2018-02-06
Added · Updated
The Central Bank of Jordan issues the Cyber Resilience Instructions, effective twelve months from their date, applying to all licensed banks, financial institutions, credit reporting companies, and microfinance companies under its supervision. The document mandates comprehensive cyber security governance, requiring boards and senior management to adopt specific policies, programs, and risk registers while establishing an independent Chief Information Security Officer role. It imposes detailed obligations for identifying critical operations, conducting continuous cyber risk assessments, and implementing protection controls such as network segregation and infrastructure site security. Additionally, the Instructions define strict procedures for incident detection, emergency response, recovery, testing, and the outsourcing of third-party activities.