Finance & Banking
Meet the regulator's expectations. Keep the service running. Banks, insurers, microfinance institutions, and payment providers answer to a central bank as well as a data protection authority. We run both obligations from one programme.
Who this serves
Two regulators. One programme.
Banks, insurers, microfinance institutions, and payment providers answer to a central bank as well as a data protection authority. We map both obligations onto a single control set, so one programme satisfies the regulator and the data protection authority at once, instead of running two.
What we cover
Six things, one programme.
Bank Al-Maghrib, CBN & CBE cybersecurity and IT risk expectations
PCI DSS for card environments
Penetration testing at your regulator's required frequency
Third-party risk for the fintechs inside your perimeter
Incident notification within regulatory deadlines
Board-level reporting your directors can defend
Typical first engagement
3 weeks
A gap assessment against your central bank's framework, delivered in three weeks, with a costed closure plan.
Talk to us
Get your gap assessment.
Same NDA, same named consultant, scoped to your central bank's framework. No cost, no obligation.