2021 Technology Risk Management Guidelines: Stricter Requirements on Financial Institutions Concerning Technology Risk Governance and Security Controls

The revised Technology Risk Management Guidelines (“2021 TRM Guidelines“) published on 18 January 2021 by the Monetary Authority of Singapore impose additional and/or more stringent requirements on financial institutions (“FIs“), their boards of directors and senior management concerning technology risk governance and security controls in FIs.

The revisions focus on the following key areas: (i) increased responsibilities of the Boards and senior management of FIs concerning technology risk governance and oversight; (ii) secure software development practices; (iii) managing risks from emerging technologies; and (iv) an enhanced focus on cyber resilience. 

The 2021 TRM Guidelines is effective from 18 January 2021 and apply to all FIs, including banks licensed under the Banking Act, payment services licensees under the Payment Services Act 2019, capital markets intermediaries regulated under the Securities and Futures Act, as well as insurers licensed or regulated under the Insurance Act.

This Update provides a summary of the key areas of revisions in the 2021 TRM Guidelines, along with suggested action items for FIs’ consideration to facilitate compliance with the 2021 TRM Guidelines. 

For more information, click here to read the full Legal Update. 

CONTACTS

Head, Technology, Media & Telecommunications
+65 6232 0751
Brunei, Singapore,
Deputy Head, Technology, Media & Telecommunications
+65 6232 0786
Singapore,
Partner
+65 6232 0752
Singapore,
Deputy Head, Technology, Media & Telecommunications
+65 6232 0738
Singapore,
Chief Economic and Policy Advisor
Partner
+65 6232 0298
Singapore,
Head, Financial Institutions Group
+65 6232 0456
Singapore,
Deputy Head, Financial Institutions Group
+65 6232 0482
Singapore,
Partner
+65 6232 0686
Singapore,
Consultant
+65 6232 0701
Singapore,
Head, Funds & Investment Management
+65 6232 0628
Singapore,

Country

EXPERTISE

Share

Rajah & Tann Asia is a network of legal practices based in Asia.

Member firms are independently constituted and regulated in accordance with relevant local legal requirements. Services provided by a member firm are governed by the terms of engagement between the member firm and the client.

This website is solely intended to provide general information and does not provide any advice or create any relationship, whether legally binding or otherwise. Rajah & Tann Asia and its member firms do not accept, and fully disclaim, responsibility for any loss or damage which may result from accessing or relying on this website.

© 2024 Rajah & Tann Singapore LLP. All rights reserved. Rajah & Tann Singapore LLP (UEN T08LL0005E) is registered in Singapore under the Limited Liability Partnerships Act (Chapter 163A) with limited liability.