2026-05-19

Added · Updated

Consolidated version of EBA amending Guidelines on ICT and security risk management

The European Banking Authority issued consolidated guidelines amending the original ICT and security risk management framework to specifically address payment service user relationship management under PSD2. These measures require payment service providers to establish processes that enhance user awareness of security risks, provide assistance and guidance, and keep users informed about security updates and anomalies. Additionally, providers must enable users to adjust spending limits, disable specific functionalities, and receive alerts on transaction attempts to detect fraudulent or malicious account use.

European Banking Authority logo

European Union

European Banking Authority

Scan of the document's first page
Share

EBA published 1 document in the last 30 days — get each new one by email the day it lands.

Read the rest free

Lineage: In force

amendssupersedesissued underrefers toproposed or not in RegAlertarrows run from the older text to the one that changes it

Source: European Banking Authority — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from EBA

EBA published 1 document in the last 30 days. We email you each new one the day it's published.