Under active development Content is continuously updated and improved

Article 16.2Article 16.2

>Control Description

The ICT risk management framework referred to in paragraph 1, second subparagraph, point (a), shall be documented and reviewed periodically and upon the occurrence of major ICT-related incidents in compliance with supervisory instructions. It shall be continuously improved on the basis of lessons derived from implementation and monitoring. A report on the review of the ICT risk management framework shall be submitted to the competent authority upon its request.

>Cross-Framework Mappings

Ask AI

Configure your API key to use AI features.