Turkey chapter of “Lexology GTDT – Cybersecurity 2020” written by Stéphanie Beghe Sönmez and Neslihan Kasap is published.
Turkey does not have any dedicated cybersecurity laws. The data protection legislation, including the Personal Data Protection Law No. 6698 (PDPL), however, contains general requirements with regard to the security of personal data. Cybersecurity breaches can therefore lead to a breach of data protection law. The Council of Ministers issued a decision on national cybersecurity strategy, published in the Ofcial Gazette on 20 June 2013, in the form of an action plan aimed at ensuring the protection of ser vices, transactions and data provided by the government through IT systems and critical IT infrastructure operated by the public and pri vate sectors. On that basis, the Ministry of Transport, Maritime Affairs and Communication prepared a 2016–2019 national cybersecurity strategy and action plan, under which defnitions, principles, cyberse curity risks and strategic cybersecurity purposes and actions are pre sented. This plan aimed to shape Turkey’s cybersecurity legislation in accordance with international standards and establish a public authority that ensures coordination in the feld of cybersecurity.
The 11th Development Plan of the Turkish Republic for the 2019–2023 period (the Plan) states that to mitigate national security and ensure technological transformation in primary sectors (eg, chemical industry, medicine and medical equipment, electronics, automotive and rail system equipment), Turkey must enhance its ability to develop cybersecurity and data privacy technologies, fll the gap in the number of qualifed persons, further develop its administrative structures and keep its legislation in pace with ever-developing technology. Various plans and strategies are expected to be implemented within the period covered by the Plan, including the establishment of new public organisations and committees dealing with cybersecurity. On the other hand, the Turkish Presidency’s Digital Transformation Ofce (DTO), which was established in 2018, has been carrying out a series of studies and projects in the area of cybersecurity and data security for the purpose of ensuring digitalisation in public services and increasing public awareness thereof.
You may reach the entire publication here.
Share
Related persons
You can contact us for detailed information.
Legal Information
This briefing is for information purposes; it is not legal advice. If you have questions, please call us. All rights reserved.
You May Be Interested In
3 August 2026
New regulatory regime for insurance support services in Türkiye
The Regulation Amending the Regulation on Insurance Support Services, published by Türkiye’s Insurance and Private Pension Regulation and…
31 July 2026
Capital markets law bulletin / Issue 2026-1
This bulletin examines six significant decisions and regulatory measures adopted by the Capital Markets Board of Türkiye during the first…
29 July 2026
The Turkish Competition Authority dismisses a professional association’s objections to an on-site inspection and refuses to return or destroy data copied from personal mobile devices
This article examines the Turkish Competition Board’s IYMMO decision, wherein the Board assessed the objections of the Istanbul Chamber of…
28 July 2026
Türkiye’s defence sector: investment climate, legal framework and strategic outlook
Türkiye’s defence industry has undergone a notable transformation in recent years, both in terms of production capabilities and…
22 July 2026
A new era for digital gaming platforms: Key amendments to Law No. 5651
Law No. 7578 on Social Services and Amendments to Certain Laws, published in the Official Gazette on 1 May 2026, introduced wide-ranging…
6 July 2026
Legal developments regarding herbal medicinal products, foods for special medical purposes and medical devices
The Regulation on Aromatherapeutic Products and the Regulation on Medicinal Herbal Teas, together with the amendments to the Regulation on…
