EBA Guidelines on ICT and Security Risk Management (EBA/GL/2024/07)
EBA GL 3.4: Information Security

EBA Guidelines on ICT and Security Risk Management (EBA/GL/2024/07) EBA-GL-3.4.4: ICT operations security

Institutions shall implement security measures in ICT operations, including configuration and hardening, protection against malware, vulnerability and patch management, and encryption of data in transit and at rest as appropriate.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in EBA GL 3.4: Information Security

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.