Cybersecurity regulation in European Union

Information-security, cyber-risk and incident-reporting requirements for financial institutions. 40 publications, summarized in English and updated same-day.

2026-06-25

Warning of the European Systemic Risk Board on systemic cyber risks from frontier AI models

European Systemic Risk Board

European Union

ESRB

2026-05-19

Consolidated version of EBA amending Guidelines on ICT and security risk management

European Banking Authority

European Union

EBA

2026-03-10

Opinion of the European Central Bank on the proposed Digital Omnibus regulation

European Central Bank

European Union

ECB

2025-12-18

Final report on guidelines on internal controls for benchmark administrators, credit rating agencies and market transparency infrastructures

European Securities and Markets Authority

European Union

ESMA

2025-03-24

Commission Delegated Regulation (EU) 2025/532 on ICT subcontracting for financial entities

European Commission

European Union

EC

2025-03-18

Guidelines on the estimation of aggregated annual costs and losses caused by major ICT-related incidents

European Securities and Markets Authority

European Union

ESMA

2025-02-26

Guidelines on maintenance of systems and security access protocols under MiCA

European Securities and Markets Authority

European Union

ESMA

2025-02-20

Commission Delegated Regulation (EU) 2025/301 supplementing Regulation (EU) 2022/2554 with regulatory technical standards on major ICT-related incident notifications and significant cyber threat reports

European Commission

European Union

EC

2025-02-13

Commission Delegated Regulation (EU) 2025/1190 on threat-led penetration testing standards

European Commission

European Union

EC

2024-12-17

Final Report on Guidelines specifying Union standards on systems and security access protocols for crypto-asset offerors

European Securities and Markets Authority

European Union

ESMA

2024-12-02

Commission Implementing Regulation (EU) 2024/2956 laying down implementing technical standards for standard templates for the register of information

European Commission

European Union

EC

2024-11-06

Guidelines on DORA oversight cooperation

European Securities and Markets Authority

European Union

ESMA

2024-10-23

Commission Delegated Regulation (EU) 2025/301 on regulatory technical standards for major ICT-related incident notifications

European Commission

European Union

EC

2024-10-23

Commission Implementing Regulation (EU) 2025/302 on standard forms and procedures for reporting major ICT incidents and cyber threats

European Commission

European Union

EC

2024-07-26

Final report on draft regulatory technical standards for ICT subcontracting under DORA

European Securities and Markets Authority

European Union

ESMA

2024-07-17

Final Report on Draft RTS on Harmonisation of Conditions for Oversight of Critical ICT Third-Party Service Providers

European Securities and Markets Authority

European Union

ESMA

2024-07-17

Final Report on draft RTS specifying elements related to threat led penetration tests

European Securities and Markets Authority

European Union

ESMA

2024-07-17

Final Report on draft RTS on the harmonisation of conditions enabling the conduct of the oversight activities

European Securities and Markets Authority

European Union

ESMA

2024-07-17

Final Report on Joint Guidelines on oversight cooperation and information exchange between ESAs and competent authorities under DORA

European Securities and Markets Authority

European Union

ESMA

2024-07-17

Final Report on Draft RTS and ITS for Major Incident Reporting and Cyber Threat Notification under DORA

European Banking Authority

European Union

EBA

2024-07-17

Draft Regulatory Technical Standards specifying elements related to threat led penetration tests under Article 26(11) of Regulation (EU) 2022/2554

European Banking Authority

European Union

EBA

2024-07-17

Final Report on Draft RTS and ITS on Incident Reporting under DORA

European Securities and Markets Authority

European Union

ESMA

2024-07-17

Joint Guidelines on the estimation of aggregated annual costs and losses caused by major ICT-related incidents

European Securities and Markets Authority

European Union

ESMA

2024-06-25

Commission Delegated Regulation (EU) 2024/1774 on ICT risk management standards

European Commission

European Union

EC

Showing the 24 most recent of 40. Browse the full catalogue