2019-03-22 | 56/04

Added · Updated

Regulation on Cybersecurity Management Framework of Commercial Banks

The National Bank of Georgia mandates that all commercial banks and branches of non-resident foreign banks operating in Georgia establish a cybersecurity management framework commensurate with their size and complexity. The framework must integrate five primary functions: risk identification, protection, discovery, response, and restoration, with specific requirements for asset management, access control, data protection, and incident handling. Banks are required to conduct annual cybersecurity training for all employees, perform annual penetration tests on network-connected systems, and complete an annual independent audit of the entire framework. This decree entered into force on April 1, 2019.

National Bank of Georgia logo

Georgia

National Bank of Georgia

Scan of the document's first page
Share

Get NBG alerts — same-day email on every new publication.

Read the rest free

Source: National Bank of Georgia — original document · Summary generated with machine assistance and reviewed before publication; the authoritative text is the regulator's original document. How RegAlert works

More like this from NBG

We email you every new NBG publication the day it's published.

Topics