Commission Implementing Regulation (EU) 2025/302 of 23 October 2024 establishes implementing technical standards for the application of Regulation (EU) 2022/2554 concerning digital operational resilience for the financial sector. Specifically, it sets out the standard forms, templates, and procedures that financial entities must use to report major ICT-related incidents and to notify significant cyber threats. This regulation aims to harmonize and streamline the reporting process across the EU, ensuring timely and consistent communication of critical ICT incidents and cyber threats within the financial sector. It is binding in its entirety and directly applicable in all Member States, entering into force on the twentieth day following its publication in the Official Journal of the European Union on 20 February 2025.
Publication's URL
URL: https://eur-lex.europa.eu/eli/reg_impl/2025/302/oj/engPublication's scorecard
Country: EU
Scope: Cyber
Typology: Regulation
Publication's date: October 23, 2024
Category: Cyber Resilience
Sector: Finance
Rating: