RM-9.1.2

Licensees must ensure that the cyber security risk management framework encompasses, at a minimum, the following components:

a) Cyber security strategy;
b) Cyber security policy; and
c) Cyber security risk management approach, tools and methodology and, an organization-wide security awareness program.
Amended: January 2022
Added: April 2019