2019-09-12
Added · Updated
The Prudential Authority issued Directive D2/2019 to mandate standardized reporting of material information technology and cyber incidents by banks, controlling companies, and foreign branches. Institutions must establish robust governance structures and incident management frameworks to ensure adequate oversight of critical IT functions and infrastructure. Upon discovering a material event, entities must notify the Authority within one day, submit a standardized report form, and provide a detailed root cause and impact analysis within 14 days.
More like this from SARB
SARB published 1 document in the last 30 days. We email you each new one the day it's published.