Добавить новость
Новости сегодня

Новости от TheMoneytizer

CySEC issues new guidance on digital resilience for financial firms

The Cyprus Securities and Exchange Commission (CySEC) has issued new guidance aimed at strengthening how financial firms in Cyprus handle digital risks and technology-related disruptions.

The circular targets a wide range of regulated entities, including investment firms, trading venues, fund managers and crypto-asset providers, and focuses on improving digital resilience across the financial sector.

CySEC said it has identified weaknesses in how firms report technology-related incidents, with some serious incidents not being reported at all and others being misclassified.

The regulator stressed that firms must ensure serious ICT incidents are identified and reported promptly, warning that inaccurate reporting undermines oversight and risk management.

The commission also addressed the way firms submit key operational information, reminding regulated entities that spreadsheets are no longer accepted and that submissions must be made through the regulator’s online reporting systems.

Firms were reminded that this information must be submitted every year by February 28, based on data as at December 31 of the previous year.

The circular places strong emphasis on the need for firms to maintain a clear and well-documented ICT risk management framework, allowing risks linked to technology and cyber threats to be managed on an ongoing basis.

The commission underlined that responsibility for overseeing ICT risks should sit with a dedicated and independent control function, helping to avoid conflicts of interest and ensuring effective internal checks and balances.

Firms are also expected to review their ICT risk framework at least once a year, as well as after serious incidents or following internal reviews, and to continuously improve it based on lessons learned.

The regulator added that companies must ensure their ICT systems and controls are regularly audited by suitably qualified and independent auditors, with the depth of audits reflecting each firm’s risk profile.

Any significant issues identified through these audits should be addressed without delay, with firms expected to have formal processes in place to track and resolve weaknesses.

Smaller investment firms were reminded that they may apply a simplified approach, provided it remains proportionate to their size and level of interconnectedness.

The commission also instructed firms to update their details on the CySEC portal, including the designation of the ICT auditor and the person responsible for overseeing ICT risks.

The guidance forms part of the implementation of the Digital Operational Resilience Act (DORA), a new European Union framework designed to ensure that financial institutions can withstand, respond to and recover from digital disruptions.

DORA sets common rules across the EU on how banks, investment firms and other financial entities manage technology risks, including cyber threats, system failures and third-party service providers.

Its aim is to reduce vulnerabilities in the financial system by strengthening governance, improving incident reporting and ensuring firms remain operational even during severe digital incidents.

Читайте на сайте


Smi24.net — ежеминутные новости с ежедневным архивом. Только у нас — все главные новости дня без политической цензуры. Абсолютно все точки зрения, трезвая аналитика, цивилизованные споры и обсуждения без взаимных обвинений и оскорблений. Помните, что не у всех точка зрения совпадает с Вашей. Уважайте мнение других, даже если Вы отстаиваете свой взгляд и свою позицию. Мы не навязываем Вам своё видение, мы даём Вам срез событий дня без цензуры и без купюр. Новости, какие они есть —онлайн с поминутным архивом по всем городам и регионам России, Украины, Белоруссии и Абхазии. Smi24.net — живые новости в живом эфире! Быстрый поиск от Smi24.net — это не только возможность первым узнать, но и преимущество сообщить срочные новости мгновенно на любом языке мира и быть услышанным тут же. В любую минуту Вы можете добавить свою новость - здесь.




Новости от наших партнёров в Вашем городе

Ria.city
Музыкальные новости
Новости России
Экология в России и мире
Спорт в России и мире
Moscow.media






Топ новостей на этот час

Rss.plus





СМИ24.net — правдивые новости, непрерывно 24/7 на русском языке с ежеминутным обновлением *