Artefacts

08.10.25

Guidance for Firm Operational Resilience

This third edition of the guidance provides updated principles and practical direction for UK financial firms implementing operational resilience frameworks. It supports compliance with PRA SS1/21 and FCA PS21/3, covering the identification of Important Business Services (IBSs), setting and testing Impact Tolerances (ITOLs), mapping critical resources, managing vulnerabilities, and embedding resilience into governance and culture. The guidance also includes a structured approach to scenario testing and self-assessment, with emphasis on continuous improvement, third party dependencies, and lessons learned from sector-wide incidents such as the 2024 CrowdStrike outage.

Click here to access the document.