progress

 Information Security Policy

​​​

Information systems for Zakat, Tax and Customs Authority (ZATCA) are an essential pillar of daily operations and provide business services. All information that is shared, created or used in ZATCA systems is granted the highest level of protection to coincide with its value, this includes the below:

  • Protection of the confidentiality and integrity of information assets for payers of Zakat, taxes, customs, suppliers and service providers.
  • Ensuring the implementation of information security controls at a high standard with the ability to constantly repeat it at the appropriate time, cost effective for the benefit of all stakeholders.
  • The Zakat, Tax and Customs Authority regularly performs audits and implements security updates to detect and resolve potential vulnerabilities.
  • Ensure the continuity of business, reduce the effects of disrupting job functions by preventing and lowering the effect of security incidents.
  • Ensuring compliance with the local and legislative regulations from the Ministry of Finance and the National Cyber Security Authority (NCA).
  • To view the controls and guidelines issued by NCA, For more details please visit the link The National Cybersecurity Authority Controls and Guidelines
  • Support the national cybersecurity strategy that seek to a resilient, secure, and trusted Saudi cyberspace that enables growth and prosperity. For more details please visit the link National Cybersecurity Strategy​​
  • Compliance with information security international standard ISO/IEC 27001.

ZATCA would like to emphasis the importance of committing to the below guidelines of using ZATCA's services:

  • The password should be kept private. Avoid writing the password down or disclosing it to others, whether on the phone or e -mail, or while surfing through unknown sites.
  • Do not use password that is easy to discover such as your name, birth date or phone number.
  • It is highly recommended to change your password frequently to ensure that it cannot be used or guessed by third parties.
  • Do not access ZATCA's website through links you receive in e-mails or websites.
  • Before entering the ZATCA's website, make sure that there is HTTPS and a lock icon.
  • Do not stay away from the computer while using the ZATCA's website, as others may be able to access your account during that period. Make sure you log-out when you finish.

To protect your personal device, ensure the following:

  • Make sure to use an original copy of the operating system on your device.
  • Install operating system updates regularly, especially security updates.
  • Keep an up-to-date version of antivirus software to protect your device and information.
  • Activate the firewall software provided within the device's operating system.
  • Do not install unreliable or unnecessary software.
  • Use your own device when accessing ZATCA's online services. Do not use shared or public devices such as those used in internet cafes.



Comments and suggestions
Comments and suggestions
For any inquiries or notes about authority services or current page, please fill in the required information.
Add a comment
Was this page useful?
0 visitors said yes from 0 feedbacks

Last Update: 19 Dec 2024 02:15 PM Saudi Arabia Time