Search
Consultation on Joint draft RTS on subcontracting ICT services supporting critical or important functions
EBA Annual Report highlights key achievements in 2022
The European Banking Authority (EBA) today published its Annual Report that sets out the activities and achievements in 2022 and provides an overview of the key priorities for 2023.
Joint Regulatory Technical Standards on subcontracting ICT services supporting critical or important functions
ESAs launch discussion on criteria for critical ICT third-party service providers and oversight fees
The European Supervisory Authorities (EBA, EIOPA and ESMA - ESAs) today published a joint Discussion Paper seeking stakeholders’ input on aspects of the Digital Operational Resilience Act (DORA). This Discussion Paper follows the European Commission’s request for technical advice on the criteria for critical ICT third-party providers (CTPPs) and the oversight fees to be levied on them. Interested stakeholders are invited to provide their input by 23 June 2023.
ESAs publish Joint Annual Report for 2022
The Joint Committee of the European Supervisory Authorities (EBA, EIOPA and ESMA - ESAs) today published its 2022 Annual Report, which provides an account of its joint work completed over the past year.
ESAs and ENISA sign a Memorandum of Understanding to strengthen cooperation and information exchange
The European Supervisory Authorities (EBA, EIOPA, and ESMA - the ESAs) today announced that they have concluded a multilateral Memorandum of Understanding (MoU) to strengthen cooperation and information exchange with the European Union Agency for Cybersecurity (ENISA).
Internal organisation
Joint Guidelines on estimation of aggregated annual costs and losses caused by major ICT-related incidents
Expert positions
Guidelines on ICT and security risk management
Reporting framework 3.5
Annual Report 2024
Joint Guidelines on the oversight cooperation and information exchange between the ESAs and the competent authorities
ESAs online workshop with ICT third-party providers: CTPP designation and the preparatory phase for the oversight framework
EBA publishes final revised Guidelines on major incident reporting under PSD2
The European Banking Authority (EBA) published today its final revised Guidelines on major incident reporting under the Payment Service Directive (PSD2). The revised Guidelines optimise and simplify the reporting process and templates, focus on incidents with significant impact on payment service providers (PSPs), and improve the meaningfulness of the information to be reported. The revised Guidelines are also estimated to reduce the reporting burden for PSPs.
Empowering through data: dissemination and analytics at the EBA Hub
ESAs welcome ESRB Recommendation to create a pan-European systemic cyber incident coordination framework
The three European Supervisory Authorities (EBA, EIOPA and ESMA – ESAs) published today a statement welcoming the European Systemic Risk Board’s (ESRB) Recommendation on systemic cyber risk, which calls on the ESAs to prepare for the gradual development of a Pan-European systemic cyber incident coordination framework (EU-SCICF). This will support an effective and coordinated response at EU-level in the event of a major cross-border cyber incident that could have a systemic impact on the Union’s financial sector.
ESAs publish Joint Annual Report for 2023
The Joint Committee of the European Supervisory Authorities (EBA, EIOPA and ESMA - ESAs) today published its 2023 Annual Report, providing an account of the joint work completed over the past year.
ESAs publish Joint Annual Report for 2024
The Joint Committee of the European Supervisory Authorities (EBA, EIOPA and ESMA - ESAs) today published its 2024 Annual Report, which provides an overview of the joint ESAs work completed during the past year.