The regulations cover registration and custody systems, clearing and settlement, trading facilities, transaction reporting databases, important payment systems, and credit reporting systems.
December 17, 2022All financial entities and the third parties that provide them ICT-related services will have to adhere to DORA requirements from around the end of 2024.
December 1, 2022Operators of critical information infrastructure using products or services that have not undergone security evaluations will face fines of up to 5 percent of annual revenue.
September 24, 2022Eligible companies can transfer data across borders by signing standard contracts with overseas recipients that align with China’s data protection law.
July 5, 2022The rule amendments seek to address excessive regulations that have hindered digital transformation efforts in the financial sector.
April 20, 2022NFT and metaverse-related risks, and crypto account hacks and thefts, were cited as top information security risks for the first time.
February 18, 2022New guidance urges banks and insurers to "vigorously promote" digital financial services and further develop their data and technology capabilities.
January 31, 2022The guidelines support the protection of critical data, while also serving as a reference for companies and authorities to classify and describe their data.
January 26, 2022Data specialising institutions are allowed to converge anonymised and pseudonymised data originating from different businesses for analytics purposes.
January 14, 2022The guidelines emphasise the need for appropriate governance, differentiated controls based on the importance of outsourced functions, and awareness of concentration risk.
January 10, 2022