Featured Product

    AMF Publishes Guideline on ICT Risk Management

    February 27, 2020

    AMF published the guideline on information and communications technology (ICT) risk management. The guideline takes into account developments in ICT risk management and reflects observations made by AMF in the course of its supervisory activities in relation to the financial institutions concerned. The effective date of this guideline is February 27, 2020. With respect to the legal obligation imposed on the institutions to follow sound and prudent management practices, AMF expects each institution to adopt the principles of this guideline by developing strategies, policies, and procedures commensurate with its nature, scale, complexity, and risk profile.

    The guideline is intended for authorized insurers, federations of mutual companies, financial services cooperatives, and legal persons belonging to a cooperative group, authorized trust companies, savings companies, and certain other deposit institutions. It describes the expectations of AMF with respect to ICT risk. The ultimate goal of these expectations is to strengthen the financial sector’s resilience in response to the risk of data being lost, leaked, stolen, corrupted, or accessed without authorization. These expectations are intended to ensure the development of appropriate security hygiene through the implementation of measures that will help prevent a major incident and limit its impact.

    Each institution is responsible for clearly understanding all its ICT risks and ensuring that they are appropriately considered in light of the institution’s nature, size, complexity, and risk profile. AMF is also responsible for staying current on the best practices in ICT risk management and adopting them to the extent that they meet its needs. The standards or policies adopted by a federation with respect to financial services cooperatives and mutual insurance associations that are members of the federation should be consistent, if not convergent, with the principles of sound and prudent management set down in legislation and clarified in this guideline.

     

    Effective Date: February 27, 2020

    Keywords: Americas, Canada, Banking, Insurance, Guideline, ICT, Cyber Risk, Data Protection, AMF

    Related Articles
    News

    EBA Finalizes Remuneration Standards for Investment Firms in EU

    EBA finalized the two sets of draft regulatory technical standards on the identification of material risk-takers and on the classes of instruments used for remuneration under the Investment Firms Directive (IFD).

    January 21, 2021 WebPage Regulatory News
    News

    ECA Recommends Actions to Enhance Resolution Planning for Banks

    EC published, in the Official Journal of the European Union, a notification that the European Court of Auditors (ECA) has published a special report on resolution planning in the Single Resolution Mechanism.

    January 20, 2021 WebPage Regulatory News
    News

    BoE Publishes Key Elements of the 2021 Stress Testing for Banks in UK

    BoE published a scenario against which it will be stress testing banks in 2021, in addition to setting out the key elements of the 2021 stress test, guidance on the 2021 stress test, and the variable paths for the 2021 stress test.

    January 20, 2021 WebPage Regulatory News
    News

    PRA Proposes Rules on Identity Verification of Depositor Protection

    PRA published a consultation paper (CP3/21) proposes rules regarding the timing of identity verification required for eligibility of depositor protection under the Financial Services Compensation Scheme (FSCS).

    January 20, 2021 WebPage Regulatory News
    News

    FSB Publishes Work Program for 2021

    FSB published the work program for 2021, which reflects a strategic shift in priorities in the COVID-19 environment.

    January 20, 2021 WebPage Regulatory News
    News

    FCA Issues Update on Move to New Data Collection Platform

    FCA announced that 50% firms have started using the new data collection platform RegData, which is slated to replace the existing platform known Gabriel.

    January 20, 2021 WebPage Regulatory News
    News

    Bundesbank Publishes Derivation Rules for Reporting by Banks

    Bundesbank published Version 5.0 of the derivation rules for completeness check at the form level, with respect to the data quality of the European harmonized reporting system.

    January 19, 2021 WebPage Regulatory News
    News

    FED Revises Capital Planning and Stress Testing Requirements for Banks

    FED finalized a rule that updates capital planning requirements to reflect the new framework from 2019 that sorts large banks into categories, with requirements that are tailored to the risks of each category.

    January 19, 2021 WebPage Regulatory News
    News

    ECB Releases Results of Bank Lending Survey for Fourth Quarter of 2020

    ECB published results of the quarterly lending survey conducted on 143 banks in the euro area.

    January 19, 2021 WebPage Regulatory News
    News

    ESAs Publish Reporting Templates for Financial Conglomerates

    ESAs published the final draft implementing technical standards on reporting of intra-group transactions and risk concentration of financial conglomerates subject to the supplementary supervision in EU.

    January 18, 2021 WebPage Regulatory News
    RESULTS 1 - 10 OF 6484