机构应将ESG风险纳入其常规风险管理框架中,以考虑其作为所有传统类别财务风险的潜在驱动因素,包括信贷,市场,运营,声誉,流动性,商业模式和集中风险。机构在短期内,长期和长期内应具有强大而合理的方法来管理和减轻ESG风险,包括至少10年的时间范围,并应应用一系列风险管理工具,包括与交易对手的交战。机构应将ESG风险嵌入其常规过程中,包括风险食欲,内部控制和ICAAP。此外,机构应通过有效的内部报告框架以及一系列向前和前瞻性的ESG风险指标和指标来监视ESG风险。
机构应将ESG风险纳入其常规风险管理框架中,以考虑其作为所有传统类别财务风险的潜在驱动因素,包括信贷,市场,运营,声誉,流动性,商业模式和集中风险。机构在短期内,长期和长期内应具有强大而合理的方法来管理和减轻ESG风险,包括至少10年的时间范围,并应应用一系列风险管理工具,包括与交易对手的交战。机构应将ESG风险嵌入其常规过程中,包括风险食欲,内部控制和ICAAP。此外,机构应通过有效的内部报告框架以及一系列向前和前瞻性的ESG风险指标和指标来监视ESG风险。
本指导说明旨在为银行、外国机构分支机构和控股公司(以下统称“银行”)提供指导,如何将气候相关风险纳入其治理和风险管理框架,包括银行内部资本充足率评估流程(ICAAP)的指导。1. 引言 1.1 气候变化可能导致物理 1 和转型 2 风险,这些风险可能影响银行的安全和稳健性,并对金融业产生更广泛的金融稳定影响。为此,银行必须积极采取措施应对气候相关风险。 1.2 审慎管理局制定了本指导说明,以加强和改进与气候相关风险相关的风险管理实践,增强金融稳健性和稳定性。本指导说明旨在根据机构的规模、性质和复杂程度以及每家机构愿意接受的总体风险水平按比例应用。
ALCO Asset and Liability Committee BARC Board Audit, Risk and Compliance Committee Board CCB NZL Board of Directors CC Credit Committee CCB or CCBG China Construction Bank Corporation CCB NZB China Construction Bank Corporation New Zealand Branch CCB NZBG or CCB NZ China Construction Bank Corporation New Zealand Banking Group CCB NZL or the Bank China Construction Bank (New Zealand) Limited CCC Climate Change Commission CRO Chief Risk Officer ELT Executive leadership team GHG Green House Gas ICAAP Internal Capital Adequacy Assessment Process ICCC CCB NZBG Internal Controls and Compliance Committee NGFS Network for Greening the Financial System NZBA New Zealand Banking Association PCAF Partnership for Carbon Accounting Financials RAS Risk Appetite Statement RBNZ Reserve Bank of New Zealand RCP Representative Concentration Pathways RMC CCB NZBG Risk Management Committee SBTi Science基于气候相关的财务披露的态度TCFD XRB外部报告委员会封面图像:库克山和新西兰Pukaki湖
ACRONYMS ACM Access Control Matrix AI Artificial Intelligence API Application Programming Interface ATM Automated Teller Machine BOFIA Banks and Other Financial Institutions Act BYOD Bring-Your-Own-Device CCISO Certified Chief Information Security Officer CISM Certified Information Security Manager CISO Chief Information Security Officer CISSP Certified Information Systems Security Professional CSAT Cybersecurity Self-Assessment tool CSP Cloud Service Providers CTI Cyber-Threat Intelligence DDoS Distributed Denial-of-Service DLT Distributed Ledger Technology DMBs Deposit Money Banks ERM Enterprise-wide Risk Management FS-ISAC Financial Services Information Sharing and Analysis Centre IaaS Infrastructure as a Service ICAAP Internal Capital Adequacy Assessment Process IDS Intrusion Detection System IoT Internet of Things IPS Intrusion Prevention System IR Incident Response ISSC Information Security Steering Committee IT Information Technology KYC Know Your Customer MFA Multifactor Authentication ML Machine Learning NDPA Nigerian Data Protection Act NeFF Nigeria Electronic Fraud Forum NFC Near Field Communication NFIC Nigeria Financial Industry CERT NgCERT Nigeria Computer Emergency Response Team NigFinCERT Nigeria Financial Computer Emergency Response Team OSINT Open-Source Intelligence PaaS Platform as a Service PAM Privileged Access Management PoS Point of Sale PSBs Payment Service Banks PenTest Penetration Test QR Quick Response RBAC Role Based Access Control SaaS Software as a Service SDLC软件开发生命周期SFI监督金融机构SLA服务水平协议SOC安全操作中心USSD非结构化补充服务数据VPN虚拟专用网络