Fintech Solutions
Sound technology governance has evolved from best practice to regulatory expectation. FSC-licensed entities must demonstrate robust IT governance, cybersecurity controls, business continuity arrangements, and third-party risk management. Aurevya designs governance frameworks that satisfy regulators and protect your business.
Overview
The FSC Mauritius ICT guidelines apply to all licensed entities and set out explicit expectations for IT governance, cybersecurity, business continuity, and third-party risk management. Technology risk has become a priority supervisory focus, the FSC is increasingly likely to assess technology governance during licence examinations, and weaknesses in this area can result in licence conditions, enhanced reporting requirements, or enforcement action.
Cyber risk is now characterised as a systemic concern in financial services globally. The FSC expects licensed fintech entities to have a documented technology risk appetite, board-level oversight of technology risk, and a cybersecurity framework that is proportionate to the nature and scale of the business. This includes controls for access management, network security, endpoint protection, data encryption, and vulnerability management, as well as a tested incident response plan.
Cloud computing governance is a particular focus for fintech businesses, which rely heavily on cloud infrastructure. The FSC requires that licensed entities assess the risks of cloud usage, maintain appropriate contractual protections with cloud providers, ensure data residency and sovereignty requirements are met, and have plans for cloud provider failure or service disruption.
The Mauritius Data Protection Act 2017 adds a further layer of obligation, requiring licensed entities to implement appropriate technical and organisational measures to protect personal data, appoint a Data Protection Officer where required, and notify the Data Protection Office of significant breaches. Aurevya integrates data protection compliance into the broader technology governance framework.
What We Do
Process
Ideal Clients
FAQ
Speak with our team to design a technology governance framework that satisfies FSC requirements and protects your fintech business.
Speak with Us