2021-12-02
Added · Updated
The European Systemic Risk Board recommends that the European Supervisory Authorities, the European Central Bank, and relevant national authorities prepare for the gradual development of a pan-European systemic cyber incident coordination framework to manage cross-border major cyber incidents with systemic impact. The European Supervisory Authorities must designate main points of contact and conduct a mapping of legal and operational impediments, while Member States must designate national points of contact to facilitate coordination. Reporting obligations require the European Supervisory Authorities to submit interim and final implementation reports by June 2023 and June 2024 respectively, and the European Commission to deliver reports on appropriate measures by December 2023 and December 2025, with all deadlines contingent upon the entry into force of the Digital Operational Resilience Act.