Regulatory Technical Standards on ICT risk management framework and on simplified ICT risk management framework

  • Status: Final draft RTS/ITS adopted by the EBA and submitted to the European Commission

The Regulatory Technical Standards on ICT risk management framework identify further elements related to ICT risk management with a view to harmonise tools, methods, processes and policies. These elements are complementary to those identified in DORA. The RTS identify the key elements that financial entities subject to the simplified regime and of lower scale, risk, size and complexity would need to have in place, setting out a simplified ICT risk management framework. The RTS ensure the ICT risk management requirements are harmonised among the different financial sectors. 

Summary of document history

Previous versions Current version Ongoing versions

ESAs Joint Committee consultation on Technical Standards under DORA

  • Status: Closed
  • Deadline: 11 SEPTEMBER 2023
Documents
Introductory note

(221.71 KB - PDF) Last update 29 June 2023

Consultation paper on draft RTSs ICT risk management tools methods processes and policies

(1003.19 KB - PDF) Last update 19 June 2023

Consultation paper on draft RTS on classification of ICT incidents

(828.24 KB - PDF) Last update 19 June 2023

Consultation paper on draft ITS on register of information

(1.76 MB - PDF) Last update 19 June 2023

Consultation paper on draft RTS on policy on the use of ICT services regarding CI functions

(567.38 KB - PDF) Last update 19 June 2023

Joint Stakeholders Groups' response to Consultation on draft RTS on classification of ICT incidents

(230.61 KB - PDF) Last update 20 September 2023

Joint Stakeholders Groups' response to Consultation on draft ITS on register of information

(272.61 KB - PDF) Last update 20 September 2023

Joint Stakeholders Groups' response to Consultation on draft RTS on policy on the use of ICT services regarding CI functions

(177.23 KB - PDF) Last update 20 September 2023

Joint Stakeholders Groups' response to Consultation on draft RTSs ICT risk management tools methods processes and policies

(310.37 KB - PDF) Last update 20 September 2023

Responses to public consultations on DORA (1st batch)

(1.11 MB - Excel Spreadsheet)

Public hearings

Public hearing on ESAs Joint Committee Technical standards under DORA

Presentation

(2.01 MB - PDF) Last update 17 July 2023

Template register of info at (sub)consolidated level [xlsx]

(85.42 KB - Excel Spreadsheet) Last update 17 July 2023

Template register of info at Entity level [xlsx]

(70.3 KB - Excel Spreadsheet) Last update 17 July 2023

Press contacts

Franca Rosa Congiu