2018-02-06
Added · Updated
The Central Bank of Jordan issued the Cyber Resilience Instructions, effective twelve months after publication, mandating licensed banks, financial institutions, credit information companies, and microfinance companies to implement comprehensive cyber security governance, risk management, and protective controls. The regulations require entities to establish a Cyber Security Program and Policy, appoint an independent Chief Information Security Officer, maintain a Cyber Risk Register, and enforce strict access controls including multi-factor authentication and network segmentation. Additionally, the instructions impose obligations for continuous risk assessment, incident detection and response, disaster recovery planning, and the secure management of third-party outsourcing and physical security.