2024-05-09
Added · Updated
This Notice applies to designated financial holding companies and requires them to secure administrative accounts, apply security patches commensurate with risk, and maintain written security standards for all systems. It mandates multi-factor authentication for administrative accounts on critical systems and for any internet-based access to customer information. Additionally, entities must implement network perimeter controls, malware protection where available, and compensating controls for systems unable to meet specific security standards or patch requirements. The Notice takes effect on 10 May 2024.
More like this from MAS
We email you every new MAS publication the day it's published.