Featured Product

    BNM Publishes Policy Document on Risk Management in Technology

    July 18, 2019

    BNM published a policy document that sets out its requirements for the management of technology risk by financial institutions in Malaysia. In line with the proportionality principle, larger and more complex financial institutions are expected to demonstrate risk management practices and controls that are commensurate with the increased technology risk exposure of such institutions. The policy document comes into effect on January 01, 2020.

    All financial institutions shall observe minimum prescribed standards in the policy document to prevent the exploitation of weak links in interconnected networks and systems that may cause detriment to other financial institutions and the wider financial system. The control measures set out in Appendices 1 to 5 serve as a guide for sound practices in defined areas. Financial institutions should be prepared to explain the risk management practices that depart from the control measures outlined in the Appendices and to demonstrate their effectiveness in addressing the technology risk exposure.

    A financial institution must ensure that the technology risk management framework is an integral part of its enterprise risk management framework. The technology risk management framework must include the following:

    • Clear definition of technology risk
    • Clear assignment of responsibilities for the management of technology risk at different levels and across functions, with appropriate governance and reporting arrangements
    • Identification of technology risks to which the financial institution is exposed, including risks from the adoption of new or emerging technology
    • Risk classification of all information assets or systems, based on the "criticality"
    • Risk measurement and assessment approaches and methodologies
    • Risk control and mitigation
    • Continuous monitoring to timely detect and address any material risks


    Related Link: Policy Document (PDF)

    Effective Date: January 01, 2020

    Keywords: Asia Pacific, Malaysia, Banking, Insurance, Technology Risk, Governance, Operational Risk, Proportionality, BNM

    Related Articles

    PRA Amends Pillar 2 Capital Framework for Banks

    PRA published the policy statement PS2/20 that contains the final amendments to the Pillar 2 framework and provides feedback to responses to the consultation paper CP5/19 on updates related to Pillar 2 capital framework.

    January 23, 2020 WebPage Regulatory News

    FED Proposes to Revise Information Collection Under Market Risk Rule

    FED proposed to revise and extend, for three years, FR 4201, which is the information collection under the market risk capital rule.

    January 22, 2020 WebPage Regulatory News

    MAS Amends Notices on Minimum Liquid Asset Requirements for Banks

    MAS published amendments to Notices 1015, 613, and 649 related to the minimum liquid assets (MLA) requirements.

    January 21, 2020 WebPage Regulatory News

    APRA Publishes Submission on Fintech and Regtech

    APRA published its submission, to the Senate Select Committee, on financial technology and regulatory technology.

    January 21, 2020 WebPage Regulatory News

    ECB Consults on Guideline on Threshold for Credit Obligations Past Due

    ECB published a draft guideline, along with the frequently asked questions (FAQs), on the definition of the materiality threshold for credit obligations past due for less significant institutions.

    January 20, 2020 WebPage Regulatory News

    BIS Discusses Role of Central Banks in Addressing Climate Change Risks

    BIS published a book that reviews ways of addressing the climate change risks within the financial stability mandate of central banks.

    January 19, 2020 WebPage Regulatory News

    FSB Report Examines Global Nonbank Financial Intermediation Activity

    FSB published the ninth annual report examining the global non-bank financial intermediation activity.

    January 19, 2020 WebPage Regulatory News

    OSFI Publishes Instruction Guide on Solvency Information Return

    OSFI published an instruction guide to assist administrators of pension plans in completing the Solvency Information Return that is required to be filed with OSFI.

    January 17, 2020 WebPage Regulatory News

    EU Amends IFRS 9 Rule, Changes Concern Interest Rate Benchmark Reforms

    EU published Regulation 2020/34 regarding the International Accounting Standard (IAS) 39 and International Financial Reporting Standards (IFRS) 7 and 9.

    January 16, 2020 WebPage Regulatory News

    FDIC and OCC Issue Statement on Heightened Cyber Security Risk

    In response to the heightened cyber-security risk facing the financial services industry and other critical business sectors, FDIC and OCC issued an interagency statement on heightened cyber-security risk.

    January 16, 2020 WebPage Regulatory News
    RESULTS 1 - 10 OF 4515