Connecting the world and beyond

Digital Financial Services (DFS) Security Clinic - Burkina Faso

​​​​​​​​​​​image.png​The International Telecommunication Union (ITU) is pleased to invite participants to the Digital Financial Services (DFS) Security Clinic for Burkina Faso, which will take place on 23 –24 July​​​ 2026, from 10:00 to 13:00 GMT​​, online via Zoom. 

The secuirty clinic aims to provide key insights and practical guidance to DFS stakeholders about the best practices that need to be adopted by regulators and DFS providers to secure the DFS applications and infrastructure. The expected output of the clinic is a draft document for the adoption of the relevant ITU DFS Security Recommendations by L'Autorité de Régulation des Communications Electronique et des Postes​  – Burkina Faso.​​​
​​Target audience

Programme

23 July 2026

​​​​10:00  – 10:10​
​Welcome remarks. 
10:10  – 11​:10
​Introduction to ITU DFS Security Lab and Knowledge Sharing Platform 

This session will provide a general overview of the ITU DFS Security  Lab and the assistance that it provides to developing countries to adopt the DFS Security recommendations. This session will also introduce the ITU knowledge sharing platform​. The ITU DFS Security Knowledge Sharing Platform is designed to foster collaboration among regulators and other stakeholders in the development and implementation of security guidelines and best practices for Digital Financial Services (DFS).

Namrud Negash,  Project Officer, ITU​​​
11:10 – 11:20​​​​
​​​Coffee Break 
11:20 – 13:00
ITU DFS Security Recommendations

This session will present the security measures from the ITU DFS security recommendations to be adopted by DFS regulato​​rs and providers to secure the telecom infrastructure and payment system infrastructure. 

The following recommendations will be presented:
Namrud Negash,  Project Officer, ITU​

24 July 2026

​​​​10:00 – 10:50​
​DFS Application Security Best Practices and DFS Application Security Testing 
Following up on the ITU DFS security recommendations on Day 1, this session continues the elaboration of the security control measures to the application layer. As DFS cyber threats continue to evolve, p​rotecting applications from vulnerabilities become paramount. The DFS application security best practices included in the ITU DFS security recommendations can be adopted by regulators to establish a minimum-security baseline for DFS providers to build in security at the design phase. 

This session will explore the security tests that are conducted in the ITU DFS security lab to verify compliance of mobile payment apps against the Security best practices. 
Namrud Negash, Project Officer, ITU
10:50  – 11:00
​​Coffee Break
11:00 –​ 11:30​DFS Security Assurance Framework and Audit Guideline
This session discussed the DFS security assurance framework that can be implemented by DFS providers to better manage the risks and mitigate their impact.

Related Reports:
Namrud Negash, Project Officer, ITU​​​
11:30 –​ 13:00
Open Discussion: Adopting the ITU DFS Security Recommendations 

In this session ITU will present the results of the gap analysis survey on the DFS security recommendations and open the discussion to ARCEP and the stakeholders​ to openly discuss the implementation of the relevant DFS security recommendations. The output of this session is a draft document for the adoption of the relevant recommendations by ARCEP and the relevant stakeholders.

Facilitators:​​ ARCEP