Executive Summary
The National Information Technology Development Agency (NITDA) has launched the National Software Quality Assurance (SQA) Framework, a regulatory instrument issued under the NITDA Act 2007 that establishes, for the first time in Nigeria, a comprehensive and mandatory regime for the development, testing, and certification of software deployed by government agencies and, on a broader footing, by private sector operators.
From the second quarter of 2027, no Federal Government software project will be able to obtain IT Project Clearance without independent, third-party certification issued by a Licensed Software Testing Organisation (LSTO) accredited by NITDA. The Framework also creates, for the first time, a formal licensing regime for entities that wish to provide software testing services in Nigeria. This alert examines the background, structure, and scope of the Framework, and sets out its practical implications for technology firms, government contractors, and regulated private entities.
Background and Regulatory Context
NITDA derives its regulatory authority from the NITDA Act 2007, which empowers the Agency to develop, regulate, and advise on information technology practices and standards across Nigeria. The Agency has, for over a decade, expressed concern over the prevalence of substandard and inadequately tested software within both public procurement and the wider Nigerian digital economy.
As early as 2016, NITDA operated a software testing laboratory and encouraged penetration testing and certification, particularly within the banking, insurance, and pension sectors, in response to a documented rise in data breaches and system failures. That earlier initiative, however, remained largely voluntary and lacked a formal licensing architecture for third-party testers.
The SQA Framework represents a considerably more formalised evolution of that policy objective. According to a statement issued by NITDA’s Director of Corporate Communications and Media Relations, Mrs Hadiza Umar, and a directive signed by the Director-General, Mallam Kashifu Inuwa Abdullahi, the Framework is intended to reduce the incidence of costly information technology failures, strengthen national cybersecurity, and improve public confidence in digital government services by fixing national standards for how software is designed, tested, and deployed.

