Added · Updated

Bank of Zambia Cyber and Information Risk Management Guidelines 2023

The Bank of Zambia has issued the 2023 Cyber and Information Risk Management Guidelines to mandate minimum cybersecurity and operational resilience standards for all regulated financial entities. The framework requires institutions to establish formal governance structures with explicit board oversight, appoint an independent Chief Information Security Officer, and implement a five-phase risk management cycle aligned with NIST standards covering identification, protection, detection, response, and recovery. Regulated entities must conduct continuous risk assessments, enforce strict access and third-party controls, and adhere to an apply-or-explain approach to safeguard critical information assets against evolving cyber threats.

Bank of Zambia logo

Zambia

Bank of Zambia

Scan of the document's first page
Share

BOZ published 1 document in the last 30 days — get each new one by email the day it lands.

Read the rest free

Lineage: In force

National Payment Systems Act, 2…2007National Payment Systems Act, 2007 (2007-04-12)Banking and Financial Services …2017Banking and Financial Services Act, 2017 (2017-04-18)Credit Reporting Act of 2018Credit Reporting Act of 2018Bank of Zambia Cyber andInformation Risk Management G…this documentBank of Zambia Cyber and Information Risk Management Guidelines 2023
amendssupersedesissued underrefers toproposed or not in RegAlertarrows run from the older text to the one that changes it

Source: Bank of Zambia — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from BOZ

BOZ published 1 document in the last 30 days. We email you each new one the day it's published.