2023-11-28

Guidance on Information Technology Risk Management

The Financial Services Regulatory Authority of the Abu Dhabi Global Market issues this guidance to establish desired outcomes and best practices for the sound management of information technology risks by financial institutions. The document requires institutions to implement comprehensive governance, risk assessment, and control frameworks covering system lifecycle management, data protection, and third-party oversight. It further mandates robust measures for operational resilience, cyber event management, secure access, and the safe utilization of emerging technologies such as algorithm-driven and decentralized solutions.

Financial Services Regulatory Authority logo

United Arab Emirates

Financial Services Regulatory Authority

Click to view full text