2020-06-22

Added · Updated

Bank of Ghana Cyber and Information Security Directive

The Bank of Ghana mandates Regulated Financial Institutions to establish and maintain a comprehensive cyber and information security management system ensuring the confidentiality, integrity, and availability of critical information assets. The Directive requires dedicated governance structures, including a Board-appointed Chief Information Security Officer and an independent cybersecurity budget, alongside proportionality-based risk assessments tailored to each institution's size and complexity. Furthermore, it enforces rigorous third-party oversight, cloud security controls, continuous testing regimes, and mandatory incident reporting to ensure sustained operational resilience against evolving cyber threats.

Bank of Ghana logo

Ghana

Bank of Ghana

Scan of the document's first page
Share

Get BOG alerts — same-day email on every new publication.

Read the rest free

Lineage: In force

Banks and Specialised Deposit-T…2020Banks and Specialised Deposit-Taking Institutions Act, 2016 (Act 930) (2020-06-22)Act No. 1032 of 2020Act No. 1032 of 2020Bank of Ghana Act 2002Bank of Ghana Act 2002Bank of Ghana Cyber andInformation Security Directive2020-06-22 · this documentBank of Ghana Cyber and Information Security Directive (2020-06-22)
amendssupersedesissued underrefers toproposed or not in RegAlertarrows run from the older text to the one that changes it

Source: Bank of Ghana — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from BOG

We email you every new BOG publication the day it's published.

Topics