Purpose
Translate the CBCS electronic banking guidance into a testable BCMS requirement for e-banking risk management and customer protection.
Normative
Bitkaya shall maintain safe and sound electronic banking arrangements that identify e-banking risks, apply risk-mitigating countermeasures, maintain effective internal control, manage cross-border exposure and support customer security, education and transparency.
Descriptive
This requirement reflects the e-banking guidance on risk management, e-banking risk characteristics, countermeasures, internal control, cross-border activity, customer security and transparency.
Source reference: Provisions and Guidelines for Safe and Sound Electronic Banking.
Assurance Assertions
- E-banking risks are identified and managed.
- Customer security and transparency requirements are documented.
- Internal control over e-banking remains in place.
Relationships
- Source: SRC-IT-001 CBCS IT Governance, Security, Continuity and Testing Guidelines
- Policy: POL-IT-001 IT and Cybersecurity Manual
- Process: PRC-RSA-001 Resilience Systems and Assurance
- Procedure: PROC-IT-004 Maintain Safe and Sound Electronic Banking
- Control: CTRL-IT-004 Ensure Safe and Sound Electronic Banking Is Maintained
- Systems: not yet assigned; tracked under ISS-VASP-001
- Publications: PUB-TRAIN-005 IT Compliance Training
Assurance
- Source verified: yes
- Implementation linked: yes
- Wording unambiguous: review
History
- 2026-07-26: Created from SRC-IT-001.
- 2026-07-26: Linked to the IT process, procedure and control set.
- 2026-07-26: Added the missing IT policy metadata mapping.