Category

July 21, 2026

Financial Institutions Circulars

Together, they point to a regulator that is sharpening prudential expectations while also reducing unnecessary reporting friction. For firms, the message is simple: safeguarding arrangements must be well-justified, well-documented and continuously monitored, and reporting systems must start preparing now for a more structured, JSON-based future.

Read article
Supervisory ICT Risk and Cybersecurity Circulars

Among the main pressure points, the MFSA highlighted weaknesses in business continuity, incident handling, patch and vulnerability management, and contractual controls for ICT outsourcing arrangements. It also noted that overreliance on unverified generative AI in submissions can create generic or inaccurate materials that slow down authorisation processes.

Read article