RTS: ICT-related incident classification and cyber threat reporting
COMCMT1R-EP1R-C2R-EPCNCADO
Updated 28mo ago
This procedure sets out detailed rules for classifying and reporting ICT-related incidents and cyber threats within the EU's financial sector. It aims to ensure consistent reporting and supervision across member states, enhancing the resilience of financial services against digital risks.
Financial institutions will need to adhere to specific criteria for classifying incidents and meet defined thresholds for reporting major events. This impacts how they manage and communicate cybersecurity issues to authorities.