Skip to Content

ST DIGITAL

March 3, 2026 by
ST DIGITAL
ST DIGITAL, Fabrice ADZRAKOU

7

Country of operation

Tier 3

TIA-942 Datacenters

6

Certifications & Compliance

ST DIGITAL, a pan-African operator of sovereign data centres, is proud to announce the achievement of ISO 27001 certification, the international reference standard for information security management.

This certification attests that our Information Security Management Systems (ISMS) meet the strictest requirements, validated by an independent audit. It confirms our commitment to protecting the data of our clients — banks, telecommunications operators, public administrations, and industrial enterprises — through our infrastructures deployed in Cameroun, Gabon, Congo, Côte d'Ivoire, Togo, Bénin, and RDC.


A already proven certification path

The achievement of ISO 27001 certification is part of a continuous certification approach committed to by ST DIGITAL for several years. Prior to this decisive step, our company had already obtained major certifications recognised on a global scale:

PCI DSS (Payment Card Industry Data Security Standard): this certification attests to our ability to host and protect payment data according to the most demanding standards in the financial sector. It is particularly strategic for our banking and fintech clients across Africa.

OCP (Open Compute Project): this certification attests that our datacenter infrastructures are designed according to the open standards of the Open Compute Project, a global initiative promoting energy efficiency, scalability and equipment interoperability. It positions ST DIGITAL among African operators at the forefront of innovation in datacenter design.

OIX-DC-2 (Open-IX Data Center): this international certification attests that our datacenters comply with the most demanding interconnection standards in terms of performance, resilience and connectivity. It positions ST DIGITAL as a neutral and reliable exchange point at the heart of the African Internet ecosystem.

MANRS (Mutually Agreed Norms for Routing Security): our compliance with MANRS standards demonstrates our commitment to global Internet routing security. As an operator under ASN AS328840, we apply best practices in filtering, anti-spoofing, and route validation to guarantee the integrity of traffic transiting through our infrastructures.

Compliance with national regulations on the protection of personal data: ST DIGITAL strictly complies with the laws and regulations in force in each of its countries of operation regarding the protection of personal data. 

Whether it concerns law n° 2010/012 in Cameroun, law n° 001-2011 in Gabon, the regulatory frameworks of CEMAC and UEMOA, or the national provisions in Côte d'Ivoire, Togo, Bénin, Congo and RDC, our processes and infrastructures are designed to guarantee the data sovereignty of African citizens and companies on African soil.

These certifications and compliance achievements reflect a culture of excellence deeply embedded at ST DIGITAL — covering payment security (PCI DSS), datacenter innovation (OCP), datacenter interconnection (OIX-DC-2), Internet routing security (MANRS), and compliance with national data protection regulations. ISO 27001 certification now crowns this strategy by providing a comprehensive information security governance framework.

 

Why ISO 27001 certification is crucial for Africa

In a context where digital transformation is accelerating across the African continent, the question of data sovereignty has never been more critical. For too long, African data has been hosted outside the continent, subject to foreign jurisdictions and risks of external surveillance.

The ISO 27001 certification of ST DIGITAL provides a concrete response to this challenge:

Guarantee that African data stays in Africa, in Tier 3/TIA-942 constructed data centers

Compliance with local and international regulations (CEMAC, UEMOA, GDPR)

Enterprise-grade protection against growing cyber threats across the continent

Enhanced trust for regulated sectors: banking, telecoms, healthcare, government


What this certification means for our clients

At ST DIGITAL, we are the guardians of digital trust in Africa. ISO 27001 certification is not merely a plaque on a wall — it is a verifiable and auditable commitment that every process, every access, and every piece of data is protected in accordance with global best practices.

In practical terms, this means:

  • Rigorous risk management: systematic identification, assessment and treatment of every risk related to information security across our 7 countries of operation.


  • Reinforced access controls: strict identity and access management policies for physical and logical access to our Tier 3/TIA-942 datacenters.


  • Guaranteed business continuity: tested and validated recovery and continuity plans to ensure the availability of your critical services.


  • Continuous improvement: regular internal audits and management reviews to maintain and strengthen our security posture.


How we obtained this certification

Obtaining ISO 27001 certification is the result of rigorous work carried out by our technical and governance teams over several months. This process included:

  1. 1. Existing state analysis: comprehensive evaluation of our processes, policies and infrastructures across our sites in Cameroun, Gabon, Congo, Côte d'Ivoire, Togo, Bénin and RDC.
  2. 2. ISMS implementation: deployment of an Information Security Management System covering all of our pan-African operations.
  3. 3. Training and awareness: upskilling our local teams in each country, creating a pool of African cybersecurity expertise.
  4. 4. Independent audit: verification by an accredited certification body, confirming the full compliance of our practices.


And now? Heading toward full digital sovereignty

The ISO 27001 certification is a major milestone, but our ambition goes further. ST DIGITAL is now committed to:

Expanding ISO 27017 (cloud) and ISO 27018 (personal data in the cloud) certifications

Strengthening our "Made in Africa" Sovereign Cloud offering adapted to the realities of the African market

Developing our pan-African SOC (Security Operations Center) for 24/7 monitoring

Supporting our clients in their own regulatory compliance and secure transformation

 

African data security deserves international standards, deployed by African players. That is exactly what ST DIGITAL delivers.

 

To learn more about our certified services and our commitment to African digital sovereignty, contact us at info@st-digital.africa or visit www.st-digital.africa.