NBU to tighten requirements for banks' information security after cyber attack

The National Bank of Ukraine (NBU) has proposed to tighten the requirements for the banks' information security and developed a corresponding draft resolution, according to the NBU's website.

!!!!!!!!!!!!!!!! UAA1 !!!!!!!!!!!!!!!

It is proposed to implement the mandatory requirements for the organization of information security in stages: first, to implement basic measures before March 2018. And second, to introduce additional measures on improvement of information security maturity level before September 2019, the report says.

Information security measures include protection from malicious code, e-mail protection, control over access to the bank's information systems, security measures in the network and cryptographic protection.

The regulator notes that the project fully complies with the principles of European Union law and Ukraine's commitments in the field of European integration, and its implementation will make it possible to tighten the requirements for the data protection in the Ukrainian banks' information systems, taking into account current cyber threats.

Read alsoLarge-scale cyber attack on corporate, public networks stoppedThe draft resolution is posted on the NBU website for public discussion, according to the regulator.

As UNIAN reported earlier, several Ukrainian banks, as well as some enterprises of the commercial and public sectors, were affected by external hacker attacks by an unknown virus on June 27. As a result, they had been experiencing difficulties in servicing clients and conducting banking operations.

In particular, the state-run Oschadbank and Ukrgasbank reported on their branches' limited mode of operation.

Experts admit that Ukraine's economic losses may account for about 0.5% of the country's annual GDP as a result of the hacker's attack.

!!!!!!!!!!!!!!!!!!!!!!!! UAA2 !!!!!!!!!!!!!!!!!!!!!