Ghana Cyber Authority Fines Business Register GH¢240,000 for Hiring Unlicensed Security Firm

Ghana's Cyber Security Authority fined the Office of the Registrar of Companies GH¢240,000 for using an unlicensed cybersecurity company.
CSA Logo

Ghana’s Cyber Security Authority fined the Office of the Registrar of Companies GH¢240,000 for using an unlicensed tech security firm.

The government agency in charge of internet safety in Ghana, known as the Cyber Security Authority, announced a heavy sanction on Wednesday, August 12, 2026. The regulator fined the Office of the Registrar of Companies a total sum of 240,000 Ghana Cedis for violating national computer safety laws.

The government business office was penalized after it ignored official instructions and hired a tech company called Purpleline Solutions Limited to guard its computer networks without making sure the firm possessed an approved government license.

To make sure both sides were held responsible, the regulator also slammed Purpleline Solutions with a separate fine of 120,000 Ghana Cedis for offering computer defense services illegally before receiving official permission.

The main reason behind this strict punishment is that the Office of the Registrar of Companies holds vital records for every registered business operating across Ghana. Because this government agency holds so much sensitive public data, the nation’s computer safety law classifies its technology systems as critical national infrastructure that must be protected with the highest level of caution.

Allowing an unverified or unqualified security firm to handle such sensitive computer networks creates dangerous entry points for internet hackers who could steal corporate records, lock up official systems, or alter business registration files.

The trouble began back on June 15, 2026, when the Cyber Security Authority gave clear instructions ordering the business registry office to hire only top-tier, fully licensed computer protection experts. The regulator also asked the government office to show official paperwork proving how its new computer security center would work.

However, instead of following those instructions, the business registry office hired Purpleline Solutions Limited, even though the security firm had not yet completed its official government registration. Although Purpleline Solutions later submitted an application for a license on July 15, 2026, the regulator pointed out that simply applying for a permission slip does not give any tech company the legal right to start working on critical government computers.

Explaining why both organizations were sanctioned for breaking national technology laws, the Cyber Security Authority stated in an official announcement, “The Authority determined that the ORC failed to comply with two separate directives issued by the CSA”.

See Also: Ghana Partners with UNICEF to Strengthen Digital Safeguards for Children Online

The agency made it clear that obeying computer protection rules is not optional for any public or private group, adding, “Cybersecurity licensing is a legal requirement, not an administrative formality. Institutions must comply, and service providers must be licensed before they operate”.

To fix the situation, the regulator gave the Office of the Registrar of Companies one month to pay the fine and replace its security arrangements with a fully licensed provider. The authority warned all government offices, private businesses, and bank directors across the country to double-check the license status of any tech firm before signing contracts or letting external workers touch their computer systems.

For everyday citizens, market vendors, and small business owners, the lesson behind this news is straightforward: keeping computer systems safe requires following strict rules. Just as a landlord would not hire an uncertified security guard to watch over a bank vault, government offices cannot hire unlicensed tech firms to protect important public records.

By enforcing these fines, the government is sending a clear message that every organization must keep its digital doors properly locked to protect citizen data.

About the Author

Jennifer Sakmufuwo Baba

Jennifer Sakmufuwo Baba is a tech analyst, senior staff, and writer covering artificial intelligence, cybersecurity , and emerging technologies at TechRegard. Based in Nigeria, she's passionate about translating complex tech developments into compelling, accessible stories for diverse audiences. Her work focuses on how technology shapes innovation across Africa and globally.