advertisement
Nigeria To Require Independent Software Testing For Government IT Projects
Nigeria’s National Information Technology Development Agency (NITDA) has introduced a National Software Quality Assurance Framework that will require all federal government software projects to undergo independent third-party testing before deployment.
The framework, signed by Kashifu Inuwa Abdullahi, NITDA Director-General under the NITDA Act 2007, establishes national standards for software development, testing and deployment across government institutions, regulated industries and the wider digital ecosystem. According to the agency, the initiative is intended to reduce software failures, strengthen cybersecurity and improve trust in public digital services.
Beginning in the second quarter of 2027, compliance with the framework will become a mandatory requirement for obtaining IT Project Clearance. This means federal government software projects will have to be tested and certified by licensed independent organisations before they are approved for deployment.
advertisement
Three Guidelines Under One Framework
The framework combines three regulatory instruments designed to improve software quality throughout the development lifecycle.
The National Software Development Guideline introduces structured software development practices, secure coding based on the Open Worldwide Application Security Project (OWASP), standardised documentation and compliance with WCAG 2.1 AA accessibility standards for citizen-facing digital services.
advertisement
The National Software Testing Guideline establishes mandatory testing across functionality, cybersecurity, system performance and interoperability before software can be deployed.
Meanwhile, the Software Testing Organisations Licensing (STOL) Guideline creates a licensing framework for independent Licensed Software Testing Organisations (LSTOs), which will be responsible for conducting software assessments and issuing certifications.
Risk-Based Approach
advertisement
Under the framework, software will be classified according to the level of operational risk it presents.
Class A systems, including core banking platforms, identity management systems and power grid control infrastructure, will be subject to the most rigorous security assessments, penetration testing and independent audits. Class B systems will cover medium-risk enterprise platforms, while Class C will apply to lower-risk internal applications.
NITDA said the tiered approach is intended to focus regulatory oversight on systems where software failures would have the greatest economic, operational or national security impact.
Building Confidence In Nigerian Software
Announcing the framework, Abdullahi said software quality is fundamental to building trust in digital services.
“Quality is the foundation of digital trust,” he said. “This framework ensures that every software solution serving Nigerians, whether built for government or the private sector, meets clear national standards for security, reliability and interoperability. This is how we modernise government technology and position Nigerian software to compete on the global stage.”
According to NITDA, the framework is expected to improve the reliability of public digital services, reduce cybersecurity vulnerabilities, encourage the growth of an indigenous software testing industry and enhance the competitiveness of Nigerian-developed software in international markets.
Accreditation Process To Begin
The agency said implementation will begin ahead of the second-quarter 2027 deadline through nationwide stakeholder engagement and capacity-building programmes.
NITDA also plans to issue an Expression of Interest inviting organisations to apply for accreditation as Licensed Software Testing Organisations. These organisations will be authorised to independently assess software compliance under the new framework.
The announcement forms part of a broader programme of digital governance reforms being implemented in Nigeria, with the software quality framework adding a formal independent assurance layer to government technology procurement and deployment.