In a major move to strengthen software reliability, enhance cybersecurity, and improve public confidence in Nigeria’s digital governance ecosystem, the National Information Technology Development Agency (NITDA) has launched the National Software Quality Assurance (SQA) Framework.
The framework, approved by the Director-General and Chief Executive Officer of NITDA, Kashifu Inuwa Abdullahi, CCIE, under the provisions of the NITDA Act 2007, establishes a unified regulatory standard for the design, development, testing and deployment of software across federal government institutions, regulated sectors and the broader digital economy.
The SQA Framework consolidates three key regulatory instruments into a single national quality assurance regime. These include the National Software Development Guideline, which prescribes structured software development lifecycles, secure coding practices based on Open Worldwide Application Security Project (OWASP) standards, standardised system documentation and compliance with Web Content Accessibility Guidelines (WCAG) 2.1 AA for citizen-facing digital services.
It also incorporates the National Software Testing Guideline, which introduces comprehensive pre-deployment testing requirements covering software functionality, cybersecurity resilience, performance under peak operational loads and interoperability with existing systems.
The third component, the Software Testing Organisations Licensing (STOL) Guideline, establishes a regulatory framework for licensing and accrediting independent Licensed Software Testing Organisations (LSTOs) responsible for evaluating and certifying software before deployment.
Under the new framework, all government software projects will be required to undergo independent third-party testing and obtain certification before deployment. Compliance with the framework will also become a mandatory requirement for securing NITDA’s IT Project Clearance.
To ensure regulatory oversight reflects varying levels of operational risk, the framework introduces a three-tier software classification model. Software solutions will be categorised as Class A for high-risk critical infrastructure, Class B for medium-risk enterprise platforms and Class C for low-risk internal applications.
Critical Class A systems—including core banking platforms, digital identity management systems and power grid control applications—will be subject to the highest levels of security assessment, including advanced penetration testing and specialised audits conducted by top-tier accredited testing organisations.
NITDA said the framework is expected to deliver significant benefits across the country’s digital ecosystem.
According to the agency, the framework will improve the quality and reliability of digital public services, minimise software failures and cyber vulnerabilities, and safeguard public investments in information technology infrastructure.
It is also expected to create a regulated software testing industry that will encourage indigenous innovation, support internationally recognised professional certifications and generate high-value employment opportunities for Nigerian software engineers and cybersecurity professionals.
In addition, the agency believes the adoption of internationally aligned quality assurance standards will enhance the global competitiveness of Nigerian-developed software, improve investor confidence and position local technology firms to access new export opportunities.
Speaking on the initiative, Abdullahi said quality assurance remains fundamental to building confidence in digital services.
“Quality is the foundation of digital trust. With this Framework, every software solution serving Nigerians—whether developed for government or the private sector—will meet clear national standards for security, reliability and interoperability,” he said.
He added that the initiative would not only modernise government technology delivery but also position Nigerian software products to compete more effectively in the global digital marketplace.
The National Software Quality Assurance Framework is scheduled to become fully operational in the second quarter of 2027.
Ahead of its implementation, NITDA said it would commence nationwide stakeholder engagement, capacity-building programmes and the formal accreditation of software testing organisations. The agency also disclosed that an Expression of Interest (EOI) would soon be issued to qualified firms seeking licences as Software Testing Organisations, providing industry stakeholders with sufficient time to prepare for compliance with the new national quality assurance regime.





















