Financial Sector Cybersecurity Strategy 2026–2028

The Royal Monetary Authority of Bhutan (RMA) has commenced implementation of the Financial Sector Cybersecurity Strategy 2026 – 2028, establishing a coordinated, risk-based framework for managing cyber risks across the financial sector from August 27.

In collaboration with the International Monetary Fund (IMF), the RMA conducted capacity building, sector-wide preparedness, and pilot cyber-risk supervision activities from 13–25 August 2026, strengthening cyber resilience and safeguarding financial stability.

From 13–17 August, RMA conducted a capacity-building workshop to strengthen cybersecurity knowledge, awareness, and institutional capabilities across the RMA and financial institutions.

From 18–20 August, RMA conducted Exercise Ngul-Sung 2026, a financial sector cybersecurity tabletop exercise (TTX) to test incident escalation and decision-making, information sharing and coordination, crisis communication, and the continuity and recovery of critical financial services during significant cyber and operational disruptions.

A pilot cyber-risk onsite supervision programme was undertaken with selected financial institutions to test the risk-based supervisory approach and refine supervisory framework from 21–25 August.

These activities mark the initial implementation of the Financial Sector Cybersecurity Strategy 2026–2028, translating strategic priorities into implementation measures to strengthen financial system resilience and ensure the continuity of critical financial services.

The RMA said it remains committed to working with financial institutions and relevant stakeholders to build a secure, resilient and trusted financial sector for Bhutan.

Check Also

Third child program to apply to Bhutanese overseas

The Third Child Plus Programme (TCPP) applies to eligible Bhutanese families, whether they reside in …

Leave a Reply

Your email address will not be published. Required fields are marked *