RM-9.1.4

Past version: Effective from 01 Oct 2019 to 30 Sep 2021
To view other versions open the versions tab on the right

The Board of the insurance licensee must be responsible for:

a) Setting and approving a cyber risk strategy commensurate with the size, nature of activities and the risk profile;
b) Ensuring that cyber roles within the organization have been aligned to the cyber risk strategy;
c) Approving a cyber risk management framework;
d) Determining the manner in which it oversees implementation of the cyber risk management framework by senior management; and
e) Receiving reports on all cyber incidents.
Added: October 2019