2021-08-24 | SEOJK NOMOR 22/SEOJK.05/2021

Added

Implementation of Information Technology Risk Management by Non-Bank Financial Service Institutions

Non-Bank Financial Service Institutions (LJKNB) are required to implement comprehensive information technology risk management, including active oversight by the Board of Directors and Board of Commissioners, adequate policies and procedures, and robust internal control systems. The regulation mandates documentation covering organizational structure, risk management components, IT policies, application architecture, data centers, disaster recovery plans, and third-party service providers. Specific requirements are imposed on the IT development lifecycle, procurement processes, system testing, implementation, maintenance, and destruction phases to ensure operational resilience and data integrity.

Otoritas Jasa Keuangan (Financial Services Authority) logo

Indonesia

Otoritas Jasa Keuangan (Financial Services Authority)

Scan of the document's first page
Share

OJK published 7 documents in the last 30 days — get each new one by email the day it lands.

Read the rest free

Source: Otoritas Jasa Keuangan (Financial Services Authority) — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from OJK

OJK published 7 documents in the last 30 days. We email you each new one the day it's published.