RM-9.1.5

Past version: Effective from 01 Apr 2019 to 30 Sep 2021
To view other versions open the versions tab on the right

The Board of the investment firm licensee must be responsible for:

a) Setting and approving a cyber risk strategy commensurate with the size, nature of activities and the risk profile;
b) Ensure that cyber roles withing the organization have been aligned to the cyber risk strategy;
c) Approving a cyber risk management framework;
d) Determining the manner in which it oversees implementation of the cyber risk management framework by senior management; and
e) Receiving reports on all cyber incidents.
Added: April 2019