybercrimes Act (South Africa)

South African legislation on cybercrime offences, reporting obligations, and investigation powers.

Visit Cybercrimes Act (South Africa) → Cybercrime, legislation

FSCA

Financial Sector Conduct Authority. Regulates financial services providers in South Africa.

Visit FSCA → Financial services, regulation

ICASA

Independent Communications Authority of South Africa. Regulates telecoms, spectrum, and electronic communications.

Visit ICASA → Telecoms, spectrum, licensing

SABS

South African Bureau of Standards. National standards body for certification and conformity assessment.

Visit SABS → Standards, certification

ISO/IEC 27001

International standard for information security management systems (ISMS).

Visit ISO/IEC 27001 → Information security, ISMS

ISO/IEC 27002

Guidelines for security controls supporting ISO 27001. Practical implementation guidance.

Visit ISO/IEC 27002 → Security controls, implementation

NIST Cybersecurity Framework

US framework for managing and reducing cybersecurity risk. Widely adopted globally.

Visit NIST Cybersecurity Framework → Cybersecurity, risk management

CIS Controls

Prioritised set of security controls from the Center for Internet Security. Practical, actionable safeguards.

Visit CIS Controls → Security controls, best practice

MITRE ATT&CK

Knowledge base of adversary tactics and techniques. Used for threat modelling and detection.

Visit MITRE ATT&CK → Threat intelligence, detection

OWASP

Open Web Application Security Project. OWASP Top 10, security guidance, and tools for developers.

Visit OWASP → Web security, application security

PCI Security Standards Council

PCI DSS and payment security standards. Essential for organisations handling cardholder data.

Visit PCI Security Standards Council → Payment security, PCI DSS

Cloud Security Alliance

Cloud security guidance, certifications, and best practices for cloud adoption.

Visit Cloud Security Alliance → Cloud security

CISA

US Cybersecurity and Infrastructure Security Agency. Advisories, guidance, and free resources.

Visit CISA → Advisories, guidance

COBIT

IT governance framework from ISACA. Aligns IT with business objectives.

Visit COBIT → IT governance

ITIL

IT Service Management framework. Best practices for delivering and supporting IT services.

Visit ITIL → IT service management

CWE

Common Weakness Enumeration. Taxonomy of software weaknesses and vulnerabilities.

Visit CWE → Software security

CVE

Common Vulnerabilities and Exposures. Catalogue of known security vulnerabilities.

Visit CVE → Vulnerabilities, patching

Authorities & contact information

Key South African regulators and authorities for IT, compliance, and cybercrime. Contact them directly for official guidance, complaints, or reporting. Verify details on their websites before use.

Information Regulator

POPIA, PAIA, data protection

Phone
0800 017 160 (toll free)(010 023 5200)
Email
enquiries@inforegulator.org.za
Complaints
POPIAComplaints@inforegulator.org.za
Address
54 Maxwell Drive, Woodmead North, Johannesburg, 2191
Website
Visit →

FSCA

Financial services regulation

Phone
0800 203 722
Address
Riverwalk Office Park, Block B, 41 Matroosberg Road, Ashlea Gardens, Pretoria
Website
Visit →

ICASA

Telecoms, spectrum, licensing

Phone
011 321 8200
Address
350 Witch-Hazel Avenue, Eco Park, Centurion
Website
Visit →

SABS

Standards, certification

Phone
012 428 7911
Address
1 Dr Lategan Road, Groenkloof, Pretoria
Website
Visit →

National Consumer Commission

Consumer protection

Phone
012 428 7000(012 065 1940 (Contact Centre))
Address
Building C, SABS Campus, 1 Dr Lategan Road, Groenkloof, Pretoria
Website
Visit →

IoDSA

King IV, corporate governance

Phone
011 035 3000
Address
Illovo, Johannesburg
Website
Visit →

ISACA South Africa

IT audit, CISA, CISM

Website
Visit →

Need help with your IT strategy?

Our team can help you navigate compliance, security, and technology decisions. From POPIA readiness to managed IT and cloud strategy, we work with South African businesses to deliver practical, outcome-focused solutions.

Get in touch