What Directive (EU) 2015/2366 on payment services in the internal market, Article 96: Management of operational and security risks requires
This article requires payment service providers to establish, maintain, and annually report on a comprehensive risk management framework, including incident management procedures and regular, independent audits of security measures.
Pillar: Banking & Global Finance · Authority: European Parliament and Council of the European Union · Version: 1.0.0 · Last updated:
Primary source: https://eur-lex.europa.eu/legal-content/EN/TXT/HTML/?uri=CELEX:32015L2366
SHA-256 integrity: a9861b16718d78be58192314d0a19d668a3e9c786b2a38d54b1904af755f7f2c
Primary Citations — 7 traced to source
- Article 96(1): Member States shall ensure that payment service providers establish a framework with appropriate mitigation measures and control mechanisms to manage the operational and security risks, relating to the payment services they provide.
- Article 96(1): As part of that framework, payment service providers shall establish and maintain effective incident management procedures, including for the detection and classification of major operational and security incidents.
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/psd2-directive-article-96-authentication-and-communication.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/psd2-directive-article-96-authentication-and-communication.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/psd2-directive-article-96-authentication-and-communication
- Back to registry: Browse all 10,090 compliance nodes