OSFI has set out the schedule for release of draft guidance on the management of technology risks by federally regulated financial institutions and private pension plans. This follows an OSFI discussion paper on a range of technology risk areas such as cyber security, advanced analytics, and third-party technology ecosystem. The feedback period on the paper ended on December 15, 2020, with respondents expressing broad support for emerging principles-based and technology-neutral perspectives on technology risk management.
In the feedback, the respondents indicated that OSFI should first leverage its existing guidance and align any additional guidance with existing international and information technology standards. In light of the feedback received on the discussion paper, OSFI plans to release draft guidance and industry letters as per the following schedule:
- OSFI plans to publish an industry letter on operational resilience and a new draft guideline on technology and cyber risk in the third and fourth quarters of 2021, respectively.
- In the first quarter of 2022, OSFI plans to publish a draft of the revised guideline on third-party risk and an industry letter on advanced analytics and model risk.
- In 2022-23, OSFI plans to publish the revised Guideline E-21 on operational risk management and the revised guidance on model risk.
Keywords: Americas, Canada, Banking, Insurance, Technology Risk, Operational Risk, Operational Resilience, Third-Party Risk, Cyber Risk, Regtech, OSFI
Next ArticleEBA Publishes Phase 1 of Reporting Framework 3.1
The European Banking Authority (EBA) published the final draft regulatory technical standards specifying and, where relevant, calibrating the minimum performance-related triggers for simple.
The European Central Bank (ECB) is undertaking the integrated reporting framework (IReF) project to integrate statistical requirements for banks into a standardized reporting framework that would be applicable across the euro area and adopted by authorities in other EU member states.
The European Banking Authority (EBA) has been awarded the top European Standard for its environmental performance under the European Eco-Management and Audit Scheme (EMAS).
The Monetary Authority of Singapore (MAS) set out the Financial Services Industry Transformation Map 2025 and, in collaboration with the SGX Group, launched ESGenome.
The Basel Committee on Banking Supervision met, shortly after a gathering of the Group of Central Bank Governors and Heads of Supervision (GHOS), the oversight body of BCBS.
The International Organization of Securities Commissions (IOSCO) welcomed the work of the international audit and assurance standard setters—the International Auditing and Assurance Standards Board (IAASB)
The Bank of England (BoE) published a Statistical Notice (2022/18), which informs that due to the Bank Holiday granted for Her Majesty Queen Elizabeth II’s State Funeral on Monday September 19, 2022.
The French Prudential Control and Resolution Authority (ACPR) announced that the European Banking Authority (EBA) has updated its filing rules and the implementation dates for certain modules of the EBA reporting framework 3.2.
The European Central Bank (ECB) published a paper that examines how credit rating agencies accepted by the Eurosystem, as part of the Eurosystem Credit Assessment Framework (ECAF)
The Australian Prudential Regulation Authority (APRA) announced reduction in the aggregate Committed Liquidity Facility (CLF) for authorized deposit-taking entities to ~USD 33 billion on September 01, 2022.