- Relevance
- Publication date
- Update date
- A to Z
- Z to A
- 1 / 8
- 2 / 8
- 3 / 8
- 4 / 8
- 5 / 8
- 6 / 8
- 7 / 8
- 8 / 8
152 Result(s)
-
CSSF circular
Published on 09.04.2025
Circular CSSF 25/881
amending Circular CSSF 20/750 on requirements regarding information and communication technology (ICT) and security risk management
-
CSSF circular
Published on 09.04.2025
Circular CSSF 25/882
on requirements on the use of ICT third-party services for Financial Entities subject to the Digital Operational Resilience Act (DORA)
-
CSSF circular
Published on 09.04.2025
Circular CSSF 25/880
on relationship management of payment service users and PSP ICT assessment
-
CSSF circular
Updated on 09.04.2025 - Published on 25.08.2020
Circular CSSF 20/750 (as amended by Circulars CSSF 22/828 and 25/881) (French version being updated)
Requirements regarding information and communication technology (ICT) and security risk management
-
CSSF circular
Published on 29.12.2022
Circular CSSF 22/828
Amendment of Circular CSSF 20/750 on requirements regarding information and communication (ICT) and security risk management
-
Communiqué
Published on 09.04.2025
-
Communiqué
Published on 09.04.2025
-
Press release
Published on 24.01.2022
The CSSF published a white paper on DLT and blockchain
Press release 22/01
In light of the many questions surrounding Distributed Ledger Technology (DLT) and blockchain, the Commission de Surveillance du Secteur Financier (CSSF) is sharing its advice on assessing the risks when designing or implementing a project using DLT by publishing a white paper.
-
Press release
Archived since 08.01.2024 - Published on 20.10.2021
Publication of a new CSSF Circular on the obligation to notify in the case of IT outsourcing
Press release 21/25
In response to the continuing development of material IT outsourcing, the Commission de Surveillance du Secteur Financier (CSSF) simplifies its procedures for prior provision of information in this respect through Circular CSSF 21/785.
-
CSSF regulation
Published on 05.01.2024
CSSF Regulation No 24-01 of 5 January 2024
relating to the notification of incidents according to the Law of 28 May 2019 transposing Directive (EU) 2016/1148 of the European Parliament and of the Council of 6 July 2016 concerning measures for a high common level of security of network and information systems across the European Union.
-
Law
Published on 31.05.2019
Law of 28 May 2019
Law of 28 May 2019 transposing Directive (EU) 2016/1148 of the European Parliament and of the Council of 6 July 2016 concerning measures for a high common level of security of network and information systems across the European Union and amending
1° the Law of 20 April 2009 establishing a Government IT Centre, as amended; and
2° the Law of 23 July 2016 establishing a High Commission for National Protection. -
EU regulation
Published on 31.01.2018
Commission Implementing Regulation (EU) 2018/151 of 30 January 2018
laying down rules for application of Directive (EU) 2016/1148 of the European Parliament and of the Council as regards further specification of the elements to be taken into account by digital service providers for managing the risks posed to the security of network and information systems and of the parameters for determining whether an incident has a substantial impact
-
CSSF regulation
Published on 20.07.2020
CSSF Regulation No 20-04 of 15 July 2020 (only in French)
on the definition of essential services according to the Law of 28 May 2019 transposing Directive (EU) 2016/1148 of the European Parliament and of the Council of 6 July 2016 concerning measures for a high common level of security of network and information systems across the European Union
-
CSSF circular
Archived since 30.06.2022 - Published on 07.01.2013
Circular CSSF 13/554 repealed by Circular CSSF 22/805
Evolution of the usage and control of the tools for managing information technology resources and the management of access to these resources
-
Technical document
Published on 07.04.2025
-
Form
Published on 09.04.2025
-
RTS
Published on 25.06.2024
Commission Delegated Regulation (EU) 2024/1774 of 13 March 2024
supplementing Regulation (EU) 2022/2554 of the European Parliament and of the Council with regard to regulatory technical standards specifying ICT risk management tools, methods, processes, and policies and the simplified ICT risk management framework
-
RTS
Published on 25.06.2024
Commission Delegated Regulation (EU) 2024/1773 of 13 March 2024
supplementing Regulation (EU) 2022/2554 of the European Parliament and of the Council with regard to regulatory technical standards specifying the detailed content of the policy regarding contractual arrangements on the use of ICT services supporting critical or important functions provided by ICT third-party service providers
-
CSSF circular
Published on 09.04.2025
Circular CSSF 25/883
amending Circular CSSF 22/806 on outsourcing arrangements
-
EU regulation
Published on 30.05.2024
Commission Delegated Regulation (EU) 2024/1502 of 22 February 2024
supplementing Regulation (EU) 2022/2554 of the European Parliament and of the Council by specifying the criteria for the designation of ICT third-party service providers as critical for financial entities
- Relevance
- Publication date
- Update date
- A to Z
- Z to A
- 1 / 8
- 2 / 8
- 3 / 8
- 4 / 8
- 5 / 8
- 6 / 8
- 7 / 8
- 8 / 8