Skip to Content

Cybersecurity Legislation in Mexico

Digital risks, organizational safeguards, and proposed laws
January 6, 2022 by
EthicsGlobal Team

Cybersecurity legislation in Mexico is a relevant subject as more activity moves online.

Digital technologies develop quickly, while cyberthreats to individuals and organizations continue to evolve. This makes cybersecurity a serious issue for organizations and policymakers.

The original article cites historical global estimates of cyberattack losses. Those figures are not verified or updated here and should not be used as current statistics.

Technology alone is not enough

Better technical tools help, but laws, standards, policies, and organizational practices also play important roles.

The original article cites the Inter-American Development Bank's view that cybersecurity policy helps protect digital rights.

Those rights include privacy and property, both of which can be affected by cyber incidents. 

Why organizations are vulnerable

Human mistakes, social engineering, malicious emails, and impersonation can create exposure. Digital literacy and a security-aware culture can help employees, customers, and other users recognize risks.

Cybersecurity legislation

Latin America and the Caribbean

Since the mid-2010s, the Organization of American States and the Inter-American Development Bank have studied cybersecurity capacity in the region.

The article refers to a national cybersecurity capacity maturity model with several dimensions: 

  1. Policy and strategy
  2. Culture and society
  3. Education, training, and skills
  4. Legal and regulatory frameworks
  5. Standards, organizations, and technologies

The original article reports regional progress, though circumstances differ by country and over time.

Mexico and proposals for a general cybersecurity law

Mexico has considered legislative proposals addressing information protection, cybercrime, and digital risks. A proposed law should not be described as enacted merely because a bill was introduced.

The article also discusses an increase in fraud and theft of confidential information during the COVID-19 period. Its figures and attribution require separate verification.

History of the proposed general cybersecurity law

The article traces proposals and related initiatives back to 2015, including one titled: Federal Law to Prevent and Punish Computer Crimes.

It then describes a 2019 initiative to amend provisions of the Federal Criminal Code and propose an Information Security Law. 

It also refers to a national strategy and a 2020 proposal for a General Cybersecurity Law. Legislative initiatives are proposals, not proof that a law entered into force.

Correction to the original article: it claimed that a General Cybersecurity Law was enacted on March 25, 2021. Official legislative material identifies later cybersecurity-law texts as initiatives; that enactment claim should not be relied on without an official publication in Mexico's Diario Oficial de la Federación.

The pandemic accelerated digitalization for business, education, work, and social life. Cybersecurity therefore remained an important organizational priority. 

EthicsGlobal supports a stronger cybersecurity culture in organizations and greater awareness of digital threats.

Regular backups, staff training, resilient network infrastructure, and professional security practices are useful measures that must evolve with technology.

You have read Cybersecurity Legislation in Mexico. Learn more on Twitter, LinkedIn and Facebook.

Visit our YouTube channel for further ideas.

EthicsGlobal Team January 6, 2022
Share this post
Archive
How to Implement ISO 37002 Guidance
Build a trustworthy whistleblowing management system
Chat with our sales team on WhatsApp