Bishkek, Kyrgyzstan - September 15, 2026. The National Bank of the Kyrgyz Republic (NBKR) and CertiK have signed a Memorandum of Understanding (MoU) that lays out a long-term strategic partnership focused on the security and regulatory oversight of the Digital Som and broader digital asset activity.
The MoU positions CertiK, a Web3 security services provider, to operate within a central-bank setting that demands strict security, compliance, and operational controls. NBKR and CertiK describe the arrangement as a model for how specialized digital-security firms can engage with heavily regulated institutions.
At the signing, Sanzhar Abdygaziev, Member of the NBKR Management Board, said: "The Memorandum of Understanding that we are signing today establishes a framework for further dialogue and cooperation. We see particular value in exchanging experience and expertise in blockchain and digital asset security, cybersecurity, AML/CFT, and the analysis and monitoring of digital asset transactions."
CertiK leadership framed the collaboration as a continuity of the company’s technical security work. Ronghui Gu, Co-Founder and CEO of CertiK, said: "Digital asset infrastructure requires security and risk management to be considered from the earliest stages of design through ongoing operation. We look forward to bringing CertiK’s expertise and experience to our long-term cooperation with the NBKR, supporting the secure development of the country’s digital asset ecosystem."
Scope of cooperation
Under the MoU, the two parties plan to exchange expertise and explore cooperation across a range of technical and supervisory domains. Areas explicitly identified include:
- Blockchain and digital asset security;
- Security assessments and formal verification;
- Cybersecurity and operational resilience;
- Analysis and monitoring of digital asset transactions;
- Anti-money laundering and countering the financing of terrorism (AML/CFT);
- Digital asset custody, security standards, and licensing requirements.
CertiK will provide technical and strategic support drawing on its experience in digital asset security and risk management. The parties also intend to consider deployment of CertiK’s Supervision and Compliance solutions to strengthen ongoing risk monitoring and regulatory oversight, as well as training and knowledge transfer on relevant technical and regulatory matters.
Context of CertiK’s regulatory engagements
The MoU notes CertiK’s broader role advising regulators and engaging in policy discussions. The firm has provided technical advisory support to regulators in the United States and has responded to regulatory consultations issued by the Monetary Authority of Singapore (MAS). The document frames these activities as examples of how technical security expertise can support regulated digital asset markets and infrastructure.
Institutional profiles
About the NBKR: The National Bank of the Kyrgyz Republic is the country’s central bank, responsible for maintaining price stability, safeguarding the stability of the banking and payment systems, and supporting sustainable development of Kyrgyzstan’s financial sector. The NBKR regulates and supervises financial institutions, manages monetary policy and international reserves, and oversees the national payment infrastructure. The bank is advancing financial innovation through its Digital Som central bank digital currency (CBDC) initiative, which is intended to modernize payments, expand financial inclusion, and strengthen resilience and efficiency within the financial ecosystem.
About CertiK: CertiK is described in the MoU as the largest Web3 security services provider and a risk management partner for regulators, institutions, and Web3 innovators. Since 2017, CertiK has protected over $600 billion in digital assets across more than 150 countries and regions. The company provides full-lifecycle security and risk management solutions for institutional clients and operates under SOC 2 Type II and ISO 27001 standards. CertiK’s stated activities include close cooperation with regulators on digital asset policy development and regulatory consultation.
Operational emphases and training
The agreement highlights training, knowledge transfer, and capacity-building as elements of the partnership. Those components are intended to support NBKR staff and relevant stakeholders in technical and regulatory areas tied to digital asset security and oversight.
Both institutions indicate that the partnership will be ongoing and intended to adapt as technical requirements and regulatory priorities evolve, within the limits described in the MoU.
Contact
Contact listed in the agreement: Elisa Yiting Xu, CertiK, [email protected].