Info

🔗 Back to Summary. 🇫🇷 French Version: 2024R1774_FR.9. Back to Summary of LVL1. Open the PDF. Direct link to EUR-LEX.

Article 8 – Policies and procedures for ICT operations ⬅️ | ➡️ Article 10 – Vulnerability and patch management

Article 9 - Capacity and performance management

1.

As part of the ICT security policies, procedures, protocols, and tools referred to in 2022, financial entities shall develop, document, and implement capacity and performance management procedures for the following:

(a)

the identification of capacity requirements of their ICT systems;

(b)

the application of resource optimisation;

(c)

the monitoring procedures for maintaining and improving:

(i)

the availability of data and ICT systems;

(ii)

the efficiency of ICT systems;

(iii)

the prevention of ICT capacity shortages.

2.

The capacity and performance management procedures referred to in paragraph 1 shall ensure that financial entities take measures that are appropriate to cater for the specificities of ICT systems with long or complex procurement or approval processes or ICT systems that are resource-intensive.