2024-11-18

Information Technology Risk Management Guidance

The Financial Services Regulatory Authority of the Abu Dhabi Global Market issues this guidance to establish best practices for the sound management of information technology risks by financial institutions. The document outlines desired outcomes and controls across four key areas: establishing a culture of effective IT risk management, managing the IT environment, interacting securely, and leveraging business-embedded technologies. It requires institutions to implement robust governance, third-party oversight, system lifecycle management, and resilience measures to mitigate threats such as unauthorized access, data leakage, and cyber events.

Financial Services Regulatory Authority logo

United Arab Emirates

Financial Services Regulatory Authority

Click to view full text