Source: OJ L, 2024/1620, 19.6.2024

Current language: SV

Artikel 89 Säkerhetsregler om skydd av säkerhetsskyddsklassificerade uppgifter och känsliga icke-säkerhetsskyddsklassificerade uppgifter


Summary What does Article 89 of the Anti-money laundering authority regulation (AMLAR) say?

This article establishes the security framework that AMLA must put in place for handling classified and sensitive information.

It requires the Authority to mirror the Commission's own security standards, covering how such information is exchanged, processed, and stored.

It also sets a clear approval gate: the Executive Board adopts the security rules, but only after the Commission has approved them.

The article connects closely to Article 88, which deals with professional secrecy obligations, together forming the broader confidentiality and information security regime governing the Authority.

Important points:

  • The Authority is required to adopt security rules equivalent to the Commission's own rules for protecting both EU Classified Information and sensitive non-classified information.
  • The Authority's security rules must be adopted by the Executive Board following approval by the Commission.
  • Any administrative arrangement or ad hoc release of EU Classified Information to third-country authorities is subject to the Commission's prior approval.

Springlex's summary of the article, a reading aid, not a substitute for the legal text.

    1. Myndigheten ska anta sina egna säkerhetsbestämmelser som motsvarar kommissionens säkerhetsbestämmelser för skydd av säkerhetsskyddsklassificerade EU-uppgifter och känsliga icke-säkerhetsskyddsklassificerade uppgifter, enligt kommissionens beslut (EU, Euratom) 2015/443(45) och (EU, Euratom) 2015/444. Myndighetens säkerhetsbestämmelser ska bland annat omfatta bestämmelser om utbyte, behandling och lagring av sådana uppgifter. Direktionen ska anta myndighetens säkerhetsbestämmelser efter kommissionens godkännande.

    1. Varje administrativt arrangemang för utbyte av säkerhetsskyddsklassificerade uppgifter med de berörda myndigheterna i ett tredjeland eller, i avsaknad av sådana arrangemang, varje exceptionell ad hoc-utlämning av säkerhetsskyddsklassificerade EU-uppgifter till dessa myndigheter, ska ha godkänts av kommissionen på förhand.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod