Cybersecurity & Ransomware in Trinidad & Tobago: Why Businesses Must Act Now
Updated: August 25, 2025
Cyber attacks are rising across Trinidad & Tobago, and the real numbers are likely far higher than what makes the news. Below are local, regional, and global data points—each sourced—to help business leaders decide on cybersecurity investments and backups today.
Key Trinidad & Tobago Statistics
- 205 successful cyber attacks were reported in T&T between 2019–2023, including 52 in 2023 alone. Source: Newsday
- A TT-CSIRT 2021 national cyber risk assessment examined 183 systems across 40 public sector organisations and found 22 systems whose compromise would have a significant negative impact on the country. Source: Newsday
- Because T&T has no mandatory breach reporting, specialists estimate that “for every breach you hear about, there are at least ten you don’t.” Source: Newsday (expert quote)
- The insurance sector has been a primary target, with four insurance companies reporting cyber incidents during 2019–2023 (ransomware, malware, data breach, and ransomware activity). Source: NCB summary of CBTT update | CBTT: Financial Stability Report
- A local provider observed 37,495 vulnerable IP assets in T&T—indicative of widespread exposure across networks and devices. Source: Digicel Business
Recent High-Profile Incidents (Local)
- TSTT (2023): Reported compromise and data exfiltration attributed to RansomEXX; company issued multiple updates as it worked the incident. TechNewsTT, TSTT official update
- Massy (2022): Ransomware attack followed by public data dumps containing staff and customer information. Trinidad & Tobago Guardian, TechNewsTT, Commonwealth report (PDF)
Regional Context (Caricom)
A regional ransomware review recorded 32 known breaches among Caricom nations; Trinidad & Tobago was tied for second with four known breaches. Source: TechNewsTT
Risk Signals for the Financial System
The Central Bank of Trinidad & Tobago notes increasing cyberattacks as an ongoing risk and warns the probability of a systemic event from cyber incidents is “more than likely to increase.” CBTT Financial Stability Report 2023 (PDF)
The Cost of Downtime: Global Ransomware Trends
In 2023, global ransomware payments exceeded US$1 billion—an all-time high—after a dip in 2022, underscoring the rising monetization of attacks. Source: Chainalysis | Coverage: WIRED
Good News: There’s a Tax Allowance for Cybersecurity (2024–2025)
- Businesses can claim a tax deduction of up to TTD 500,000 for eligible cybersecurity software and network security monitoring equipment made in calendar years 2024–2025. Official CITA FAQs, Newsday, PwC summary
- The CITA platform lets companies submit proof of purchases and obtain certification to claim the allowance via the Inland Revenue Division. Gov’t announcement
Action step: Prioritize backups (3-2-1 rule), endpoint protection/EDR, multi-factor authentication, staff phishing training, tested incident response plans, and coverage for critical third-party vendors.
Takeaway for Business Leaders
The local trend line—and the likelihood of under-reporting—means the next incident could hit your sector. Invest in layered defenses and resilient backups now, and take advantage of the TTD 500,000 cybersecurity tax allowance while it’s available.