Cybersecurity for the Insurance Sector
Insurance and reinsurance companies. 50-2000 employees.
Applicable Regulations
ACN Determination - NIS2 Security Measures
0 guidesDetermina ACN 38565/2025
Soggetti essenziali e importanti registrati presso ACN. Authority: ACN - Agenzia per la Cybersicurezza Nazionale.
ACPR IT Security Instructions for Financial Sector
0 guidesInstruction ACPR 2014-I-07
Etablissements de credit et d'assurance sous supervision ACPR. Authority: ACPR (Autorite de Controle Prudentiel et de Resolution).
AI Act
4 guidesEU Regulation 2024/1689
Regulation of artificial intelligence systems in the EU with a risk-based approach. Phased application: prohibited practices from Feb 2, 2025, GPAI obligations from Aug 2, 2025, high-risk systems from Aug 2, 2026
Bank of Lithuania Resolution on ICT Management Requirements
0 guidesLB Nutarimas Nr. 03-18 (2020)
Kredito istaigas, draudimo imones, mokejimo istaigas. Authority: Lietuvos bankas (Bank of Lithuania).
Bankaufsichtliche Anforderungen an die IT
0 guidesBAIT
Banks and financial service providers. Authority: BaFin.
Bankwesengesetz - IT security provisions
0 guidesBWG
Banks, credit institutions. Authority: FMA / OeNB.
CAA Circular on Insurance Sector IT Security
0 guidesCirculaire CAA 20/10
Entreprises d'assurance et de reassurance. Authority: CAA (Commissariat aux Assurances).
CBI Cross-Industry Guidance on IT and Cybersecurity Risks
0 guidesCBICROSS
Financial services firms regulated by CBI. Authority: CBI.
CBI Operational Resilience Guidelines
0 guidesCBIOPRES
Banks, insurance companies, investment firms. Authority: CBI.
CSIRT KNF - Financial Sector CSIRT
0 guidesCSIRTKNF
Financial sector entities. Authority: KNF.
CSSF Circulars on IT outsourcing and cybersecurity (17/654, 22/806)
0 guidesCSSFCIRC
Financial sector entities. Authority: CSSF.
Danish FSA IT Security Requirements for Financial Sector
0 guidesBEK nr. 1580 af 17/12/2019
Pengeinstitutter, forsikringsselskaber og vaerdipapirhandlere. Authority: Finanstilsynet.
DNB Good Practice Information Security
0 guidesDNB Guidance 2019
Financiele instellingen onder toezicht van DNB. Authority: De Nederlandsche Bank (DNB).
DORA
3 guidesEU Regulation 2022/2554
Digital operational resilience for the financial sector
EFSA Guidelines on IT Risk Management for Financial Sector
0 guidesFinantsinspektsiooni soovituslik juhend (2020)
Krediidiasutused, kindlustusseltsid, investeerimisettevotted. Authority: Finantsinspektsioon (EFSA).
eIDAS
2 guidesEU Regulation 910/2014 + EU Regulation 2024/1183 (eIDAS 2.0)
Digital identity and qualified trust services (digital signature, certified email, time stamp)
FCMC Regulations on IT and Security Risk Management
0 guidesFKTK normativie noteikumi 233 (2020)
Kreditiestades, apdrosinasanas sabiedribas, ieguldijumu uznemumi. Authority: FKTK (Finansu un kapitala tirgus komisija) / Latvijas Banka.
FFFS 2014:5 Informationssaekerhet, it-verksamhet
0 guidesFFFS20145
Banks, securities companies, credit market companies. Authority: Finansinspektionen.
Finanssivalvonta Standards and Regulations on IT risk management
0 guidesFINFSASTANDARDS
Banks, insurance companies, pension funds, investment firms. Authority: Finanssivalvonta.
FMA IT Security Regulation for Financial Sector
0 guidesFMA-IT-SichV 2021
Kreditinstitute, Versicherungsunternehmen, Wertpapierfirmen. Authority: FMA (Finanzmarktaufsicht).
GDPR
4 guidesEU Regulation 2016/679
Personal data protection in the European Union
IKT-forskrift for finansforetak (IKT regulation for financial entities)
0 guidesIKT_FORSKRIFT
Banks, insurance, pension, securities firms. Authority: Finanstilsynet.
ISO 27001
2 guidesISO/IEC 27001:2022 - International standard
Information Security Management System (ISMS)
IVASS 38 - Regolamento Governance Sistema Informativo (Reg. 38/2018)
2 guidesIVASS38
National cybersecurity and compliance obligations for organizations within the scope of this regulation.
KNF Recommendation D - Management of IT and ICT Environment
0 guidesKNFREKOM
Banks, credit institutions. Authority: KNF.
Legislative Decree 138/2024 - NIS2 Transposition
0 guidesD.Lgs. 138/2024
Soggetti essenziali e importanti nei 18 settori NIS2 (50+ dipendenti o 10M+ fatturato). Authority: ACN - Agenzia per la Cybersicurezza Nazionale.
MFSA ICT Risk Management Requirements (Banking Rule BR/22)
0 guidesMFSA Banking Rule BR/22
Credit institutions, insurance undertakings, investment services licensees. Authority: MFSA (Malta Financial Services Authority).
MNB Recommendation on IT Security for Financial Institutions
0 guidesMNB Ajnlas 8/2020
Hitelintezetek, biztositok, penzugyi valalatok. Authority: Magyar Nemzeti Bank (MNB).
NBB Circular on ICT Security Expectations for Financial Institutions
0 guidesCirculaire NBB_2015_32
Etablissements de credit, entreprises d'assurance, institutions de paiement. Authority: Banque Nationale de Belgique (NBB/BNB).
NBS Measure 3/2018 on IT Risk Management
0 guidesOpatrenie NBS c. 3/2018
Banky, poistovne, investicne spolocnosti. Authority: Narodna banka Slovenska (NBS).
NIS2
4 guidesEU Directive 2022/2555 - Legislative Decree 138/2024
Network and information security for essential and important entities
PCI-DSS
2 guidesPCI-DSS v4.0 (effective March 31, 2024)
Security standard for entities that handle, process, or transmit payment card data
Versicherungsaufsichtliche Anforderungen an die IT
0 guidesVAIT
Insurance companies. Authority: BaFin.
Discover Your Compliance Level for Insurance
Check in just a few minutes which regulations apply to your insurance business and the priority actions to become compliant.
Start Free AssessmentAudit your website automatically
Scan your public website for GDPR cookie banner, accessibility (WCAG 2.1 AA), legal transparency and security headers — AI generates copy-pasteable fixes and a PDF report.
Discover the Website Compliance Audit