Artefacts
We aim to deliver sectorwide operational resilience improvements to benefit the safety and security of customers through trusted and effective collaboration
Artefacts
We aim to deliver sectorwide operational resilience improvements to benefit the safety and security of customers through trusted and effective collaboration
Welcome to the CMORG Artefact library
This brings together all CMORG outputs that are accessible to industry participants. You can register to access all of these here, but to receive a response, you must provide an industry email address and be a direct industry participant.
Filter by:
Sector Response Framework
To provide a mechanism for firms, FMI and industry groups to coordinate, share information, and ensure the sector can respond effectively to significant operational incidents. Contains schematic overview of all response groups of the sector, their role and invocation procedures and links to other groups to support collaborative cross-sector engagement.
System integrity Reconnection Framework
Guidance to the UK financial sector to aid the process of resuming business and safely reconnecting an organisation that has been technically quarantined after suffering a material cyber incident.
Payments Prioritisation (Retail)
Common definitions of critical GBP retail payments to support prioritisation across the sector during severe but plausible operational disruption.
Log4J Lessons Learned
Sector learnings from the Log4j incident to optimise the approaches undertaken by larger firms and support capability building across the wider sector.
Data Vaulting Reference Architecture
Best practice approach in which data is captured and reused in response to malicious data destruction events using a cloud hosted data vault.
Payments Prioritisation (Wholesale)
Common definitions of critical GBP wholesale payments to support prioritisation across the sector during severe but plausible operational disruption.
Cloud Control Framework
A cloud framework to support consistent adoption of controls and practices across shared accountability models between FS firms and Cloud Services Providers.
Cyber Incident Reporting Framework (Ghostbusters Guide)
A single reference guide for current cyber incident reporting requirements and expected response across FSCCC, government, regulators and law enforcement. Includes decision-tree and supporting annex.
Strategic Risk Review
To provide an overview of the key sector wide operational resilience risks affecting the sector and identify those risks best suited to be resolved through collective action activity.