ICT risk definition
Examples of ICT risk in a sentence
As part of the ICT risk management framework referred to in Article 5(1) and based on the identification requirements set out in Article 7, financial entities shall put in place comprehensive ICT Business Continuity Policy, which may be adopted as a dedicated specific policy forming an integral part of the overall business continuity policy of the financial entity.
The management body of the financial entity shall define, approve, oversee and be accountable for the implementation of all arrangements related to the ICT risk management framework referred to in Article 5(1).
As part of the ICT risk management framework referred to in Article 5(1), financial entities shall identify, classify and adequately document all ICT supported business functions, roles and responsibilities, the information assets and ICT assets supporting these functions, and their roles and dependencies with ICT risk.
As part of the ICT risk management framework referred to in Article 5(1), financial entities shall implement communication policies for staff and for external stakeholders.
They shall map the evolution of ICT risks over time, analyse the frequency, types, magnitude and evolution of ICT-related incidents, in particular cyber-attacks and their patterns, with a view to understand the level of ICT risk exposure, notably in relation to critical or important functions, and enhance the cyber maturity and preparedness of the financial entity.