2023-05-29

Added · Updated

Guideline on Cyber and Technology Risk Management

The Bank of Mauritius mandates all licensed financial institutions to implement a comprehensive cyber and technology risk management framework commensurate with their size, complexity, and risk profile. The guideline establishes minimum governance standards, including board oversight and CISO appointment, while requiring robust protection controls, third-party risk management, and regular assurance testing aligned with international benchmarks. Effective 29 May 2023, these requirements ensure operational resilience and financial stability by standardizing threat detection, incident response, and continuous security reporting across the sector.

Bank of Mauritius logo

Mauritius

Bank of Mauritius

Scan of the document's first page
Share

Get BOM alerts — same-day email on every new publication.

Lineage: In force

Bank of Mauritius Act 2004Bank of Mauritius Act 2004National Payment Systems Act 20…National Payment Systems Act 2018Guideline on Cyber andTechnology Risk Management2023-05-29 · this documentGuideline on Cyber and Technology Risk Management (2023-05-29)
amendssupersedesissued underrefers toproposed or not in RegAlertarrows run from the older text to the one that changes it

Similar documents from other regulators

Source: Bank of Mauritius — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from BOM

We email you every new BOM publication the day it's published.