Animace načítání

Stránka se připravuje...


Na co čekáte? Nečekejte už ani minutu.
Získejte přístup na tento text ještě dnes. Kontaktujte nás a my Vám obratem uděláme nabídku pro Vás přímo na míru.

ROZHODNUTÍ EVROPSKÉ CENTRÁLNÍ XXXXX (XX) 2021/1758

ze xxx 21.&xxxx;xxxx 2021,

kterým xx mění rozhodnutí XXX/2007/7 x&xxxx;xxxxxxxxxx XXXXXX2-XXX (XXX/2021/43)

XXXXXXX XXXX EVROPSKÉ XXXXXXXXX XXXXX,

x&xxxx;xxxxxxx xx Xxxxxxx x&xxxx;xxxxxxxxx Xxxxxxxx xxxx, x&xxxx;xxxxxxx xx xxxxx x&xxxx;xxxxxxx xxxxxxx xx.&xxxx;127 odst. 2 xxxx xxxxxxx,

x&xxxx;xxxxxxx na statut Xxxxxxxxxx xxxxxxx xxxxxxxxxxx xxxx x&xxxx;Xxxxxxxx xxxxxxxxx xxxxx, x&xxxx;xxxxxxx na xxxxxx&xxxx;11.6 x&xxxx;xxxxxx 17, 22 a 23 tohoto xxxxxxx,

xxxxxxxx x&xxxx;xxxxx xxxxxxx:

(1)

Xxxx xxxxxxxxx xxxxxxx&xxxx;(1) xxx 20.&xxxx;xxxxxxxx 2021 xxxxxx xxxxxx Xxxxxxxx xxxxxxxxx xxxxx XXX/2012/27&xxxx;(2) x&xxxx;xxxxx: x) xxxxxxxx, že xxxxxxxx TIPS XXX xxxxx x&xxxx;XXXXXX2 xxxxxxxxx xxxxxxxxxxxxxxx xxxxxxxxxx xxxxxxx xxxxx infrastruktury Eurosystému (Xxxxxxxxxx Xxxxxx Market Xxxxxxxxxxxxxx Xxxxxxx) xx xxxxxxxxx 2021 a majitelé X2X XXX xxxxx x&xxxx;XXXXXX2 xxxxxxxxxxxxxxx xxxxxx xxxxxxx xxxxxxxxx od xxxxxx 2022; x) xxxxxxxx a rozšířit pravidla xxxxxxxx xx xxxxxxxxxx xxxxxxxxx xx xxxxxxxxxx xxxxxxxxx bodu XXXXXX2, xxx xx xxxxxxxxx, xx se xxxxxx XXXXXX2 xxxx xxxx xxxxxxx xxx, xxx xxx schopen xxxxx xxxxxxx x&xxxx;xxxxxxx xxxxxxxxxxxx xxxxxxxxxxx; c) zavést xxxxxxxxx, aby xxxxxxxx xxxx PM, jejich xxxxxxx účastníci x&xxxx;xxxxxxxxxxxxx xxxxxxxx xxxx BIC, xxxxx přistoupili x&xxxx;xxxxxxxxxxx xxxxxxx SCT Inst xxxxxxxx dohody x&xxxx;xxxxxxxxxx xxxxxxx xxx xxxxxxxx xxxxxxxxxxxxx převody XXXX, xxxx a zůstali trvale xxxxxxxxxxx xx platformě XXXX xxxxxxxxxxxxxxx XXXX XXX, xxx xxx xx xxxxxxxxx dostupnost xxxxxxxxxx xxxxxx v celé Xxxx; d) xxxxxx xxxxxxxxxxxxxxx, xxxxx xxx x&xxxx;xxxxxxx xxxxxxx zůstatků x&xxxx;xxxx xxxxxxxxx v TARGET2 xx odpovídající nástupnické xxxx x&xxxx;xxxxxxxx xxxxxxx XXXXXX, xxx byla xxxxxxxxx právní xxxxxxx, x&xxxx;x) vyjasnit x&xxxx;xxxxxxxxxxxx xxxxxxx xxxxx xxxxxxx xxxxxxxx zásad ECB/2012/27.

(2)

Jakmile xxxx zprovozněn xxxxxxx xxxxxxxxxxx X2-X2X, xxxx x&xxxx;xxxxx xxxxxx jistoty xxxxxx xxxxxxxx zajistit xxxxxxxxxxxxxxx, pokud jde x&xxxx;xxxxxxx převodu xxxxxxxx x&xxxx;xxxx účastníků x&xxxx;XXXXXX2-XXX xx odpovídající xxxxxxxxxxx xxxx.

(3)

Xxxxx xxxxxxxx zásad XXX/2012/27, které mají xxxx xx podmínky XXXXXX2-XXX, je třeba xxxxxxxxx x&xxxx;xxxxxxxxxx Xxxxxxxx xxxxxxxxx banky XXX/2007/7&xxxx;(3).

(4)

Xxxxxxxxxx XXX/2007/7 je xxxxx xxxxx xxxxxxxxxxxxx xxxxxxxx xxxxxx,

XXXXXXX XXXX XXXXXXXXXX:

Xxxxxx&xxxx;1

Xxxxx

Xxxxxxx I, XX x&xxxx;XXX xxxxxxxxxx XXX/2007/7 xx xxxx x&xxxx;xxxxxxx x&xxxx;xxxxxxxxx tohoto xxxxxxxxxx.

Článek 2

Závěrečná ustanovení

Toto rozhodnutí xxxxxxxx v platnost xxxxx xxxx xx xxxxxxxxxx x&xxxx;Xxxxxxx věstníku Xxxxxxxx xxxx.

Xxxxxxx xx xxx xxx 21. listopadu 2021, x&xxxx;xxxxxxxx odst. 1 xxxx. x) x&xxxx;xxxxxxxx 7 x&xxxx;9 přílohy II xxxxxx rozhodnutí, xxxxx xx použijí xxx xxx 13.&xxxx;xxxxxx 2022.

Xx Frankfurtu xxx Xxxxxxx xxx 21.&xxxx;xxxx 2021.

Xxxxxxxxxxx ECB

Christine XXXXXXX


(1)&xxxx;&xxxx;Xxxxxx xxxxxx Xxxxxxxx xxxxxxxxx xxxxx (EU) 2021/1759 xx xxx 20.&xxxx;xxxxxxxx 2021, kterými xx xxxx xxxxxx xxxxxx XXX/2012/27 x&xxxx;xxxxxxxxxxxxxx expresním xxxxxxxxxxxxxxx xxxxxxx xxxxxxxxx xxxxxx x&xxxx;xxxxxxx xxxx (XXXXXX2) (ECB/2021/30) [(viz xxxxxx 45 v tomto xxxxx Úředního xxxxxxxx).

(2)&xxxx;&xxxx;Xxxxxx xxxxxx Xxxxxxxx centrální xxxxx XXX/2012/27 xx xxx 5.&xxxx;xxxxxxxx 2012 x&xxxx;xxxxxxxxxxxxxx xxxxxxxxx automatizovaném xxxxxxx xxxxxxxxx xxxxxx x&xxxx;xxxxxxx xxxx (XXXXXX2) (Xx. xxxx. L 30, 30.1.2013, s. 1).

(3)  Rozhodnutí Xxxxxxxx xxxxxxxxx xxxxx XXX/2007/7 xx xxx 24.&xxxx;xxxxxxxx 2007 x&xxxx;xxxxxxxxxx XXXXXX2-XXX (Xx. věst. X&xxxx;237, 8.9.2007, s. 71).


XXXXXXX X

Xxxxxxx X&xxxx;xxxxxxxxxx XXX/2007/7 xx xxxx xxxxx:

1.

Xxxxxx&xxxx;1 xx xxxx xxxxx:

x)

xxxxxxxx pojmu „xxxxxxx xxxxxxx order“ se xxxxxxxxx xxxxx:

„—

“xxxxxxx xxxxxxx xxxxx” means, xx xxxx xxxx the Xxxxxxxx Payments Xxxxxxx'x XXXX Instant Xxxxxx Xxxxxxxx (XXX Xxxx) xxxxxx, x&xxxx;xxxxxxx instruction xxxxx xxx xx xxxxxxxx 24 xxxxx x&xxxx;xxx any xxxxxxxx xxx xx xxx xxxx, xxxx xxxxxxxxx xx close xx xxxxxxxxx processing and xxxxxxxxxxxx to the xxxxx xxx xxxxxxxx (x) the TIPS XXX to XXXX XXX instant payment xxxxxx, (b) XXXX XXX to TIPS XX xxxxxxxxx account xxxxxxx payment orders, (x) XXXX AS xxxxxxxxx xxxxxxx xx XXXX XXX xxxxxxx xxxxxxx orders xxx (x) XXXX AS xxxxxxxxx xxxxxxx to XXXX XX xxxxxxxxx xxxxxxx xxxxxxx xxxxxxx xxxxxx,“;

x)

xxxxxxxx se xxxx xxxxxxxx, které xxxxx:

„—

“Xxxxxxxx Xxxxxxxx Xxxxxxx'x XXXX Xxxxxxx Xxxxxx Transfer (XXX Xxxx) xxxxxx” xx “XXX Xxxx xxxxxx” xxxxx xx xxxxxxxxx, xxxx standards xxxxxx xxxxxxxxx x&xxxx;xxx xx interbank xxxxx xx xx xxxxxxxx xxxx xx XXX Xxxx participants, xxxxxxxx xxxxxxx xxxxxxxx providers xx XXXX xx xxxxx an xxxxxxxxx, XXXX-xxxx euro xxxxxxx xxxxxx xxxxxxxx product,

“TIPS xxxxxxxxx xxxxxx xxxxxxxxx xxxxxxx (XXXX AS xxxxxxxxx xxxxxxx)” xxxxx xx xxxxxxx held xx xx xxxxxxxxx xxxxxx xx a CB xx xx ancillary xxxxxx'x behalf in xxx XX’x XXXXXX2 xxxxxxxxx system xxx xxx xx xxx xxxxxxxxx xxxxxx xxx xxx purpose of xxxxxxxx xxxxxxx xxxxxxxx xx xxx xxx xxxxx,

“XXXX XXX xx XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxx” xxxxx the xxxxxxxxxxx xx transfer x&xxxx;xxxxxxxxx xxxxxx xx xxxxx from x&xxxx;XXXX XXX to x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx xxxx the XXXX XXX xxxxxx’x xxxxxxxx (xx xxx xxxxxxxx xx xxxxxxx xxxxxxxxxxx xx xxx xxxxxxxxx xxxxxx) in xxx books xx xxx xxxxxxxxx xxxxxx,

“XXXX XX xxxxxxxxx account xx XXXX XXX xxxxxxxxx xxxxxxxx xxxxx” xxxxx the instruction xx xxxxxxxx x&xxxx;xxxxxxxxx xxxxxx xx xxxxx xxxx x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx x&xxxx;XXXX XXX to xxxxxx xxx XXXX XXX holder’s xxxxxxxx (xx xxx xxxxxxxx xx another xxxxxxxxxxx xx xxx ancillary xxxxxx) xx xxx xxxxx xx xxx xxxxxxxxx xxxxxx,

“xxxxxxxxx xxxxx” xxxxx an xxxxxx xxxxx: (x) xxxxx x&xxxx;XXX; (b) is xxxxxxxxxx xx x&xxxx;xxxxxxxxx xxxxx xx a TIPS XXX xxxxxx xx xx xx ancillary xxxxxx; (x) is x&xxxx;xxxxxxxxxxxxx, xxxxxxxx or xxxxxx xx x&xxxx;XXXX XXX xxxxxx or x&xxxx;xxxxxxxxxxx xx xx xxxxxxxxx system, or x&xxxx;xxxxxxxxxxxxx, customer, or xxxxxx of x&xxxx;xxxxxxxxxxx xx xx xxxxxxxxx xxxxxx; xxx (d) xx addressable xxxxxxx xxx TIPS Xxxxxxxx xxx xx xxxx xx submit instant xxxxxxx orders xxx xxxxxxx xxxxxxx xxxxxxx xxxxxx xxxxxx via xxx XXXX XXX xxxxxx or xxx xxxxxxxxx system xx, xx xx authorised xx the TIPS XXX xxxxxx or xx xxx ancillary xxxxxx, xxxxxxxx.“;

x)

xxxxxxxx xxxxx „XXXX network service xxxxxxxx“ xx zrušuje;

2.

V článku 2 xxxxxx xxxxxxxx xx xxxxxxxx nový xxxx, xxxxx zní:

„Appendix XXX:

Xxxxxxxxxxxx xxxxxxxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxxx and xxxxxxxx xxxxxxxxxx xxxxxxxxxx“;

3.

Xxxxxx&xxxx;3 xx xxxx takto:

a)

v odstavci 2 xx xxxxxxx xx) xxxxxxxxx xxxxx:

„(xx)

XXXX XXX xx XX liquidity xxxxxxxx xxxxxx and XX to TIPS XXX xxxxxxxxx xxxxxxxx xxxxxx;“;

x)

x&xxxx;xxxxxxxx 2 xx xxxxxx xxxx písmeno xx), xxxxx xxx:

„(xx)

XXXX XXX xx TIPS XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxxx xxx XXXX AS xxxxxxxxx xxxxxxx xx XXXX DCA xxxxxxxxx xxxxxxxx xxxxxx; and“;

c)

odstavec 3 xx nahrazuje xxxxx:

„3.&xxxx;&xxxx;&xxxx;XXXXXX2 xxxxxxxx xxxx-xxxx xxxxx settlement xxx xxxxxxxx xx xxxx, xxxx xxxxxxxxxx xx xxxxxxx bank xxxxx xxxxxx PM xxxxxxxx, X2X XXXx and XXXX XXXx. TARGET2 xx xxxxxxxxxxx and xxxxxxxxx xx xxx xxxxx xx the XXX xxxxxxx which xxxxxxx xxxxxx xxx xxxxxxxxx and processed xxx xxxxxxx xxxxx xxxxxxxx xxx xxxxxxxxxx xxxxxxxx xx the xxxx xxxxxxxxx xxxxxx. Xx far xx xxx technical xxxxxxxxx xx the T2S XXXx is concerned, XXXXXX2 xx technically xxxxxxxxxxx and functions xx xxx xxxxx xx xxx T2S Xxxxxxxx. Xx far xx xxx xxxxxxxxx xxxxxxxxx of the XXXX XXXx and XXXX XX xxxxxxxxx xxxxxxxx xx xxxxxxxxx, XXXXXX2 xx xxxxxxxxxxx xxxxxxxxxxx xxx xxxxxxxxx xx the basis xx xxx TIPS Xxxxxxxx.“;

4.

Xxxxxx&xxxx;5 se nahrazuje xxxxx:

„Xxxxxxx&xxxx;5

Xxxxxx xxxxxxxxxxxx

XX xxxxxxx xxxxxxx xx XXXXXX2-XXX xxx xxxxxx participants xxx shall xxxxxx xxxx xxx requirements xxx out xx Xxxxxxx&xxxx;8(1) xxx&xxxx;(2). Xxxx xxxxx xxxx at xxxxx xxx XX xxxxxxx with the XXX. XX xxxxxxx xxxxxxx that xxxx xxxxxxx xx xxx XXX Xxxx xxxxxx xx xxxxxxx xxx XXXX Xxxxxxx Xxxxxx Xxxxxxxx Xxxxxxxxx Xxxxxxxxx xxxxx xx xxx xxxxx xxxxxx xxxxxxxxx xx the XXXX Xxxxxxxx xx xxx xxxxx, either xx x&xxxx;XXXX DCA holder xx xx x&xxxx;xxxxxxxxx xxxxx xxx x&xxxx;XXXX XXX xxxxxx.“;

5.

Xxxxxx&xxxx;22 xx xxxxxxxxx xxxxx:

„Xxxxxxx&xxxx;22

Xxxxxxxx Requirements xxx Xxxxxxx Xxxxxxxxxx

1.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx implement xxxxxxxx xxxxxxxx controls xx xxxxxxx their xxxxxxx xxxx xxxxxxxxxxxx xxxxxx xxx xxx. Xxxxxxxxxxxx xxxxx xx exclusively xxxxxxxxxxx xxx xxx xxxxxxxx protection xx xxx xxxxxxxxxxxxxxx, xxxxxxxxx xxx availability xx xxxxx xxxxxxx.

2.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx shall xxxxxx xxx ECB xx xxx xxxxxxxx-xxxxxxx xxxxxxxxx in xxxxx xxxxxxxxx xxxxxxxxxxxxxx xxx, xxxxx xxxxxxxxxxx, xxxxxxxx-xxxxxxx xxxxxxxxx that xxxxx xx the xxxxxxxxx xxxxxxxxxxxxxx xx the xxxxx party xxxxxxxxx. Xxx ECB xxx xxxxxxx xxxxxxx xxxxxxxxxxx xxxxx the xxxxxxxx xxx, xx xxxxxxxxx, xxxxxxx xxxx the xxxxxxxxxxx xxxx xxxxxxxxxxx xxxxxxxx xx xxxxxxx x&xxxx;xxxxxxxxxx xx xxxx xx xxxxx.

3.&xxxx;&xxxx;&xxxx;Xxx XXX xxx xxxxxx xxxxxxxxxx xxxxxxxx xxxxxxxxxxxx, xx xxxxxxxxxx with xxxxxx xx cybersecurity xx xxx xxxxxxxxxx xx xxxxx, xx all xxxxxxxxxxxx xxx/xx xx xxxxxxxxxxxx that xxx xxxxxxxxxx xxxxxxxx xx xxx XXX.

4.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx xxxxxxx xxx XXX xxxx: (i) xxxxxxxxx xxxxxx xx their xxxxxxxxxxx xx adherence xx their xxxxxx xxxxxxx service xxxxxxxx’x xxxxxxxx xxxxxxxx requirements, xxx (ii) xx xx xxxxxx basis xxx TARGET2 xxxx-xxxxxxxxxxxxx xxxxxxxxx as xxxxxxxxx xx xxx ECB’s xxxxxxx in Xxxxxxx.

4x.&xxxx;&xxxx;&xxxx;Xxx XXX xxxxx assess xxx xxxxxxxxxxx’x xxxx-xxxxxxxxxxxxx xxxxxxxxx(x) on xxx xxxxxxxxxxxx xxxxx xx xxxxxxxxxx xxxx each xx xxx xxxxxxxxxxxx xxx xxx in xxx XXXXXX2 self-certification xxxxxxxxxxxx. Xxxxx xxxxxxxxxxxx xxx xxxxxx in Xxxxxxxx XXX, xxxxx xx xxxxxxxx xx xxx xxxxx Appendices xxxxxx xx Xxxxxxx&xxxx;2(1), xxxxx xxxx xx xxxxxxxx xxxx xx xxxxx Xxxxxxxxxx.

4x.&xxxx;&xxxx;&xxxx;Xxx participant’s xxxxx of compliance xxxx the requirements xx the TARGET2 xxxx-xxxxxxxxxxxxx xxxxx xx xxxxxxxxxxx as xxxxxxx, xx increasing xxxxx xx xxxxxxxx: ‘full xxxxxxxxxx’; ‘xxxxx xxx-xxxxxxxxxx’; xx ‘major xxx-xxxxxxxxxx’. Xxx xxxxxxxxx xxxxxxxx xxxxx: full compliance xx xxxxxxx xxxxx xxxxxxxxxxxx xxxxxxx 100% xx the xxxxxxxxxxxx; xxxxx xxx-xxxxxxxxxx is xxxxx x&xxxx;xxxxxxxxxxx satisfies xxxx xxxx 100% xxx xx xxxxx 66% xx xxx xxxxxxxxxxxx and major xxx-xxxxxxxxxx xxxxx x&xxxx;xxxxxxxxxxx xxxxxxxxx xxxx xxxx 66% xx xxx xxxxxxxxxxxx. If a participant xxxxxxxxxxxx that x&xxxx;xxxxxxxx xxxxxxxxxxx xx xxx xxxxxxxxxx xx xx, xx xxxxx xx xxxxxxxxxx as xxxxxxxxx xxxx xxx xxxxxxxxxx xxxxxxxxxxx xxx xxx xxxxxxxx of the xxxxxxxxxxxxxx. A participant xxxxx xxxxx xx xxxxx ‘xxxx compliance’ xxxxx xxxxxx xx action xxxx demonstrating xxx xx intends to xxxxx full compliance. Xxx ECB xxxxx xxxxxx the xxxxxxxx xxxxxxxxxxx xxxxxxxxxxx xx xxx xxxxxx xx xxxx participant’s xxxxxxxxxx.

4x.&xxxx;&xxxx;&xxxx;Xx xxx xxxxxxxxxxx xxxxxxx xx grant xxxxxxxxx xxxxxx xx its xxxxxxxxxxx xx adherence xx their xxxxxx XXXx endpoint xxxxxxxx xxxxxxxxxxxx or xxxx xxx xxxxxxx the XXXXXX2 xxxx-xxxxxxxxxxxxx xxx xxxxxxxxxxx’x xxxxx xx xxxxxxxxxx xxxxx xx xxxxxxxxxxx as ‘xxxxx xxx-xxxxxxxxxx’.

4x.&xxxx;&xxxx;&xxxx;Xxx ECB shall xxxxxxxx xxxxxxxxxx xx xxxxxxxxxxxx on an xxxxxx basis.

4e.   The XXX xxx xxxxxx xxx xxxxxxxxx xxxxxxxx xx xxxxxxx xx participants xxxxx xxxxx of xxxxxxxxxx xxx xxxxxxxx xx xxxxx xx xxxxx xxx-xxxxxxxxxx, in xxxxxxxxxx order xx xxxxxxxx:

(x)

xxxxxxxx xxxxxxxxxx: xxx xxxxxxxxxxx shall xxxxxxx xxx XXX xxxx x&xxxx;xxxxxxx report, xxxxxx xx a senior xxxxxxxxx, xx xxxxx xxxxxxxx xx xxxxxxxxxx xxx xxx-xxxxxxxxxx. Xxx xxxxxxxxxxx xxxxx additionally xxxxx x&xxxx;xxxxxxx xxxxxxx xxxxxx xxx each xxxxxxxx xxxxxxx xxxxx to xxx xxxxxxx xxx xx xxx xxx xx xxxxxxxxx 1 xx Appendix XX xxxxxxxxx xxx xxxxxxxxxxx xxxx. Xxxx xxxxxxx xx xxxxxxx xxx xx imposed xx xxx event xxx xxxxxxxxxxx xxxxxxxx a second xxxxxxxxxxx xxxxxxxxxx xx xxxxx non-compliance or xx xxxxxxxxxx xx xxxxx xxx-xxxxxxxxxx;

(xx)

xxxxxxxxxx: participation xx XXXXXX2-XXX xxx xx xxxxxxxxx in xxx xxxxxxxxxxxxx described xx Article 28(2)(b) and (x) of this Xxxxx. Xx way xx xxxxxxxxxx xxxx Xxxxxxx&xxxx;28 of xxxx Xxxxx, xxx xxxxxxxxxxx xxxxx xx xxxxx xxxxx xxxxxx’ xxxxxx xx such xxxxxxxxxx. Xxx xxxxxxxxxxx shall xxxxx a monthly xxxxxxx xxxxxx xxx xxxx xxxxxxxxx xxxxxxx xx xxxxxx xxx xxxxxxx xxx xx xxx xxx xx xxxxxxxxx 1 of Appendix XX, xxxxxxxxx xxx xxxxxxxxxxx fees. Xxxx xxxxxxx xx redress xxx xx xxxxxxx xx xxx event xxx xxxxxxxxxxx xxxxxxxx x&xxxx;xxxxxx consecutive xxxxxxxxxx xx major non-compliance;

(iii)

termination: xxxxxxxxxxxxx in XXXXXX2-XXX xxx xx xxxxxxxxxx xx xxx circumstances xxxxxxxxx xx Xxxxxxx&xxxx;28(2)(x) xxx (x) of xxxx Annex. Xx xxx xx derogation xxxx Article 28 xx xxxx Xxxxx, xxx xxxxxxxxxxx xxxxx be xxxxx three xxxxxx’ xxxxxx xx such xxxxxxxxxxx. The xxxxxxxxxxx xxxxx incur an xxxxxxxxxx xxxxxxx xxxxxx xx EUR 1000 xxx xxxx xxxxxxxxxx xxxxxxx. This xxxxxxx xx xxxxxxx may xx xxxxxxx xx xxx participant xxx xxx xxxxxxxxx the xxxxx xxx-xxxxxxxxxx to xxx xxxxxxxxxxxx xx xxx ECB xxxxxxxxx xxxxx xxxxxx xx xxxxxxxxxx.“;

6.

X&xxxx;xxxxxx&xxxx;33 se odstavec 1 xxxxxxxxx tímto:

„1.   Participants xxxxx be xxxxxx xx be aware xx, xxxxx xxxxxx xxxx, xxx shall xx xxxx xx xxxxxxxxxxx xxxx compliance xx xxx xxxxxxxx xxxxxxxxx xxxxxxxxxxx xxxx xxx xxxxxxxxxxx xx xxxx relating xx xxxxxxxxxxx xx xxxx xxxxxxxxxx. Xxxx xxxxx xx deemed xx xx xxxxx xx, xxx xxxxx comply xxxx xxx obligations xx xxxx relating xx xxxxxxxxxxx xx xxxxxxxxxx of xxxxx xxxxxxxxxx xxx the xxxxxxxxx of xxxxxxxxx, xxxxxxxxxxxxx-xxxxxxxxx xxxxxxx xxxxxxxxxx xxx the xxxxxxxxxxx xx nuclear xxxxxxx xxxxxxxx systems, in xxxxxxxxxx xx terms xx xxxxxxxxxxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxxx any xxxxxxxx xxxxxxx xx xxxxxxxx xx xxxxx XX xxxxxxxx. Participants xxxxx xxxxxx xxxx xxxx are informed xxxxx xxx XXXXXX2 xxxxxxx service xxxxxxxx’x xxxx retrieval xxxxxx xxxxx to entering xxxx the xxxxxxxxxxx xxxxxxxxxxxx with xxx XXXXXX2 network service xxxxxxxx.“;

7.

Xxxxxx xx xxxx xxxxxx&xxxx;39x, který xxx:

„Xxxxxxx&xxxx;39x

Xxxxxxxxxxxx xxxxxxxxxx

1.&xxxx;&xxxx;&xxxx;Xxxx the TARGET xxxxxx xx xxxxxxxxxxx xxx XXXXXX2 xxx xxxxxx xxxxxxxxx, XX xxxxxxx xxxxxxxx xxxxx xx xxxxxxxxxxx to xxx xxxxxxx xxxxxx’x xxxxxxxxxxxxx successor xxxxxxxx xx xxx XXXXXX xxxxxx.

2.&xxxx;&xxxx;&xxxx;Xxx xxxxxxxxxxx xxxx XX account xxxxxxx, xxxxxxxx Xxxxxxxxxxxx xxx xxxxxxxxxxx XXX xxxxxxx xxxxxxxx to the XXX Xxxx xxxxxx xx xxxxxxxxx in xxx XXXX Xxxxxxxx xxxxxxxx xx Xxxxxxx&xxxx;5 xxxxx xxxxx xx xx 25 Xxxxxxxx 2022.“;

8.

X&xxxx;xxxxxxx I se x&xxxx;xxxx.&xxxx;8 xxxxxxx. 4 xxxxxxxxx xxxxxxx b) xxxxx:

„(x)

Xxxx-xx-xxxxxxxxxxx xxxx (U2A)

U2A xxxxxxx xxxxxx xxxxxxxxxxxxx xxxxxxx x&xxxx;xxxxxxxxxxx xxx xxx XXX. The information xx xxxxxxxxx xx x&xxxx;xxxxxxx xxxxxxx xx x&xxxx;XX xxxxxx (XXXXX Xxxxxxxx XxxXxxxxxx xx xxxxxxx xxxxxxxxx, xx xxx xx xxxxxxxx xx SWIFT). Xxx X2X xxxxxx the XX infrastructure xxx xx be able xx xxxxxxx xxxxxxx. Xxxxxxx xxxxxxx xxx xxxxxxxxx xx xxx XXX User Xxxxxxxx.“;

9.

X&xxxx;xxxxxxx XX xx x&xxxx;xxxxxxxx 6 nahrazuje písmeno x) xxxxx:

„(x)

xxx contingency xxxxxxxxxx xx xxxxxxx xxxxxx, participants shall xxxxxxx xxxxxxxx assets xx collateral. Xxxxxx xxxxxxxxxxx processing, xxxxxxxx xxxxxxxxxxx payments xxx xx xxxx xx xxxx xxxxxxxx xxxxxxxxxxx xxxxxxxx. Xxx xxx xxxxxxxx of contingency xxxxxxxxxx, participants’ available xxxxxxxxx xxx not xx xxxxx into xxxxxxx by xxx XXX.“;

10.

Xxxxxxxx se xxxx xxxxxxx XXX, xxxxx xxx:

„Xxxxxxxx XXX

Xxxxxxxxxxxx xxxxxxxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxxx xxx business continuity xxxxxxxxxx

Xxxxxxxxxxx xxxxxxxx xxxxxxxxxx

Xxxxx xxxxxxxxxxxx xxx xxxxxxxxxx xx xxxx xxxxxxxxxxx, xxxxxx xxx xxxxxxxxxxx xxxxxxxxxxxx xxxx x&xxxx;xxxxxxxx xxxxxxxxxxx is xxx xxxxxxxxxx to xx. Xx xxxxxxxxxxxx the xxxxx xx xxxxxxxxxxx xx the xxxxxxxxxxxx xxxxxx its xxxxxxxxxxxxxx, xxx xxxxxxxxxxx should xxxxxxxx xxx xxxxxxxx xxxx are part xx the Payment Xxxxxxxxxxx Chain (XXX). Xxxxxxxxxxxx, xxx XXX xxxxxx xx a Point xx Xxxxx (XxX), x.x. x&xxxx;xxxxxx xxxxxxxx xx xxx creation xx xxxxxxxxxxxx (x.x. xxxxxxxxxxxx, xxxxx-xxxxxx and xxxx-xxxxxx applications, xxxxxxxxxx), xxx xxxx xx xxx xxxxxx xxxxxxxxxxx xx xxxx xxx xxxxxxx to SWIFT (x.x. XXXXX XXX Xxx) xx Xxxxxxxx (xxxx xxx latter xxxxxxxxxx xx Xxxxxxxx-xxxxx Xxxxxx).

Xxxxxxxxxxx 1.1: Xxxxxxxxxxx xxxxxxxx policy

The xxxxxxxxxx xxxxx xxx a clear xxxxxx direction xx xxxx with xxxxxxxx xxxxxxxxxx xxx xxxxxxxxxxx xxxxxxx xxx xxx xxxxxxxxxx to xxxxxxxxxxx xxxxxxxx xxxxxxx the xxxxxxxx, approval and xxxxxxxxxxx xx xx xxxxxxxxxxx xxxxxxxx xxxxxx xxxxxx xx xxxxxxxx xxxxxxxxxxx security xxx xxxxx xxxxxxxxxx xxxxxx xxx organisation xx xxxxx of xxxxxxxxxxxxxx, xxxxxxxxxx xxx xxxxxxxxx xx xxxxxxxxxxx xxxxxxxx xxx cyber xxxxxxxxxx xxxxx. The policy xxxxxx xxxxxxx xx xxxxx xxx xxxxxxxxx xxxxxxxx: objectives, xxxxx (xxxxxxxxx xxxxxxx xxxx xx organisation, human xxxxxxxxx, xxxxx management xxx.), xxxxxxxxxx and xxxxxxxxxx of xxxxxxxxxxxxxxxx.

Xxxxxxxxxxx 1.2: Internal organisation

An xxxxxxxxxxx xxxxxxxx framework xxxxx xx established xx implement xxx xxxxxxxxxxx xxxxxxxx xxxxxx xxxxxx the organisation. Xxx xxxxxxxxxx xxxxx xxxxxxxxxx xxx xxxxxx xxx xxxxxxxxxxxxx of xxx xxxxxxxxxxx xxxxxxxx xxxxxxxxx xx xxxxxx xxx xxxxxxxxxxxxxx of xxx xxxxxxxxxxx security xxxxxx (xx xxx Xxxxxxxxxxx 1.1) across xxx xxxxxxxxxxxx, xxxxxxxxx xxx xxxxxxxxxx xx xxxxxxxxxx xxxxxxxxx xxx xxxxxxxxxx xx xxxxxxxx xxxxxxxxxxxxxxxx xxx xxxx xxxxxxx.

Xxxxxxxxxxx 1.3: Xxxxxxxx xxxxxxx

Xxx security xx xxx xxxxxxxxxxxx’x information xxx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx xxxxxx xxx xx xxxxxxx xx xxx xxxxxxxxxxxx xx, xxx/xx xxx xxxxxxxxxx xx, an xxxxxxxx xxxxx/xxxxxxx xx xxxxxxxx/xxxxxxxx xxxxxxxx xx xxxx. Xxx xxxxxx xx xxx organisation’s xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx by xxxxxxxx xxxxxxx xxxxx xx xxxxxxxxxx. When xxxxxxxx parties xx xxxxxxxx/xxxxxxxx xx xxxxxxxx xxxxxxx xxx xxxxxxxx xx access xxx xxxxxxxxxxxx’x information xxxxxxxxxx xxxxxxxxxx, a risk xxxxxxxxxx xxxxx xx xxxxxxx xxx xx determine xxx xxxxxxxx xxxxxxxxxxxx xxx control requirements. Xxxxxxxx shall be xxxxxx xxx xxxxxxx xx xx agreement xxxx xxxx relevant xxxxxxxx xxxxx.

Xxxxxxxxxxx 1.4: Xxxxx xxxxxxxxxx

Xxx xxxxxxxxxxx xxxxxx, xxx business xxxxxxxxx and xxx xxxxxxxxxx xxxxxxxxxxx xxxxxxx, xxxx xx xxxxxxxxx xxxxxxx, infrastructures, business xxxxxxxxxxxx, off-the-shelf xxxxxxxx, xxxxxxxx xxx user-developed xxxxxxxxxxxx, in the xxxxx of xxx Xxxxxxx Xxxxxxxxxxx Xxxxx xxxxx xx xxxxxxxxx xxx xxx xxxx x&xxxx;xxxxxxxxx owner. The xxxxxxxxxxxxxx xxx the xxxxxxxxxxx xxx the xxxxxxxxx xx xxxxxxxxxxx xxxxxxxx xx the xxxxxxxx processes xxx xxx xxxxxxx XX xxxxxxxxxx to safeguard xxx xxxxxxxxxxx xxxxxx xxxxx xx xxxxxxxx. Xxxx: the xxxxx xxx xxxxxxxx xxx xxxxxxxxxxxxxx xx specific xxxxxxxx as xxxxxxxxxxx, xxx remains xxxxxxxxxxx xxx xxx xxxxxx xxxxxxxxxx of the xxxxxx.

Xxxxxxxxxxx 1.5: Information xxxxxx classification

Information xxxxxx xxxxx xx xxxxxxxxxx xx xxxxx xx xxxxx criticality xx xxx xxxxxx xxxxxxxx xx xxx service xx xxx participant. Xxx classification xxxxx xxxxxxxx the need, xxxxxxxxxx and degree xx protection xxxxxxxx xxxx xxxxxxxx xxx xxxxxxxxxxx asset xx xxx xxxxxxxx xxxxxxxx xxxxxxxxx xxx shall xxxx take xxxx xxxxxxxxxxxxx xxx underlying XX xxxxxxxxxx. Xx xxxxxxxxxxx xxxxx xxxxxxxxxxxxxx xxxxxx xxxxxxxx xx xxx xxxxxxxxxx xxxxx xx xxxx xx xxxxxx xx xxxxxxxxxxx xxx of xxxxxxxxxx xxxxxxxx throughout xxx xxxxxxxxxxx asset xxxxxxxxx (xxxxxxxxx removal xxx xxxxxxxxxxx xx xxxxxxxxxxx xxxxxx) xxx xx xxxxxxxxxxx xxx xxxx xxx xxxxxxxx handling xxxxxxxx.

Xxxxxxxxxxx 1.6: Xxxxx xxxxxxxxx xxxxxxxx

Xxxxxxxx responsibilities xxxxx be addressed xxxxx xx employment xx xxxxxxxx job xxxxxxxxxxxx xxx xx xxxxx xxx xxxxxxxxxx xx employment. Xxx xxxxxxxxxx for employment, xxxxxxxxxxx and xxxxx xxxxx xxxxx xxxxx xx xxxxxxxxxx screened, xxxxxxxxxx xxx sensitive xxxx. Xxxxxxxxx, xxxxxxxxxxx xxx third xxxxx xxxxx xx xxxxxxxxxxx xxxxxxxxxx facilities shall xxxx an xxxxxxxxx xx xxxxx xxxxxxxx xxxxx xxx xxxxxxxxxxxxxxxx. Xx adequate xxxxx xx awareness shall xx xxxxxxx among xxx employees, xxxxxxxxxxx xxx third party xxxxx, xxx xxxxxxxxx xxx xxxxxxxx xx xxxxxxxx procedures xxx xxx correct xxx xx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx shall xx xxxxxxxx xx xxxx xx minimise xxxxxxxx xxxxxxxx xxxxx. X&xxxx;xxxxxx xxxxxxxxxxxx process for xxxxxxxx xxxxxxxx xxxxxxxx xxxxx xx xxxxxxxxxxx xxx xxxxxxxxx. Xxxxxxxxxxxxxxxx xxxxx be in xxxxx xx xxxxxx xxxx xx xxxxxxxx’x, xxxxxxxxxx’x xx xxxxx xxxxx xxxx’x xxxx xxxx or transfer xxxxxx xxx xxxxxxxxxxxx xx xxxxxxx, and xxxx xxx xxxxxx xx all equipment xxx xxx removal xx xxx xxxxxx xxxxxx xxx xxxxxxxxx.

Xxxxxxxxxxx 1.7: Xxxxxxxx xxx xxxxxxxxxxxxx security

Critical xx xxxxxxxxx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx shall xx xxxxxx xx secure xxxxx, xxxxxxxxx xx xxxxxxx xxxxxxxx xxxxxxxxxx, xxxx xxxxxxxxxxx xxxxxxxx xxxxxxxx and entry xxxxxxxx. Xxxx xxxxx xx physically xxxxxxxxx xxxx xxxxxxxxxxxx xxxxxx, xxxxxx and xxxxxxxxxxxx. Xxxxxx xxxxx xx xxxxxxx xxxx xx xxxxxxxxxxx xxx xxxx xxxxxx xxx scope xx Requirement 1.6. Xxxxxxxxxx and standards xxxxx be xxxxxxxxxxx xx xxxxxxx physical xxxxx xxxxxxxxxx information xxxxxx xxxx in xxxxxxx.

Xxxxxxxxx xxxxx xx xxxxxxxxx from physical xxx xxxxxxxxxxxxx threats. Xxxxxxxxxx xx xxxxxxxxx (xxxxxxxxx equipment xxxx xxx-xxxx) xxx against xxx xxxxxxx of xxxxxxxx is xxxxxxxxx xx reduce the xxxx xx unauthorised xxxxxx xx xxxxxxxxxxx xxx xx guard xxxxxxx xxxx xx xxxxxx of xxxxxxxxx xx xxxxxxxxxxx. Xxxxxxx xxxxxxxx xxx be xxxxxxxx to protect xxxxxxx xxxxxxxx threats xxx to xxxxxxxxx xxxxxxxxxx xxxxxxxxxx such xx the xxxxxxxxxx xxxxxx xxx xxxxxxx xxxxxxxxxxxxxx.

Xxxxxxxxxxx 1.8: Xxxxxxxxxx xxxxxxxxxx

Xxxxxxxxxxxxxxxx xxx xxxxxxxxxx xxxxx be xxxxxxxxxxx xxx the xxxxxxxxxx xxx operation xx xxxxxxxxxxx processing xxxxxxxxxx xxxxxxxx xxx xxx xxxxxxxxxx xxxxxxx in xxx Xxxxxxx Xxxxxxxxxxx Xxxxx xxx-xx-xxx.

Xx xxxxxxx xxxxxxxxx procedures, including xxxxxxxxx xxxxxxxxxxxxxx of XX systems, segregation xx xxxxxx xxxxx xx xxxxxxxxxxx, xxxxx xxxxxxxxxxx, xx xxxxxx xxx risk xx xxxxxxxxx xx xxxxxxxxxx xxxxxx xxxxxx. Where xxxxxxxxxxx xx xxxxxx xxxxxx xx xxxxxxxxxxx xxx xx xxxxxxxxxx xxxxxxxxx reasons, xxxxxxxxxxxx xxxxxxxx xxxxx xx xxxxxxxxxxx xxxxxxxxx x&xxxx;xxxxxx xxxx xxxxxxxx. Controls xxxxx xx xxxxxxxxxxx xx prevent xxx xxxxxx xxx introduction xx xxxxxxxxx xxxx xxx systems xx xxx Payment Transaction Xxxxx. Xxxxxxxx shall xx xxxx xxxxxxxxxxx (xxxxxxxxx xxxx xxxxxxxxx) xx xxxxxxx, detect xxx xxxxxx malicious xxxx. Xxxxxx code xxxxx be xxxx xxxx xxxx trusted xxxxxxx (x.x. xxxxxx Xxxxxxxxx XXX xxxxxxxxxx xxx Java Applets). Xxx configuration of xxx xxxxxxx (e.g. xxx use xx xxxxxxxxxx and plugins) xxxxx xx strictly xxxxxxxxxx.

Xxxx xxxxxx and xxxxxxxx xxxxxxxx shall xx xxxxxxxxxxx by xxx xxxxxxxxxx; xxxxx xxxxxxxx xxxxxxxx shall xxxxxxx a plan of xxx xxxxxxxxxxx xxxxxxx xxxxx is xxxxxx xx xxxxxxx xxxxxxxxx xx xxxxx annually.

Systems xxxx xxx xxxxxxxx xxx the xxxxxxxx xx payments xxxxx xx xxxxxxxxx xxx xxxxxx relevant xx xxxxxxxxxxx xxxxxxxx xxxxx xx xxxxxxxx. Xxxxxxxx xxxx xxxxx xx xxxx xx ensure xxxx xxxxxxxxxxx xxxxxx xxxxxxxx xxx identified. Xxxxxxxx xxxx shall xx xxxxxxxxx reviewed xx x&xxxx;xxxxxx xxxxx, xxxxx xx xxx xxxxxxxxxxx of xxx xxxxxxxxxx. System monitoring xxxxx be xxxx xx check xxx xxxxxxxxxxxxx xx xxxxxxxx xxxxx xxx identified xx xxxxxxxx xxx xxx xxxxxxxx xx xxxxxxxx xxx xx xxxxxx xxxxxxxxxx xx xx access policy xxxxx.

Xxxxxxxxx of information xxxxxxx xxxxxxxxxxxxx xxxxx xx xxxxx xx x&xxxx;xxxxxx xxxxxxxx xxxxxx, xxxxxxx out xx xxxx with xxxxxxxx xxxxxxxxxx among the xxxxxxxx xxxxxxx xxx xxxxx xx xxxxxxxxx xxxx any xxxxxxxx xxxxxxxxxxx. Xxxxx party xxxxxxxx xxxxxxxxxx xxxxxxxx xx the exchange xx xxxxxxxxxxx xxxx XXXXXX2 (like software xxxxxxxx xxxx a Service Xxxxxx xx scenario 2 xx xxx xxxxx xxxxxxx of xxx XXXXXX2 xxxx-xxxxxxxxxxxxx xxxxxxxxxxx document) must xx used under x&xxxx;xxxxxx agreement with xxx xxxxx party.

Requirement 1.9: Xxxxxx control

Access xx xxxxxxxxxxx xxxxxx xxxxx be justified xx xxx basis xx xxxxxxxx requirements (xxxx-xx-xxxx&xxxx;(1)) xxx xxxxxxxxx xx xxx xxxxxxxxxxx xxxxxxxxx xx xxxxxxxxx xxxxxxxx (xxxxxxxxx the xxxxxxxxxxx security xxxxxx). Xxxxx access xxxxxxx xxxxx xxxxx xx xxxxxxx xxxxx xx xxx xxxxxxxxx xx xxxxx privilege (2) xx xxxxxxx xxxxxxx xxx xxxxx of the xxxxxxxxxxxxx xxxxxxxx xxx XX xxxxxxxxx. Xxxxx xxxxxxxx (e.g. for xxxxxx management) logical xxxxxx control xxxxxx xx xxxxxxxxxx xxxx xxxxxxxx xxxxxx xxxxxxx xxxxxx there xxx xxxxxxxx xxxxxxxxxxxx xxxxxxxx xx xxxxx (x.x. xxxxxxxxxx, personal data xxxxxxxxxxxxx).

Xxxxxx xxx xxxxxxxxxx xxxxxxxxxx xxxxx be xx xxxxx to xxxxxxx xxx allocation xx xxxxxx rights xx xxxxxxxxxxx systems xxx services xxxx xxxx xxxxxx xxx xxxxx xx xxx Xxxxxxx Xxxxxxxxxxx Xxxxx. Xxx xxxxxxxxxx xxxxx xxxxx xxx stages xx xxx lifecycle xx user access, xxxx the xxxxxxx xxxxxxxxxxxx of xxx xxxxx to the xxxxx deregistration xx xxxxx xxxx xx xxxxxx require access.

Special xxxxxxxxx xxxxx be xxxxx, where appropriate, xx xxx allocation xx access xxxxxx xx xxxx xxxxxxxxxxx xxxx xxx xxxxx xx xxxxx access xxxxxx could lead xx x&xxxx;xxxxxx adverse xxxxxx on the xxxxxxxxxx xx the xxxxxxxxxxx (x.x. access xxxxxx xxxxxxxx xxxxxx xxxxxxxxxxxxxx, xxxxxxxx xx xxxxxx xxxxxxxx, xxxxxx xxxxxx to xxxxxxxx xxxx).

Xxxxxxxxxxx xxxxxxxx xxxxx xx put in xxxxx xx xxxxxxxx, xxxxxxxxxxxx xxx xxxxxxxxx xxxxx xx xxxxxxxx xxxxxx xx the xxxxxxxxxxxx’x xxxxxxx, x.x. xxx local and xxxxxx xxxxxx xx xxxxxxx in the Xxxxxxx Xxxxxxxxxxx Xxxxx. Xxxxxxxx xxxxxxxx shall xxx xx xxxxxx xx xxxxx to xxxxxx xxxxxxxxxxxxxx.

Xxx xxxxxxxxx, xxxxx shall xx xxxxxxxxxxx xxx xxxxxxxx xx xxxxxxxx xxxxxxxx xx ensure that xxxxxxxxx xxxxxx xx xxxxxx xxxxxxx, e.g. xxxxxxxxxx rules xxx xxxxxxx-xxxx validity. A safe xxxxxxxx xxxxxxxx xxx/xx xxxxx xxxxxxxx shall xx xxxxxxxxxxx.

X&xxxx;xxxxxx shall xx developed xxx xxxxxxxxxxx xx xxx xxx of xxxxxxxxxxxxx xxxxxxxx xx xxxxxxx xxx confidentiality, xxxxxxxxxxxx xxx xxxxxxxxx of xxxxxxxxxxx. X&xxxx;xxx management xxxxxx shall xx xxxxxxxxxxx xx support xxx use xx xxxxxxxxxxxxx xxxxxxxx.

Xxxxx shall xx xxxxxx xxx xxxxxxx xxxxxxxxxxxx information xx xxxxxx xx xx print (x.x. x&xxxx;xxxxx screen, a clear xxxx xxxxxx) to xxxxxx xxx risk xx xxxxxxxxxxxx xxxxxx.

Xxxx xxxxxxx remotely, xxx xxxxx xx xxxxxxx xx an xxxxxxxxxxx xxxxxxxxxxx xxxxx xx xxxxxxxxxx xxx xxxxxxxxxxx xxxxxxxxx and organisational xxxxxxxx xxxxx be xxxxxxx.

Xxxxxxxxxxx 1.10: Xxxxxxxxxxx xxxxxxx xxxxxxxxxxx, development xxx xxxxxxxxxxx

Xxxxxxxx requirements xxxxx be identified xxx xxxxxx prior xx xxx development xxx/xx xxxxxxxxxxxxxx xx xxxxxxxxxxx xxxxxxx.

Xxxxxxxxxxx controls xxxxx xx xxxxx xxxx applications, xxxxxxxxx xxxx-xxxxxxxxx applications, xx xxxxxx xxxxxxx processing. Xxxxx xxxxxxxx xxxxx xxxxxxx xxx validation xx xxxxx xxxx, xxxxxxxx xxxxxxxxxx xxx xxxxxx data. Xxxxxxxxxx xxxxxxxx may be xxxxxxxx xxx xxxxxxx xxxx xxxxxxx, or xxxx xx impact xx, xxxxxxxxx, valuable xx xxxxxxxx xxxxxxxxxxx. Xxxx controls xxxxx xx xxxxxxxxxx on xxx basis xx xxxxxxxx requirements xxx xxxx xxxxxxxxxx according xx xxx xxxxxxxxxxx xxxxxxxx (x.x. information xxxxxxxx xxxxxx, xxxxxxxxxxxxx xxxxxxx xxxxxx).

Xxx operational xxxxxxxxxxxx xx xxx xxxxxxx xxxxx xx xxxxxxxxxxx, xxxxxxxxxx xxx xxxxxx xxxxx xx xxxxx xxxxxxxxxx and xxx. As xxxxxxx xxxxxxx xxxxxxxx, xxxxxxxxxxx xxxxxxxx, xxxxxxxxx xxxxxxxxxxxx xxx xxxxxx xxxxxxxxxx, xxxxxx xx implemented xxxxx on xxx xxxxxxxxxxx xx xxxx xxxxx and the xxxxx of risk xx xxx xxxxxxx xxxxx xx xxx xxxxxxxxxxxx. There shall xx xxxxxxxx xxxxxxxx xx xxxxxxx xxxxxxxxx xxxxxxxxxxx xxxxxxx xxxx xxxxxx networks.

Access xx xxxxxx files xxx xxxxxxx xxxxxx xxxx xxxxx be xxxxxxxxxx xxx XX xxxxxxxx xxx xxxxxxx activities xxxxxxxxx xx a secure xxxxxx. Care xxxxx xx xxxxx xx xxxxx xxxxxxxx of xxxxxxxxx xxxx xx xxxx environments. Xxxxxxx xxx xxxxxxx environments xxxxx xx xxxxxxxx xxxxxxxxxx. Xxxxxxxxxx of xxxxxxx xx xxxxxxxxxx xxxxx be xxxxxxxx xxxxxxxxxx. X&xxxx;xxxx xxxxxxxxxx xx the xxxxx xxxxxxx to be xxxxxxxx xx production xxxxx be conducted.

Regular xxxxxxxx xxxxxxx activities xx systems xx xxxxxxxxxx shall xxxx xx conducted xxxxxxxxx xx a predefined xxxx xxxxx xx xxx xxxxxxx xx x&xxxx;xxxx xxxxxxxxxx, xxx xxxxxxxx xxxxxxx xxxxx xxxxxxx, xx xxxxx, xxxxxxxxxxxxx xxxxxxxxxxx. All xx xxx shortcomings xxxxxxxxxxx xxxxxx xxx xxxxxxxx xxxxxxx activities xxxxx xx xxxxxxxx and xxxxxx xxxxx xx xxxxx any identified xxx xxxxx xx xxxxxxxx and followed xx xx x&xxxx;xxxxxx xxxxxxx.

Xxxxxxxxxxx 1.11: Xxxxxxxxxxx xxxxxxxx xx supplier (3) xxxxxxxxxxxxx

Xx xxxxxx xxxxxxxxxx xx xxx xxxxxxxxxxx’x xxxxxxxx xxxxxxxxxxx systems xxxx xxx accessible xx xxxxxxxxx, information xxxxxxxx xxxxxxxxxxxx xxx xxxxxxxxxx xxx xxxxx xxxxxxxxxx with xxxxxxxx’x xxxxxx xxxxx be xxxxxxxxxx xxx xxxxxxxx xxxxxx xxxx xxxx xxx xxxxxxxx.

Xxxxxxxxxxx 1.12: Xxxxxxxxxx xx xxxxxxxxxxx xxxxxxxx xxxxxxxxx xxx xxxxxxxxxxxx

Xx xxxxxx a consistent xxx xxxxxxxxx xxxxxxxx xx xxx xxxxxxxxxx xx xxxxxxxxxxx xxxxxxxx xxxxxxxxx, xxxxxxxxx communication xx security xxxxxx xxx weaknesses, xxxxx, xxxxxxxxxxxxxxxx xxx procedures, xx xxxxxxxx xxx xxxxxxxxx xxxxx, xxxxx xx xxxxxxxxxxx xxx xxxxxx to ensure x&xxxx;xxxxx, xxxxxxxxx xxx xxxxxxx xxx safely xxxxxxx xxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxx xxxxxxxxx xxxxxxxxx xxxxxxx to x&xxxx;xxxxx-xxxxxxx xxxxx (x.x. x&xxxx;xxxxx xxxxxxx by xx xxxxxxxx xxxxxxxx xx xx an xxxxxxx). Xxxxxxxxx xxxxxxxx xx xxxxx xxxxxxxxxx xxxxx xx adequately xxxxxxx.

Xxxxxxxxxxx 1.13: Xxxxxxxxx xxxxxxxxxx xxxxxx

X&xxxx;xxxxxxxxxxx’x internal xxxxxxxxxxx xxxxxxx (e.g. xxxx office xxxxxxx, xxxxxxxx xxxxxxxx xxx xxxxxxxx xxxxxxx xxxxxxxxxxxx) xxxxx xx regularly xxxxxxxx xxx xxxxxxxxxx xxxx xxx organisation’s xxxxxxxxxxx xxxxxxxxx of xxxxxxxx (x.x. xxxxxxxxxxx xxxxxxxx policy, xxxxxxxxxxxxx xxxxxxx policy).

Requirement 1.14: Xxxxxxxxxxxxxx

Xxxxx xxxxxxx xxxxxxxx xxxxx comply with xxx the xxxxxxxx xxxxxxxx xxxx xxx xxx xxx xxxxxxxx xxxxxxxx xxx xxxxxxx (x.x. xxxxxxxxx, xxxxxxx). Xxxxxxxx xxxxxxxx xx xxxxxxxxxxx must include: xxxxxxxxx xx the xxxxxxxxxx xxx xxx xxxxxxx xxxxxxxxx xxxxxx, xxxxxxx xxxxxxxx, xxxxxx xxxxxxxxxx xx xxxxxxxxx xxxxxxxxxxxx (x.x. xxxxxxxxxx xxx development). Xxxxxxxxxxx xxxxxxxxxx, logging xxx xxxxxxxxxx as xxxx xx xxxxxxxx of xxxxxx rights, xx xxxxxxxxxx xxx xxxx xxxxxxxxxx xxxxxxxx, xxxxx xx implemented based xx a risk xxxxxxxxxx. Xxxxx virtual machines xxxxxxx xx the xxxx xxxxxxxxxx xxxxx xxxx x&xxxx;xxxxxxx xxxx xxxxxxx.

Xxxxxxxxxxx 1.15: Xxxxx xxxxxxxxx

Xxx usage xx xxxxxx and/or xxxxxx xxxxx solutions xx xxx Payment Xxxxxxxxxxx Xxxxx xxxx be xxxxx xx x&xxxx;xxxxxx xxxx xxxxxxxxxx, xxxxxx xxxx account xxx xxxxxxxxx xxxxxxxx xxx xxx xxxxxxxxxxx clauses xxxxxxx xx the xxxxx solution.

If xxxxxx xxxxx solutions xxx xxxx, xx xx xxxxxxxxxx xxxx xxx xxxxxxxxxxx level xx xxx xxxxxxx system xx xxx highest xxx xx xxx xxxxxxxxx xxxxxxx. Xxx xx-xxxxxxxx xxxxxxxxxx of xxx hybrid xxxxxxxxx xxxx xx xxxxxxxxxx xxxx xxx other xx-xxxxxxxx systems.

Business xxxxxxxxxx xxxxxxxxxx (xxxxxxxxxx only xx xxxxxxxx xxxxxxxxxxxx)

Xxx xxxxxxxxx xxxxxxxxxxxx (2.1 xx 2.6) relate xx business xxxxxxxxxx xxxxxxxxxx. Xxxx TARGET2 xxxxxxxxxxx xxxxxxxxxx xx xxx Xxxxxxxxxx as xxxxx xxxxxxxx for xxx xxxxxx functioning xx xxx XXXXXX2 xxxxxx xxxxx xxxx x&xxxx;xxxxxxxx continuity xxxxxxxx xx xxxxx xxxxxxxxxx xxx following xxxxxxxx.

Xxxxxxxxxxx 2.1

:

Xxxxxxxx continuity xxxxx xxxxx xx developed xxx procedures xxx xxxxxxxxxxx them xxx xx xxxxx.

Xxxxxxxxxxx 2.2

:

Xx xxxxxxxxx operational xxxx xxxxx xx available.

Requirement 2.3

:

Xxx risk profile xx xxx xxxxxxxxx xxxx shall xx xxxxxxxxx xxxx that xx xxx xxxxxxx xxxx, xx xxxxx xx avoid xxxx xxxx xxxxx xxx xxxxxxxx xx xxx xxxx event at xxx same xxxx. Xxx xxxxxxx, xxx xxxxxxxxx xxxx xxxxx xx xx x&xxxx;xxxxxxxxx xxxxx grid xxx xxxxxxx xxxxxxxxxxxxxxxxx xxxxxxx xxxx xxxxx xx xxx primary business xxxxxxxx.

Xxxxxxxxxxx 2.4

:

In xxx xxxxx xx a major xxxxxxxxxxx xxxxxxxxxx xxxxxxxxx xxx xxxxxxx site xxxxxxxxxxxx xxx/xx xxxxxxxx xxxxx xxxxxxxxxxx, xxx xxxxxxxx xxxxxxxxxxx xxxxx xx xxxx to xxxxxx xxxxxx operations xxxx xxx alternate xxxx, where it xxxxx be xxxxxxxx xx xxxxxxxx close xxx business xxx xxx xxxx xxx xxxxxxxxx business xxx(x).

Xxxxxxxxxxx 2.5

:

Xxxxxxxxxx xxxxx xx xx xxxxx to xxxxxx xxxx the xxxxxxxxxx of xxxxxxxxxxxx xx resumed from xxx alternate site xxxxxx a reasonable xxxxxxxxx xxxxx xxx initial xxxxxxxxxx xx xxxxxxx xxx commensurate to xxx criticality xx xxx business xxxx xxx disrupted.

Requirement 2.6

:

Xxx xxxxxxx xx xxxx xxxx xxxxxxxxxxx xxxxxxxxxxx xxxxx xx xxxxxx xx xxxxx once x&xxxx;xxxx and xxxxxxxx xxxxx xxxxx xx xxxxxxxxxxxxx trained. Xxx xxxxxxx period xxxxxxx xxxxx shall xxx xxxxxx one xxxx.

“.

(1)&xxxx;&xxxx;Xxx xxxx-xx-xxxx xxxxxxxxx refers xx xxx xxxxxxxxxxxxxx xx the xxx xx xxxxxxxxxxx xxxx xx xxxxxxxxxx needs xxxxxx to xx xxxxx xx xxxxx xxx xxx/xxx duties.

(2)  The xxxxxxxxx xx least xxxxxxxxx xxxxxx xx xxxxxxxxx x&xxxx;xxxxxxx’x access xxxxxxx to xx XX xxxxxx in xxxxx xx xxxxx xxx xxxxxxxxxxxxx xxxxxxxx xxxx.

(3)&xxxx;&xxxx;X&xxxx;xxxxxxxx in xxx xxxxxxx xx xxxx xxxxxxxx xxxxxx be xxxxxxxxxx as xxx xxxxx party (xxx xxx personnel) which xx xxxxx xxxxxxxx (xxxxxxxxx), xxxx xxx xxxxxxxxxxx, to provide x&xxxx;xxxxxxx xxx xxxxx xxx xxxxxxx xxxxxxxxx xxx third party (xxx xxx personnel) xx granted xxxxxx, xxxxxx xxxxxxxx xx xx-xxxx, to xxxxxxxxxxx xxx/xx information systems xxx/xx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx xx the xxxxxxxxxxx xx scope xx xxxxxxxxxx xx xxx xxxxx xxxxxxx xxxxx the exercise xx xxx XXXXXX2 xxxx-xxxxxxxxxxxxx.


XXXXXXX XX

Xxxxxxx XX xxxxxxxxxx XXX/2007/7 xx xxxx xxxxx:

1.

Xxxxxx&xxxx;1 xx xxxx takto:

a)

definice xxxxx „xxxxxxx xxxxxxx order“ xx xxxxxxxxx xxxxx:

„—

“xxxxxxx xxxxxxx xxxxx” means, xx xxxx xxxx xxx Xxxxxxxx Payments Xxxxxxx'x SEPA Xxxxxxx Xxxxxx Transfer (XXX Xxxx) xxxxxx, x&xxxx;xxxxxxx xxxxxxxxxxx xxxxx can xx executed 24 xxxxx a day xxx xxxxxxxx xxx xx xxx xxxx, with xxxxxxxxx xx xxxxx xx xxxxxxxxx processing xxx notification to xxx xxxxx xxx xxxxxxxx (x) xxx XXXX XXX xx XXXX DCA instant xxxxxxx xxxxxx, (xx) XXXX XXX to XXXX XX xxxxxxxxx xxxxxxx xxxxxxx xxxxxxx xxxxxx, (xxx) XXXX XX xxxxxxxxx xxxxxxx xx XXXX DCA xxxxxxx payment xxxxxx xxx (iv) TIPS XX xxxxxxxxx account xx XXXX XX xxxxxxxxx account instant xxxxxxx orders,“;

b)

vkládají xx xxxx definice, xxxxx xxxxx:

„—

“XXXX xxxxxxxxx system xxxxxxxxx account (XXXX XX technical account)” xxxxx xx account xxxx by an xxxxxxxxx xxxxxx xx x&xxxx;XX on xx xxxxxxxxx system's xxxxxx xx xxx XX’x XXXXXX2 xxxxxxxxx xxxxxx xxx xxx xx xxx xxxxxxxxx xxxxxx xxx xxx xxxxxxx xx xxxxxxxx instant xxxxxxxx xx its xxx books,

“TIPS XXX xx XXXX AS xxxxxxxxx account xxxxxxxxx xxxxxxxx xxxxx” xxxxx xxx instruction xx xxxxxxxx a specified amount xx funds xxxx x&xxxx;XXXX XXX xx x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx xxxx xxx XXXX XXX xxxxxx’x xxxxxxxx (xx xxx xxxxxxxx xx xxxxxxx participant xx xxx ancillary xxxxxx) xx xxx xxxxx xx xxx ancillary xxxxxx,

“XXXX AS technical xxxxxxx xx XXXX XXX xxxxxxxxx xxxxxxxx xxxxx” xxxxx the xxxxxxxxxxx xx xxxxxxxx x&xxxx;xxxxxxxxx xxxxxx xx xxxxx from x&xxxx;XXXX XX xxxxxxxxx account xx x&xxxx;XXXX XXX xx xxxxxx xxx XXXX DCA xxxxxx’x xxxxxxxx (or xxx xxxxxxxx of xxxxxxx xxxxxxxxxxx xx xxx xxxxxxxxx system) in xxx books xx xxx xxxxxxxxx system,

“Network Xxxxxxx Provider (XXX)” xxxxx an undertaking xxxx has xxxx xxxxxxx x&xxxx;xxxxxxxxxx with xxx Xxxxxxxxxx to xxxxxxx xxxxxxxxxxxx services xxx xxx Xxxxxxxxxx Xxxxxx Market Xxxxxxxxxxxxxx Xxxxxxx.“;

x)

xxxxxxxx pojmu „T2S xxxxxxx service xxxxxxxx“ xx zrušuje;

2.

V čl. 4 odst. 2 xx xxxxxxx fc) xxxxxxxxx tímto:

„(fc)

TIPS XXX xx XX xxxxxxxxx xxxxxxxx orders and XX xx XXXX XXX liquidity transfer xxxxxx;“;

3.

X&xxxx;xx.&xxxx;4 xxxx.&xxxx;2 se xxxxxx xxxx xxxxxxx xx), xxxxx xxx:

„(xx)

XXXX XXX to XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx xxxxxxxx xxxxxx xxx TIPS XX xxxxxxxxx xxxxxxx xx XXXX XXX xxxxxxxxx xxxxxxxx orders; xxx“;

4.

X&xxxx;xxxxxx&xxxx;4 xx xxxxxxxx 3 xxxxxxxxx xxxxx:

„3.&xxxx;&xxxx;&xxxx;XXXXXX2 provides xxxx-xxxx xxxxx xxxxxxxxxx xxx payments xx xxxx, with xxxxxxxxxx xx xxxxxxx bank xxxxx across XX xxxxxxxx, X2X XXXx xxx XXXX XXXx. XXXXXX2 is xxxxxxxxxxx xxx xxxxxxxxx on xxx xxxxx xx xxx XXX xxxxxxx xxxxx xxxxxxx xxxxxx xxx xxxxxxxxx xxx xxxxxxxxx xxx xxxxxxx xxxxx xxxxxxxx xxx xxxxxxxxxx received xx xxx xxxx technical xxxxxx. As far xx xxx technical xxxxxxxxx xx xxx X2X DCAs is xxxxxxxxx, XXXXXX2 xx xxxxxxxxxxx xxxxxxxxxxx xxx xxxxxxxxx xx the xxxxx of xxx X2X Platform. As xxx as xxx xxxxxxxxx xxxxxxxxx xx xxx XXXX XXXx xxx TIPS AS xxxxxxxxx xxxxxxxx xx xxxxxxxxx, TARGET2 xx xxxxxxxxxxx xxxxxxxxxxx and xxxxxxxxx on xxx xxxxx xx the XXXX Xxxxxxxx. The XXX xx xxx xxxxxxxx of services xxxxx xxxxx Conditions. Xxxx and xxxxxxxxx xx xxx XXX-xxxxxxxxx XXXx xxx xxx 4XXx shall xx xxxxxxxxxx acts xxx xxxxxxxxx xx xxx XXX, xxx which xx shall xxxxxx xxxxxxxxx in xxxxxxxxxx xxxx Xxxxxxx&xxxx;21 xx xxxx Xxxxx. Xxxxxxxxxxxxx xxxxxxxx xx xxxxx Xxxxxxxxxx xxxxx not xxxxxx x&xxxx;xxxxxxxxxxx relationship xxxxxxx X2X XXX xxxxxxx xxx the XXX-xxxxxxxxx XXXx or xxx 4XXx when xxx of the xxxxxx xxxx in xxxx xxxxxxxx. Xxxxxxxxxxxx, xxxxxxxx xx xxxxxxxxxxx xxxxx x&xxxx;X2X XXX xxxxxx receives from, xx sends xx, xxx XXX xx X2X Platform xx xxxxxxxx xx the xxxxxxxx xxxxxxxx under xxxxx Xxxxxxxxxx xxx xxxxxx to xx xxxxxxxx xxxx, xx xxxx xx, xxx XXX.“;

5.

X&xxxx;xxxxxx&xxxx;8 xx xxxxxxxx 3 nahrazuje xxxxx:

„3.&xxxx;&xxxx;&xxxx;Xxxxx xxx XXX xxx xxxxxxx x&xxxx;xxxxxxx xx x&xxxx;X2X XXX holder xxxxxxxx xx xxxxxxxxx 1, xxxx T2S XXX xxxxxx xx xxxxxx xx have xxxxx the participating XXX(x) x&xxxx;xxxxxxx to xxxxx xxx T2S XXX with the xxxxxxx xxxxxxxx xx xxxxxxxxxx xxxxxxxxxxxx xxxxxxxx xx those securities xxxxxxxx.“;

6.

X&xxxx;xxxxxx&xxxx;28 se odstavec 1 nahrazuje xxxxx:

„1.&xxxx;&xxxx;&xxxx;X2X XXX holders shall xx xxxxxx to xx xxxxx of, xxxxx xxxxxx xxxx, xxx xxxxx xx xxxx to demonstrate xxxx compliance xx xxx xxxxxxxx xxxxxxxxx xxxxxxxxxxx xxxx all xxxxxxxxxxx xx them xxxxxxxx xx xxxxxxxxxxx xx xxxx protection. Xxxx xxxxx xx xxxxxx xx xx xxxxx of, xxx xxxxx xxxxxx xxxx xxx xxxxxxxxxxx xx xxxx xxxxxxxx to xxxxxxxxxxx xx xxxxxxxxxx xx xxxxx laundering xxx xxx xxxxxxxxx xx xxxxxxxxx, xxxxxxxxxxxxx-xxxxxxxxx xxxxxxx activities xxx xxx xxxxxxxxxxx of xxxxxxx xxxxxxx delivery xxxxxxx, xx particular xx xxxxx xx xxxxxxxxxxxx appropriate xxxxxxxx xxxxxxxxxx xxx payments xxxxxxx xx credited xx their X2X XXXx. Prior xx xxxxxxxx xxxx xxx xxxxxxxxxxx xxxxxxxxxxxx xxxx xxx X2X network xxxxxxx provider, X2X XXX xxxxxxx shall xxxxxx that xxxx xxx xxxxxxxx about xxx data retrieval xxxxxx.“;

7.

Xxxxxx&xxxx;30 se xxxxxxxxx xxxxx:

„Xxxxxxx&xxxx;30

Xxxxxxxxxxx xxxxxxxxxxxx xxxx xx XXX

1.&xxxx;&xxxx;&xxxx;X2X XXX xxxxxxx xxxxx either:

(a)

have xxxxxxxxx x&xxxx;xxxxxxxx with xx XXX within xxx xxxxxxxxx xx xxx xxxxxxxxxx xxxxxxxx xxxx xxxx NSP xx xxxxx xx xxxxxxxxx x&xxxx;xxxxxxxxx xxxxxxxxxx xx TARGET2- XXX; xx

(x)

xxxxxxx xxx another xxxxxx xxxxx xxx xxxxxxxxx x&xxxx;xxxxxxxx xxxx xx XXX xxxxxx xxx xxxxxxxxx xx xxx xxxxxxxxxx contract xxxx xxxx NSP.

2.   The xxxxx relationship xxxxxxx x&xxxx;X2X DCA holder xxx xxx XXX xxxxx be exclusively xxxxxxxx xx xxx xxxxx and conditions xx xxx separate xxxxxxxx xxxxxxxxx xxxx xx NSP xx xxxxxxxx xx in xxxxxxxxx 1(x).

3.&xxxx;&xxxx;&xxxx;Xxx services xx be xxxxxxxx xx the XXX xxxxx xxx form xxxx xx xxx xxxxxxxx xx xx xxxxxxxxx xx xxx XXX xx respect xx XXXXXX2.

4.&xxxx;&xxxx;&xxxx;Xxx XXX xxxxx not be xxxxxx xxx xxx xxxx, errors or xxxxxxxxx xx the XXX (including its xxxxxxxxx, staff xxx xxxxxxxxxxxxxx), xx xxx xxx xxxx, errors xx omissions xx xxxxx parties xxxxxxxx xx xxxxxxxxxxxx xx xxxx xxxxxx xx xxx NSP’s xxxxxxx.“;

8.

Xxxxxx xx xxxx článek 34a, xxxxx xxx:

„Xxxxxxx&xxxx;34x

Xxxxxxxxxxxx provisions

Once xxx TARGET xxxxxx xx xxxxxxxxxxx and XXXXXX2 xxx ceased xxxxxxxxx, X2X DCA xxxxxxx xxxxx become X2X XXX holders xx xxx XXXXXX xxxxxx.“;

9.

Xxxxxx xx pojem „X2X network xxxxxxx xxxxxxxx“ (v jednotném nebo xxxxxxx čísle) v čl. 6 xxxx.&xxxx;1 xxxx. x) xxxx x), xx.&xxxx;9 xxxx.&xxxx;5, čl. 10 xxxx.&xxxx;6, xx.&xxxx;14 xxxx.&xxxx;1 písm. x), čl. 22 odst. 1, xx.&xxxx;22 xxxx.&xxxx;2, xx.&xxxx;22 xxxx.&xxxx;3, xx.&xxxx;27 odst. 5, xx.&xxxx;28 xxxx.&xxxx;1, xx.&xxxx;29 xxxx.&xxxx;1 xxxxxxx XX x&xxxx;x&xxxx;xxxxxxxx 1 xxxxxxx X&xxxx;xx nahrazují xxxxxxx „XXX“;

10.

X&xxxx;xxxxxxx I se v odst. 8 xxxxxxx. 4 xxxxxxxxx xxxxxxx x) xxxxx:

„(x)

Xxxx-xx-xxxxxxxxxxx xxxx (X2X)

X2X xxxxxxx xxxxxx xxxxxxxxxxxxx between x&xxxx;X2X DCA xxxxxx xxx xxx T2S XXX. Xxx xxxxxxxxxxx xx xxxxxxxxx in x&xxxx;xxxxxxx xxxxxxx xx x&xxxx;XX xxxxxx. Xxx X2X access xxx XX xxxxxxxxxxxxxx xxx xx be xxxx xx support cookies. Xxxxxxx xxxxxxx are xxxxxxxxx xx xxx X2X User Handbook.“.

PŘÍLOHA III

Příloha XXX xxxxxxxxxx XXX/2007/7 se xxxx xxxxx:

1.

Xxxxxx xx xxxxx „TIPS network xxxxxxx xxxxxxxx“ (x&xxxx;xxxxxxxxx xxxx množném čísle) x&xxxx;xxxx xxxxxxx xx xxxxxxxxx odkazem „NSP“;

2.

Článek 1 xx xxxx takto:

a)

definice xxxxx „xxxxxxxxx xxxxx“ xx nahrazuje xxxxx:

„—

“xxxxxxxxx xxxxx” xxxxx xx xxxxxx which: (x) xxxxx x&xxxx;XXX, (x) xx xxxxxxxxxx xx x&xxxx;xxxxxxxxx xxxxx by x&xxxx;XXXX XXX xxxxxx xx xx xx xxxxxxxxx system; (c) xx x&xxxx;xxxxxxxxxxxxx, customer xx branch of x&xxxx;XXXX DCA xxxxxx xx x&xxxx;xxxxxxxxxxx xx xx ancillary system xx x&xxxx;xxxxxxxxxxxxx, customer xx branch xx x&xxxx;xxxxxxxxxxx xx an xxxxxxxxx xxxxxx; and (x) xx addressable xxxxxxx xxx XXXX Xxxxxxxx xxx xx xxxx to submit xxxxxxx xxxxxxx xxxxxx xxx receive xxxxxxx xxxxxxx xxxxxx xxxxxx xxx the XXXX XXX holder xx xxx ancillary xxxxxx xx, xx xx xxxxxxxxxx xx xxx XXXX DCA holder xx by xxx xxxxxxxxx system, directly,“;

b)

definice xxxxx „xxxxxxx order“ xx xxxxxxxxx tímto:

„—

“payment xxxxx”, xxxxxx where xxxx xx Xxxxxxxx 16 xx 18 xx xxxx Annex, xxxxx xx xxxxxxx xxxxxxx xxxxx, a positive xxxxxx xxxxxx, x&xxxx;XX xx TIPS XXX xxxxxxxxx xxxxxxxx order, x&xxxx;XXXX XXX xx XX xxxxxxxxx xxxxxxxx xxxxx, a TIPS XX xxxxxxxxx account xx XXXX DCA liquidity xxxxxxxx xxxxx or x&xxxx;XXXX XXX xx XXXX XX technical xxxxxxx xxxxxxxxx xxxxxxxx xxxxx,“;

x)

xxxxxxxx xxxxx „xxxxxxx xxxxxxx xxxxx“ xx xxxxxxxxx xxxxx:

„—

“xxxxxxx xxxxxxx xxxxx” xxxxx, xx xxxx xxxx xxx Xxxxxxxx Xxxxxxxx Xxxxxxx'x XXXX Xxxxxxx Xxxxxx Xxxxxxxx (XXX Xxxx) xxxxxx, x&xxxx;xxxxxxx xxxxxxxxxxx xxxxx can be xxxxxxxx 24 xxxxx x&xxxx;xxx xxx xxxxxxxx xxx xx the xxxx, xxxx xxxxxxxxx xx xxxxx xx xxxxxxxxx xxxxxxxxxx xxx xxxxxxxxxxxx xx the xxxxx and includes (x) XXXX XXX xx TIPS XXX xxxxxxx xxxxxxx orders, (x) XXXX XXX xx TIPS AS xxxxxxxxx xxxxxxx xxxxxxx xxxxxxx xxxxxx, (x) XXXX XX technical xxxxxxx xx XXXX XXX xxxxxxx xxxxxxx xxxxxx xxx (x) XXXX AS xxxxxxxxx xxxxxxx to TIPS XX xxxxxxxxx account xxxxxxx xxxxxxx orders,“;

d)

vkládají xx nové xxxxxxxx, xxxxx xxxxx:

„—

“XXXX xxxxxxxxx xxxxxx xxxxxxxxx xxxxxxx (XXXX XX xxxxxxxxx xxxxxxx)” xxxxx xx xxxxxxx held xx xx xxxxxxxxx xxxxxx xx the XX xx xx xxxxxxxxx xxxxxx'x xxxxxx in xxx CB’s TARGET2 xxxxxxxxx xxxxxx xxx xxx xx xxxx xxxxxxxxx system for xxx purpose xx xxxxxxxx xxxxxxx xxxxxxxx xx its xxx xxxxx,

“XXXX DCA xx XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxx” xxxxx the xxxxxxxxxxx xx xxxxxxxx x&xxxx;xxxxxxxxx xxxxxx xx xxxxx from x&xxxx;XXXX XXX to x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx fund xxx XXXX XXX holder’s xxxxxxxx (xx xxx xxxxxxxx xx xxxxxxx xxxxxxxxxxx xx the xxxxxxxxx system) xx xxx books xx xxx xxxxxxxxx xxxxxx,

“XXXX XX technical xxxxxxx xx TIPS DCA xxxxxxxxx xxxxxxxx xxxxx” xxxxx the xxxxxxxxxxx xx transfer x&xxxx;xxxxxxxxx xxxxxx of funds xxxx a TIPS XX xxxxxxxxx account xx x&xxxx;XXXX DCA xx xxxxxx xxx XXXX XXX holder’s xxxxxxxx (xx the xxxxxxxx xx another xxxxxxxxxxx xx the xxxxxxxxx xxxxxx) in the xxxxx xx the xxxxxxxxx xxxxxx,

“Xxxxxxxx Xxxxxxxx Xxxxxxx'x XXXX Xxxxxxx Xxxxxx Xxxxxxxx (XXX Xxxx) scheme” xx “XXX Xxxx xxxxxx” xxxxx xx xxxxxxxxx, xxxx xxxxxxxxx scheme xxxxxxxxx x&xxxx;xxx of xxxxxxxxx xxxxx to xx xxxxxxxx xxxx xx XXX Xxxx xxxxxxxxxxxx, allowing payment xxxxxxxx xxxxxxxxx in XXXX xx offer xx xxxxxxxxx, SEPA-wide xxxx xxxxxxx xxxxxx xxxxxxxx xxxxxxx,

“xxxxxx proxy xxxx-xx (XXX) xxxxxxx” xxxxx a service which xxxxxxx XXXX DCA xxxxxxx, ancillary xxxxxxx xxxxx TIPS XX xxxxxxxxx xxxxxxxx xxx xxxxxxxxx xxxxxxx, who xxxxxxx xxxx their xxxxxxxxx x&xxxx;xxxxxxx xx xxxxxxx xx xxxxxxx xxxxxxx xxxxx in xxxxxx xx x&xxxx;xxxxxxxxxxx xxxxxxxxxx with a proxy (x.x. a mobile number), xx xxxxxxxx from xxx xxxxxxx XXX xxxxxxxxxx the xxxxxxxxxxxxx xxxxxxxxxxx XXXX xxx xxx XXX xx xx xxxx to xxxxxx the relevant xxxxxxx in XXXX,

“Xxxxxxx Xxxxxxx Xxxxxxxx (NSP)” xxxxx an xxxxxxxxxxx xxxx xxx been xxxxxxx x&xxxx;xxxxxxxxxx xxxx xxx Xxxxxxxxxx xx xxxxxxx xxxxxxxxxxxx services xxx xxx Eurosystem Xxxxxx Market Xxxxxxxxxxxxxx Xxxxxxx,

“XXXX” xxxxx the xxxxxxxxxxxxx bank xxxxxxx xxxxxx which xxxxxxxx xxxxxxxxxx an individual xxxxxxx at x&xxxx;xxxxxxxx xxxxxxxxx xxxxxxxxxxx xx x&xxxx;xxxxxxxxxx country.“;

e)

definice pojmu „XXXX xxxxxxx xxxxxxx xxxxxxxx“ xx xxxxxxx;

3.

X&xxxx;xx.&xxxx;3 xxxx.&xxxx;1 xx zrušuje xxxxx xx „Xxxxxxxx X: TIPS xxxxxxxxxxxx xxxxxxxxx xxxxxxxxxxxx“;

4.

Xxxxxx&xxxx;4 xx xxxx xxxxx:

x)

x&xxxx;xxxxxxxx 2 xx xxxxxxxx nové xxxxxxx x), xxxxx xxx:

„(x)

XXXX XXX to XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxxx and XXXX XX xxxxxxxxx xxxxxxx xx TIPS XXX xxxxxxxxx transfer xxxxxx; xxx“;

x)

xxxxxxxx 3 xx xxxxxxxxx xxxxx:

„3.&xxxx;&xxxx;&xxxx;XXXXXX2 xxxxxxxx xxxx-xxxx xxxxx xxxxxxxxxx xxx payments xx xxxx, xxxx xxxxxxxxxx xx central xxxx xxxxx xxxxxx XX xxxxxxxx, X2X XXXx xxx XXXX XXXx.&xxxx;XXXXXX2 xx xxxxxxxxxxx xxx xxxxxxxxx xx xxx xxxxx xx xxx XXX xxxxxxx which xxxxxxx xxxxxx are xxxxxxxxx and xxxxxxxxx xxx xxxxxxx which xxxxxxxx are xxxxxxxxxx xxxxxxxx in xxx xxxx xxxxxxxxx manner. Xx far as xxx technical xxxxxxxxx xx xxx XXXX XXXx and TIPS XX xxxxxxxxx accounts xx xxxxxxxxx, TARGET2 xx xxxxxxxxxxx xxxxxxxxxxx xxx functions on xxx xxxxx of xxx XXXX Xxxxxxxx. Xx xxx xx xxx xxxxxxxxx operation xx the X2X XXXx is xxxxxxxxx, XXXXXX2 is xxxxxxxxxxx xxxxxxxxxxx xxx xxxxxxxxx xx xxx basis xx xxx X2X Xxxxxxxx.“;

5.

X&xxxx;xx.&xxxx;6 odst. 1 písm. x) xx xxx x) xxxxxxxxx xxxxx:

„(x)

xxxxxxx, xxxxxx, xxxxxxx xxx xxxxxxx xxx ensure xxx security of xxx necessary XX xxxxxxxxxxxxxx xx connect xx xxx XXXX Xxxxxxxx xxx xxxxxx xxxxxxx xxxxxx xx xx. Xx xxxxx xx, xxxxxxxxx XXXX XXX xxxxxxx xxx xxxxxxx third parties, xxx xxxxxx xxxx xxxxxxxxx. Xx xxxxxxxxxx, xxxxxx xx xxxxxxxxxxx xxxxx xx used, xxxxxxxxx XXXX DCA xxxxxxx xxxxx xxxxx xxxx xx xxxxxxxxx xxxx xxx xx xxxx XXXx to xxxxxx xxx xxxxxxxxx xxxxxxxxxx xxx xxxxxxxxxx, xx xxxxxxxxxx xxxx xxx xxxxxxxxx xxxxxxxxxxxxxx xx Xxxxxxxx X; xxx“;

6.

Xxxxxx&xxxx;9 xx xxxxxxxxx xxxxx:

„Xxxxxxx&xxxx;9

Xxxxxxxxxxx xxxxxxxxxxxx xxxx xx XXX

1.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx xxxxxx:

(x)

xxxxxxxx x&xxxx;xxxxxxxx xxxx xx XXX within xxx xxxxxxxxx xx xxx xxxxxxxxxx contract xxxx xxxx XXX xx xxxxx xx xxxxxxxxx x&xxxx;xxxxxxxxx connection xx XXXXXX2-XXX; xx

(x)

xxxxxxx xxx xxxxxxx xxxxxx xxxxx xxx concluded x&xxxx;xxxxxxxx xxxx xx XXX xxxxxx xxx xxxxxxxxx xx the xxxxxxxxxx xxxxxxxx xxxx xxxx XXX.

2.&xxxx;&xxxx;&xxxx;Xxx xxxxx xxxxxxxxxxxx xxxxxxx a participant xxx the XXX xxxxx xx exclusively xxxxxxxx by the xxxxx xxx conditions xx xxxxx xxxxxxxx xxxxxxxx xx xxxxxxxx xx xx paragraph 1(x).

3.&xxxx;&xxxx;&xxxx;Xxx services xx xx xxxxxxxx xx xxx NSP shall xxx form part xx xxx xxxxxxxx xx be xxxxxxxxx xx the ECB xx xxxxxxx xx XXXXXX2.

4.&xxxx;&xxxx;&xxxx;Xxx XXX xxxxx xxx xx xxxxxx xxx any xxxx, xxxxxx or xxxxxxxxx xx xxx XXX (xxxxxxxxx xxx xxxxxxxxx, xxxxx xxx subcontractors), xx xxx xxx xxxx, errors xx xxxxxxxxx by third xxxxxxx xxxxxxxx xx xxxxxxxxxxxx to gain xxxxxx xx xxx XXX’x network.“;

7.

Článek 10 xx xxxxxxx;

8.

Xxxxxx xx xxxx xxxxxx&xxxx;11x, xxxxx xxx:

„Xxxxxxx&xxxx;11x

XXX xxxxxxxxxx

1.&xxxx;&xxxx;&xxxx;Xxx xxxxxxx XXX xxxxxxxxxx contains the xxxxx – XXXX xxxxxxx table xxx xxx xxxxxxxx of xxx XXX service.

2.   Each xxxxx xxx be xxxxxx xx xxxx xxx XXXX. Xx XXXX xxx be xxxxxx xx xxx xx multiple proxies.

3.   Article 29 xxxxx xxxxx xx xxx data xxxxxxxxx xx xxx MPL xxxxxxxxxx.“;

9.

X&xxxx;xxxxxx&xxxx;12 se xxxxxxx xxxxxxxx 9;

10.

Xxxxxx&xxxx;16 se xxxxxxxxx tímto:

„Article 16

Types xx xxxxxxx xxxxxx xx XXXX XXX

Xxx xxxxxxxxx xxx xxxxxxxxxx xx xxxxxxx orders for xxx xxxxxxxx xx xxx TIPS service:

(a)

instant xxxxxxx orders;

(b)

positive recall xxxxxxx;

(x)

XXXX DCA to XX xxxxxxxxx xxxxxxxx xxxxxx;

(x)

XXXX XXX xx XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxxx; and

(e)

TIPS XX xxxxxxxxx account xx XXXX DCA xxxxxxxxx xxxxxxxx xxxxxx.“;

11.

X&xxxx;xxxxxx&xxxx;18 xx xxxxxxxx 6 xxxxxxxxx xxxxx:

„6.&xxxx;&xxxx;&xxxx;Xxxxx x&xxxx;XXXX DCA xx PM xxxxxxxxx xxxxxxxx xxxxx, x&xxxx;XXXX XXX xx TIPS XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxx xx a TIPS XX xxxxxxxxx xxxxxxx to XXXX XXX xxxxxxxxx xxxxxxxx xxxxx xxx xxxx xxxxxxxx xx xxxxxxxx xx xx Xxxxxxx&xxxx;17, the XXXXXX2-XXX xxxxx xxxxx xxxxxxx xxxxxxxxxx xxxxx xxx xxxxxxxxx xx the xxxxx'x xxxxxxx. If xxxxxxxxxx xxxxx xxx xxx xxxxxxxxx xxx xxxxxxxxx xxxxxxxx xxxxx xxxxx xx rejected. Xx sufficient xxxxx xxx xxxxxxxxx xxx xxxxxxxxx xxxxxxxx xxxxx xxxxx be settled xxxxxxxxxxx.“;

12.

X&xxxx;xx.&xxxx;20 xxxx.&xxxx;1 xx xxxxxxx x) xxxxxxxxx xxxxx:

„(x)

XXXX XXX xx XX xxxxxxxxx xxxxxxxx xxxxxx, positive recall xxxxxxx xxx XXXX XXX xx TIPS XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxxx xxx xxxxxx xxxxxxx xxxx XXXXXX2-XXX xxx xxxxxxxxxxx xx the xxxxxx xxxx xxx xxxxxxxx XXXX DCA xx debited. XXXX XX xxxxxxxxx xxxxxxx xx TIPS DCA xxxxxxxxx xxxxxxxx xxxxxx xxx deemed xxxxxxx xxxx TARGET2-ECB xxx xxxxxxxxxxx xx xxx xxxxxx xxxx xxx xxxxxxxx XXXX XX xxxxxxxxx xxxxxxx is xxxxxxx.“;

13.

X&xxxx;xxxxxx&xxxx;30 xx odstavec 1 nahrazuje xxxxx:

„1.&xxxx;&xxxx;&xxxx;XXXX XXX xxxxxxx xxxxx xx xxxxxx xx xx xxxxx xx, xxxxx xxxxxx xxxx xxx shall xx xxxx xx xxxxxxxxxxx xxxx xxxxxxxxxx to xxx relevant xxxxxxxxx xxxxxxxxxxx xxxx all xxxxxxxxxxx on xxxx xxxxxxxx xx xxxxxxxxxxx xx xxxx protection. Xxxx xxxxx be xxxxxx xx xx xxxxx xx, xxx xxxxx xxxxxx xxxx xxx xxxxxxxxxxx on xxxx xxxxxxxx to xxxxxxxxxxx on prevention xx money xxxxxxxxxx xxx xxx xxxxxxxxx xx terrorism, proliferation-sensitive xxxxxxx xxxxxxxxxx xxx xxx development of xxxxxxx xxxxxxx xxxxxxxx xxxxxxx, in xxxxxxxxxx xx xxxxx of xxxxxxxxxxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxxx xxx payments xxxxxxx xx credited xx their TIPS XXXx. TIPS XXX xxxxxxx ensure xxxx xxxx are informed xxxxx their xxxxxx XXX'x data xxxxxxxxx xxxxxx xxxxx xx xxxxxxxx xxxx x&xxxx;xxxxxxxxxxx xxxxxxxxxxxx xxxx xxxx XXX.“;

14.

Xxxxxx xx xxxx xxxxxx&xxxx;35x, xxxxx xxx:

„Xxxxxxx&xxxx;35x

Xxxxxxxxxxxx xxxxxxxxx

Xxxx xxx XXXXXX xxxxxx xx xxxxxxxxxxx xxx xxx XXXXXX2 xxx ceased operation, XXXX XXX holders xxxxx become XXXX XXX xxxxxxx in xxx XXXXXX xxxxxx.“;

15.

X&xxxx;xxxxxxx X&xxxx;xx xxxxxxx v odstavci 2 xxxxxxxxx xxxxx:

„Xxxxxxx Xxxx

Xxxxxxx Xxxx

Xxxx.002

XXXxXXXxxxxxx Xxxxxx Xxxxxx

Xxxx.004

XxxxxxxXxxxxx

Xxxx.008

XXXxXXXxxxxxxxXxxxxxXxxxxxxx

Xxxx.028

XXXxXXXxxxxxxXxxxxxXxxxxxx

xxxx.003

XxxXxxxxxx

xxxx.004

XxxxxxXxxxxxx

xxxx.005

XxxXxxxxxxxxxx

xxxx.006

XxxxxxXxxxxxxxxxx

xxxx.011

XxxxxxXxxxx

xxxx.019

XxxxxxXxxxxxxxXxxXxxxxxxxxxx

xxxx.025

Xxxxxxx

xxxx.029

XxxxxxxxxxXxXxxxxxxxxxxxx

xxxx.050

XxxxxxxxxXxxxxxXxxxxxxx

xxxx.052

XxxxXxXxxxxxxxXxxxxxxXxxxxx

xxxx.053

XxxxXxXxxxxxxxXxxxxxxxx

xxxx.054

XxxxXxXxxxxxxxXxxxxXxxxxxXxxxxxxxxxxx

xxxx.056

XXXxXXXxxxxxxXxxxxxxxxxxxXxxxxxx

xxxx.010

XxxxxxxXxxxxxxXxxxxxxxxxxxxxx

xxxx.011

XxxxxxxXxxxxxxXxxxxxxxx

xxxx.015

XxxxxxxXxxxxxxxXxxxxxxXxxxxxxxxxxXxxxxxx

xxxx.016

XxxxxXxxxxxXxxxxxX01

xxxx.022

XxxxxXxxxxxxxxxxxXxxxxxxX01“

16.

X&xxxx;xxxxxxx X&xxxx;xx v odst. 6 xxxxxxx. 1 xxxxxxxxx xxxxxxx x) tímto:

„(b)

User-to-application xxxx (X2X)

X2X xxxxxxx xxxxxx communication xxxxxxx x&xxxx;XXXX DCA xxxxxx xxx the XXXX XXX. The xxxxxxxxxxx xx xxxxxxxxx in x&xxxx;xxxxxxx xxxxxxx on x&xxxx;XX system. Xxx X2X xxxxxx xxx XX infrastructure xxx xx xx able xx xxxxxxx xxxxxxx. Xxxxxxx xxxxxxx xxx xxxxxxxxx xx xxx XXXX User Handbook.“;

17.

V dodatku XX se xxxxxxx xxxxxxxx 2;

18.

Dodatek V se xxxxxxx.