Cullen International’s new benchmark on 5G national security in the Americas region shows that Brazil, Chile and the United States are the only researched countries that have adopted network security measures that apply to 5G networks.
Brazil and Chile generally require telecoms network operators to implement cybersecurity policies and report serious incidents involving network security. Brazil requires operators to send detailed information to Anatel on critical network infrastructure, while Chile mandates operators designate a cybersecurity officer.
The US is the only researched country in the region to have restrictions in place against high-risk vendors in 5G networks. Operators must remove and replace equipment from companies in a list maintained by the federal telecoms regulator (FCC).

In Canada, a government bill under Senate review would require designated operators to implement cybersecurity programs, manage supply chain risks, and report incidents. The Canadian government announced plans to prohibit the use of products and services from vendors such as Huawei and ZTE.
To access the full benchmark, please click on “Access the full content” - or on “Request Access”, in case you are not subscribed to our Americas Digital Economy service.
>> See also our benchmark on 5G security measures across Europe!
more news
30 October 25
Environmental powers of European telecommunications authorities
This Cullen International report presents data on the current environmental powers of telecommunications NRAs, their main challenges regarding environmental sustainability and their current sustainability priorities.
29 October 25
To Space and beyond – part II: Regulating and licensing the terrestrial part of satellite systems in the Americas
Our new satellite benchmark on requirements for fixed earth stations licensing in the Americas summarises the key regulatory procedures and identifies the relevant government authorities.
27 October 25
Global trends in cloud regulation
Our latest Global Trends benchmark provides key insights on current practices in each of 14 jurisdictions around the world on: (1) data localization requirements, (2) cross-border personal data transfers, including across specified sectors, and (3) the main rules applicable to data centres and cloud service providers.