2023-12-04

Added · Updated

Joint Standard on Cybersecurity and Cyber Resilience Requirements for Financial Institutions

The Financial Sector Conduct Authority and Prudential Authority have issued a Joint Standard mandating comprehensive cybersecurity and cyber resilience requirements for all financial institutions. The regulation establishes a 12-month transitional implementation period, assigns ultimate compliance accountability to the governing body, and mandates robust governance structures with clear reporting lines. Financial institutions must implement proportionate but rigorous controls, including encryption, vulnerability assessments, penetration testing, and strict oversight of third-party and cloud service providers.

Financial Sector Conduct Authority logo

South Africa

Financial Sector Conduct Authority

Scan of the document's first page
Share

Get FSCA alerts — same-day email on every new publication.

Read the rest free

Lineage: In force

Financial Sector Regulation Act…2017Financial Sector Regulation Act, 2017 (Act No. 9 of 2017) (2017-08-21)Directive No. 2 of 2019Directive No. 2 of 2019Joint Standard onCybersecurity and Cyber Resil…2023-12-04 · this documentJoint Standard on Cybersecurity and Cyber Resilience Requirements for Financial Institutions (2023-12-04)
amendssupersedesissued underrefers toproposed or not in RegAlertarrows run from the older text to the one that changes it

Source: Financial Sector Conduct Authority — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from FSCA

We email you every new FSCA publication the day it's published.