2026-03-29

BRPD-2 Circular No. 02: Cybersecurity Framework, Version 1.0 (2026)

Bangladesh Bank mandates the Cybersecurity Framework Version 1.0 (2026) for all regulated banks, financial institutions, and payment service providers to establish a mandatory baseline for cybersecurity governance and risk management. The directive requires organizations to implement a seven-function core aligned with NIST and ISO 27001 standards to protect financial stability, ensure data confidentiality and integrity, and build systemic cyber resilience. Compliance with these enhanced security controls, incident response protocols, and continuous monitoring requirements becomes legally binding by March 31, 2026.

Bangladesh Bank logo

Bangladesh

Bangladesh Bank

Click to view full text