procedure

Outsourcing and third party risk management Supervisory Statement: central securities depositories

ID 21775

The Prudential Regulation Authority (PRA) of the Bank of England has issued a new Supervisory Statement addressed at central securities depositories (CSDs) as regards the PRA’s expectations concerning „outsourcing and third party risk management“.
The statement thereby sets out expectations in the following areas, among others:
– Governance, oversight and documentation which includes, among other aspects, the documentation and continuous recording of existing outsourcing arrangements or the assignment of responsibilities among Board members and „regular“ staff;
– Pre-outsourcing analysis and due diligence which pertains to the careful selection of a service provider and an analysis of the risks involved in a possible outsourcing arrangement (e.g. concentration risk, operational risk);
– Key contractual elements which are those terms and provisions that must be an integral part of the outsourcing service agreement;
– Information security which includes the development of policies with respect to data classification (e.g. critical / non-critical) and location and the monitoring of compliance; and
– Exit strategies pertaining to the development of policies to enable a firm to terminate the outsourcing arrangement without material business interruption.
The Supervisory Statement also covers access and audit issues such as the need to have the cloud service audited and reported on on a regular basis and notification requirements in case the outsourcing service provider supplements material business functions of the firm. Finally, a paragraph is dedicated to the issue of „Sub-outsourcing“ to ensure that firms include specific dos and don’ts in their outsourcing agreements regarding sub-outsourcing and the monitoring of such.

Other Features
assessment
auditing
compliance
CSD
data protection
due diligence
outsourcing
re-outsourcing
reporting
Date Published: 2023-02-08
Date Taking Effect: 2024-02-09
Regulatory Framework: Retained Central Securities Depositories Regulation (UK CSDR)
Regulatory Type: procedure

The Bank of England’s approach to statutory notice decisions for use of its ...

ID 26454
The Bank of England has launched a consultation on a proposed new statement of policy outl ...

Index Linked Treasury Stocks

ID 26408
The Prudential Regulation Authority (PRA) has published a press statement declaring the in ...

CP28/23 – Leverage ratio treatment of omnibus accounts and other minor corrections ...

ID 26397
The Prudential Regulation Authority (PRA) has launched a new consultation (CP28/23) on the ...

PS19/23 – Responses to proposed minor amendments in CP8/23, Chapter 11 of CP12/23 ...

ID 26373
The Prudential Regulation Authority (PRA) has issued a Policy Statement which responds to ...
  • Topic Filter

    Top Tag Search
    Top Tag Search
    Top Tag Search
    Top Tag Search
You are on the training version of RISP core with limited functions and data. Please subscribe to RISP core for professional or academic use. We supply free real time datasets for approved academic research; professional subscriptions start at 950€ plus VAT per annum.

Compare Listings