Source: OJ L, 2024/2956, 2.12.2024

Current language: SV

Artikel 2 Den rangordningsplats som tredjepartsleverantörer av IKT-tjänster har i leveranskedjan


Summary What does Article 2 of the ITS on register of information say?

This article establishes the ranking system used to map the position of ICT third-party service providers within a service supply chain.

It builds directly on the definitions introduced in Article 1 and operationalises the concept of "rank" by setting out a clear numerical logic: the closer a provider is to the financial entity, the lower its rank number.

This creates a structured hierarchy that financial entities must apply across all providers in their supply chain.

Important points:

  • Assign a numerical rank to each ICT third-party service provider, starting from 1, where rank 1 always belongs to the direct ICT third-party service provider.
  • Any subcontractor further down the chain must always be assigned a rank higher than 1.
  • This ranking system is the foundation for how financial entities document and distinguish between direct providers and subcontractors in the register of information.

Springlex's summary of the article, a reading aid, not a substitute for the legal text.

  1. Finansiella entiteter ska ge alla tredjepartsleverantörer av IKT-tjänster en rangordningsplats. Rangordningsplatsen ska vara ett naturligt tal högre eller lika med 1, där avtalet är närmare den finansiella entiteten ju lägre naturligt tal rangordningsplatsen har.

  2. Den direkta tredjepartsleverantören av IKT-tjänster ska alltid ha rangordningsplats 1 i leveranskedjan med IKT-tjänster.

  3. Underleverantörers rangordningsplats i leveranskedjan med IKT-tjänster ska alltid vara högre än 1.

We're continuously improving our platform to serve you better.

Your feedback matters! Let us know how we can improve.

Found a bug?

Springflod is a Swedish boutique consultancy firm specialising in cyber security within the financial services sector.

We offer professional services concerning information security governance, risk and compliance.

Crafted with ❤️ by Springflod