Skip to main content

3.3.12 Payment Systems

No: 381000091275 Date(g): 24/5/2017 | Date(h): 28/8/1438 Status: In-Force

Principle

The Member Organization should define, approve, implement and monitor a cyber security standard for payment systems. The effectiveness of this process should be measured and periodically evaluated.

Objective

To ensure the Member Organization safeguards the confidentiality and integrity of shared banking systems.

Control considerations

  •  
For Saudi Arabian Riyal Interbank Express (SARIE) information, please refer to the SARIE Information Security Policy, Version Issue 1.0 - June 2016.
 
  •  
For MADA information, please refer to the following sections in the MADA Rules and Standards Technical Book (see appendix A):
 
 
  •  
Part IIIa - Security Framework, Version Issue 6.0.0 - May 2016
 
 
  •  
Part IIIb - HSM Requirements, Version Issue 6.0.0 - May 2016
 
 
  •  
SAMA CA IPK Certificate Procedures, Version Issue 6.0.1 - October 2016