CPS230 NAB Notes Flashcards
1
Q
What are the two main goals of CPS 230?
A
- Strengthen Operational Resilience
- Minimising impacts to customers from disruptions to Critical Operations.
2
Q
What are the 4 key ways CPS 230 aims to strengthen operational resilience?
A
- Identifying Critical Operations and minimising the impact of disruptions across these.
- Strengthening the management of operational risks.
- Improving business continuity planning.
- Enhancing third-party risks management.
3
Q
What CPS will CPS 230 operate alongside of?
A
CPS 234 Information Security
4
Q
What CPS’s will CPS 230 replace?
A
- CPS 231 Outsourcing
- CPS 232 Business Continuity Management
5
Q
What are our three key compliance dates (applicable at a Group-wide level)?
A
- 31 Dec 2024 - Internal Readiness Target as recommended by NAB Board
- 1 July 2025 - APRA effective date of new standard
- 1 July 2026 - APRA effective date for all pre-existing Contacts with Material Service Provides to be updated.
6
Q
Why do we need Program Work Streams to comply with CPS 230?
A
A gap analysis identified areas we need to uplift - this will be done by the Program Work Streams
7
Q
What are the 5 Program Work Streams delivering some kind of uplift to achieve compliance with CPS 230?
A
- Critical Operations Framework
- Service Provider Management
- Business Continuity Management
- Operational Risk Management
- Compliance Frameworks
8
Q
What are the 3 Enabling Activities supporting the Program Work Streams?
A
- Governance & Reporting
- Technology Enablement
- IT Resilience