Data & Privacy
AI & Trust
Cybersecurity
Digital Services & Media
CHAPTER I
General provisionsArticles 1 — 4
CHAPTER II
ICT risk managementArticles 5 — 16
CHAPTER III
ICT-related incident management, classification and reportingArticles 17 — 23
CHAPTER IV
Digital operational resilience testingArticles 24 — 27
CHAPTER V
Managing of ICT third-party riskArticles 28 — 44
CHAPTER VI
Information-sharing arrangementsArticles 45 — 45
CHAPTER VII
Competent authoritiesArticles 46 — 56
CHAPTER VIII
Delegated actsArticles 57 — 57
CHAPTER IX
Transitional and final provisionsArticles 58 — 64
ARTICLE 17
ICT-related incident management process
ARTICLE 18
Classification of ICT-related incidents and cyber threats
ARTICLE 19
Reporting of major ICT-related incidents and voluntary notification of significant cyber threats
ARTICLE 20
Harmonisation of reporting content and templates
ARTICLE 21
Centralisation of reporting of major ICT-related incidents
ARTICLE 22
Supervisory feedback
ARTICLE 23
Operational or security payment-related incidents concerning credit institutions, payment institutions, account information service providers, and electronic money institutions