Enhanced monitoring requirements for registrars mandate board approved risk, data protection, continuity policies and periodic regulatory reporting. QRTAs must adopt a Board approved policy framework requiring integrated risk management (operational, fraud, technology, cyber and business risks), robust data access and protection protocols with onshore data residency and off site backups, tested Business Continuity Plans with off site recovery centers and wind down plans, scalable infrastructure, insurance for operational risks, documented operations manuals, and establishment of Board committees to oversee governance, with mandatory quarterly Board reviewed enhanced reporting in the prescribed format.
Cases where this provision is explicitly mentioned in the judgment/order text; may not be exhaustive. To view the complete list of cases mentioning this section, Click here.
Provisions expressly mentioned in the judgment/order text.
Enhanced monitoring requirements for registrars mandate board approved risk, data protection, continuity policies and periodic regulatory reporting.
QRTAs must adopt a Board approved policy framework requiring integrated risk management (operational, fraud, technology, cyber and business risks), robust data access and protection protocols with onshore data residency and off site backups, tested Business Continuity Plans with off site recovery centers and wind down plans, scalable infrastructure, insurance for operational risks, documented operations manuals, and establishment of Board committees to oversee governance, with mandatory quarterly Board reviewed enhanced reporting in the prescribed format.
Full Summary is available for active users!
Note: It is a system-generated summary and is for quick reference only.