// about

An independent reference for Canadian cybersecurity

InfoSecHub explains the frameworks, laws, and reporting channels that Canadian organizations run into, in plain language and with the sources attached.

Why this exists

Security guidance for Canadian organizations is scattered across federal departments, provincial regulators, standards bodies, and industry groups. Finding the right page, and knowing whether it applies to you, takes time most organizations do not have.

We gather the essentials in one place, say who each one is for, and send you to the official source for the full text.

What we are not

We are not a law firm, an auditor, or a response provider. Nothing here is legal advice, and nothing here replaces a qualified professional for your situation.

Independence

No vendor can pay for a mention, a ranking, or a favourable description. Any sponsored content would be labelled and kept separate.

Sources first

Each guide cites the primary source and links to it. Where we summarize, we say so.

Respect for copyright

Paid standards are summarized, never reproduced. We link to the owner so you can buy or read the real text.

Corrections

Rules and programs change. Tell us what is out of date through the contact form, and we will check it against the source and update the guide.

Help us keep it accurate