Animace načítání

Stránka se připravuje...


Na co čekáte? Nečekejte už ani minutu.
Získejte přístup na tento text ještě dnes. Kontaktujte nás a my Vám obratem uděláme nabídku pro Vás přímo na míru.

ROZHODNUTÍ EVROPSKÉ XXXXXXXXX XXXXX (XX) 2021/1758

xx xxx 21.&xxxx;xxxx 2021,

kterým xx xxxx xxxxxxxxxx XXX/2007/7 o podmínkách TARGET2-ECB (XXX/2021/43)

XXXXXXX XXXX XXXXXXXX XXXXXXXXX XXXXX,

x&xxxx;xxxxxxx xx Xxxxxxx x&xxxx;xxxxxxxxx Xxxxxxxx xxxx, x&xxxx;xxxxxxx na xxxxx a čtvrtou xxxxxxx xx.&xxxx;127 xxxx.&xxxx;2 této xxxxxxx,

x&xxxx;xxxxxxx xx xxxxxx Xxxxxxxxxx xxxxxxx xxxxxxxxxxx xxxx x&xxxx;Xxxxxxxx xxxxxxxxx xxxxx, x&xxxx;xxxxxxx xx xxxxxx&xxxx;11.6 x&xxxx;xxxxxx 17, 22 a 23 xxxxxx xxxxxxx,

xxxxxxxx k těmto důvodům:

(1)

Rada xxxxxxxxx změnila (1) xxx 20.&xxxx;xxxxxxxx 2021 xxxxxx xxxxxx Xxxxxxxx centrální xxxxx XXX/2012/27&xxxx;(2) s cílem: x) xxxxxxxx, xx xxxxxxxx TIPS XXX xxxxx x&xxxx;XXXXXX2 připojeni xxxxxxxxxxxxxxx xxxxxxxxxx xxxxxxx xxxxx xxxxxxxxxxxxxx Xxxxxxxxxxx (Xxxxxxxxxx Xxxxxx Market Xxxxxxxxxxxxxx Xxxxxxx) od xxxxxxxxx 2021 x&xxxx;xxxxxxxx X2X DCA xxxxx x&xxxx;XXXXXX2 xxxxxxxxxxxxxxx tohoto xxxxxxx xxxxxxxxx xx xxxxxx 2022; b) xxxxxxxx x&xxxx;xxxxxxxx pravidla xxxxxxxx xx xxxxxxxxxx xxxxxxxxx na xxxxxxxxxx xxxxxxxxx bodu TARGET2, xxx xx xxxxxxxxx, xx xx xxxxxx XXXXXX2 xxxx dále xxxxxxx xxx, xxx xxx schopen xxxxx xxxxxxx x&xxxx;xxxxxxx xxxxxxxxxxxx xxxxxxxxxxx; c) xxxxxx xxxxxxxxx, xxx majitelé xxxx PM, xxxxxx xxxxxxx účastníci x&xxxx;xxxxxxxxxxxxx xxxxxxxx xxxx XXX, xxxxx xxxxxxxxxxx k uplatňování xxxxxxx XXX Inst xxxxxxxx xxxxxx x&xxxx;xxxxxxxxxx xxxxxxx xxx okamžité xxxxxxxxxxxxx xxxxxxx XXXX, xxxx x&xxxx;xxxxxxx trvale xxxxxxxxxxx xx platformě XXXX xxxxxxxxxxxxxxx TIPS XXX, tak aby xx xxxxxxxxx xxxxxxxxxx xxxxxxxxxx xxxxxx x&xxxx;xxxx Xxxx; d) zavést xxxxxxxxxxxxxxx, xxxxx xxx x&xxxx;xxxxxxx xxxxxxx xxxxxxxx x&xxxx;xxxx xxxxxxxxx x&xxxx;XXXXXX2 xx odpovídající nástupnické xxxx x&xxxx;xxxxxxxx xxxxxxx XXXXXX, aby byla xxxxxxxxx xxxxxx jistota, x&xxxx;x) vyjasnit x&xxxx;xxxxxxxxxxxx xxxxxxx další xxxxxxx xxxxxxxx xxxxx XXX/2012/27.

(2)

Xxxxxxx xxxx xxxxxxxxxx xxxxxxx xxxxxxxxxxx X2-X2X, bude x&xxxx;xxxxx xxxxxx xxxxxxx xxxxxx xxxxxxxx xxxxxxxx xxxxxxxxxxxxxxx, pokud xxx x&xxxx;xxxxxxx xxxxxxx xxxxxxxx x&xxxx;xxxx xxxxxxxxx x&xxxx;XXXXXX2-XXX xx xxxxxxxxxxxx xxxxxxxxxxx xxxx.

(3)

Xxxxx xxxxxxxx zásad XXX/2012/27, xxxxx xxxx xxxx xx podmínky XXXXXX2-XXX, je xxxxx xxxxxxxxx x&xxxx;xxxxxxxxxx Xxxxxxxx xxxxxxxxx xxxxx XXX/2007/7&xxxx;(3).

(4)

Xxxxxxxxxx XXX/2007/7 xx xxxxx xxxxx xxxxxxxxxxxxx způsobem xxxxxx,

XXXXXXX XXXX ROZHODNUTÍ:

Xxxxxx&xxxx;1

Xxxxx

Xxxxxxx X, XX x&xxxx;XXX xxxxxxxxxx XXX/2007/7 xx xxxx v souladu x&xxxx;xxxxxxxxx xxxxxx xxxxxxxxxx.

Xxxxxx&xxxx;2

Xxxxxxxxx ustanovení

Toto xxxxxxxxxx xxxxxxxx x&xxxx;xxxxxxxx pátým xxxx po xxxxxxxxxx x&xxxx;Xxxxxxx xxxxxxxx Evropské xxxx.

Xxxxxxx xx xxx xxx 21.&xxxx;xxxxxxxxx 2021, x&xxxx;xxxxxxxx xxxx.&xxxx;1 písm. x) x&xxxx;xxxxxxxx 7 x&xxxx;9 xxxxxxx II xxxxxx xxxxxxxxxx, xxxxx xx xxxxxxx ode xxx 13.&xxxx;xxxxxx 2022.

Xx Xxxxxxxxxx nad Xxxxxxx dne 21. září 2021.

Xxxxxxxxxxx ECB

Christine XXXXXXX


(1)&xxxx;&xxxx;Xxxxxx xxxxxx Evropské xxxxxxxxx xxxxx (XX) 2021/1759 xx xxx 20.&xxxx;xxxxxxxx 2021, kterými xx xxxx obecné xxxxxx XXX/2012/27 x&xxxx;xxxxxxxxxxxxxx xxxxxxxxx xxxxxxxxxxxxxxx systému xxxxxxxxx xxxxxx x&xxxx;xxxxxxx čase (XXXXXX2) (ECB/2021/30) [(xxx xxxxxx 45 x&xxxx;xxxxx xxxxx Xxxxxxxx xxxxxxxx).

(2)&xxxx;&xxxx;Xxxxxx xxxxxx Xxxxxxxx xxxxxxxxx xxxxx ECB/2012/27 ze xxx 5.&xxxx;xxxxxxxx 2012 x&xxxx;xxxxxxxxxxxxxx expresním xxxxxxxxxxxxxxx xxxxxxx xxxxxxxxx xxxxxx x&xxxx;xxxxxxx xxxx (XXXXXX2) (Xx. xxxx. X&xxxx;30, 30.1.2013, s. 1).

(3)&xxxx;&xxxx;Xxxxxxxxxx Xxxxxxxx xxxxxxxxx xxxxx XXX/2007/7 ze xxx 24.&xxxx;xxxxxxxx 2007 o podmínkách XXXXXX2-XXX (Xx. xxxx. X&xxxx;237, 8.9.2007, s. 71).


XXXXXXX X

Xxxxxxx X&xxxx;xxxxxxxxxx XXX/2007/7 xx mění xxxxx:

1.

Xxxxxx&xxxx;1 xx xxxx xxxxx:

x)

xxxxxxxx pojmu „xxxxxxx xxxxxxx order“ xx xxxxxxxxx tímto:

„—

“instant xxxxxxx xxxxx” means, xx xxxx with xxx Xxxxxxxx Xxxxxxxx Council's XXXX Xxxxxxx Xxxxxx Xxxxxxxx (XXX Xxxx) xxxxxx, x&xxxx;xxxxxxx xxxxxxxxxxx xxxxx xxx xx xxxxxxxx 24 xxxxx x&xxxx;xxx any xxxxxxxx xxx xx xxx xxxx, with immediate xx xxxxx xx xxxxxxxxx xxxxxxxxxx xxx xxxxxxxxxxxx to xxx xxxxx xxx xxxxxxxx (x) xxx XXXX XXX to TIPS XXX instant xxxxxxx xxxxxx, (b) XXXX XXX xx TIPS XX technical account xxxxxxx xxxxxxx xxxxxx, (x) TIPS AS xxxxxxxxx xxxxxxx xx XXXX DCA instant xxxxxxx xxxxxx xxx (x) XXXX XX xxxxxxxxx account to XXXX AS technical xxxxxxx instant xxxxxxx xxxxxx,“;

x)

xxxxxxxx se xxxx xxxxxxxx, xxxxx xxxxx:

„—

“Xxxxxxxx Xxxxxxxx Council's XXXX Xxxxxxx Credit Xxxxxxxx (XXX Inst) scheme” xx “SCT Xxxx xxxxxx” xxxxx xx xxxxxxxxx, open xxxxxxxxx xxxxxx providing x&xxxx;xxx xx xxxxxxxxx rules xx xx xxxxxxxx xxxx xx XXX Xxxx xxxxxxxxxxxx, xxxxxxxx xxxxxxx xxxxxxxx providers xx SEPA xx xxxxx xx xxxxxxxxx, XXXX-xxxx euro xxxxxxx xxxxxx xxxxxxxx product,

“TIPS xxxxxxxxx xxxxxx technical xxxxxxx (XXXX AS xxxxxxxxx xxxxxxx)” xxxxx xx account xxxx xx an xxxxxxxxx xxxxxx xx a CB xx xx ancillary xxxxxx'x xxxxxx in xxx CB’s TARGET2 xxxxxxxxx system xxx xxx xx xxx xxxxxxxxx xxxxxx xxx xxx purpose xx xxxxxxxx xxxxxxx payments xx xxx own xxxxx,

“XXXX DCA to XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxx” xxxxx xxx xxxxxxxxxxx xx xxxxxxxx x&xxxx;xxxxxxxxx xxxxxx xx xxxxx xxxx x&xxxx;XXXX XXX xx x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx xxxx xxx XXXX XXX xxxxxx’x xxxxxxxx (xx xxx xxxxxxxx xx another xxxxxxxxxxx of xxx xxxxxxxxx system) xx xxx xxxxx of xxx ancillary xxxxxx,

“XXXX XX xxxxxxxxx xxxxxxx xx XXXX DCA xxxxxxxxx xxxxxxxx xxxxx” xxxxx the instruction xx xxxxxxxx a specified xxxxxx of xxxxx xxxx x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx x&xxxx;XXXX DCA xx xxxxxx the XXXX XXX holder’s position (xx xxx xxxxxxxx xx another xxxxxxxxxxx xx xxx xxxxxxxxx xxxxxx) in xxx xxxxx xx xxx xxxxxxxxx xxxxxx,

“xxxxxxxxx party” xxxxx xx entity xxxxx: (a) holds x&xxxx;XXX; (b) xx xxxxxxxxxx xx x&xxxx;xxxxxxxxx xxxxx xx x&xxxx;XXXX XXX xxxxxx xx xx xx xxxxxxxxx xxxxxx; (x) xx x&xxxx;xxxxxxxxxxxxx, xxxxxxxx xx xxxxxx of x&xxxx;XXXX XXX holder or x&xxxx;xxxxxxxxxxx of xx xxxxxxxxx xxxxxx, xx x&xxxx;xxxxxxxxxxxxx, xxxxxxxx, or xxxxxx of x&xxxx;xxxxxxxxxxx xx xx xxxxxxxxx xxxxxx; xxx (x) xx xxxxxxxxxxx xxxxxxx xxx TIPS Xxxxxxxx xxx is able xx xxxxxx instant xxxxxxx xxxxxx xxx xxxxxxx instant payment xxxxxx either via xxx XXXX DCA xxxxxx xx the xxxxxxxxx system xx, xx so xxxxxxxxxx xx xxx XXXX XXX xxxxxx or xx xxx ancillary xxxxxx, directly.“;

c)

definice xxxxx „XXXX xxxxxxx xxxxxxx xxxxxxxx“ xx xxxxxxx;

2.

X&xxxx;xxxxxx&xxxx;2 xxxxxx odstavci se xxxxxxxx xxxx text, xxxxx zní:

„Appendix XXX:

Xxxxxxxxxxxx xxxxxxxxx information xxxxxxxx xxxxxxxxxx xxx business xxxxxxxxxx management“;

3.

Článek 3 se xxxx xxxxx:

x)

x&xxxx;xxxxxxxx 2 xx xxxxxxx xx) xxxxxxxxx xxxxx:

„(xx)

XXXX DCA xx PM xxxxxxxxx xxxxxxxx xxxxxx xxx XX to XXXX XXX xxxxxxxxx xxxxxxxx xxxxxx;“;

x)

x&xxxx;xxxxxxxx 2 xx xxxxxx xxxx písmeno xx), které zní:

„(fd)

TIPS XXX to XXXX XX technical account xxxxxxxxx xxxxxxxx xxxxxx xxx XXXX AS xxxxxxxxx xxxxxxx xx XXXX XXX xxxxxxxxx xxxxxxxx xxxxxx; xxx“;

x)

xxxxxxxx 3 xx nahrazuje xxxxx:

„3.&xxxx;&xxxx;&xxxx;XXXXXX2 provides xxxx-xxxx xxxxx settlement for xxxxxxxx xx euro, xxxx settlement xx xxxxxxx xxxx money xxxxxx PM xxxxxxxx, X2X XXXx xxx XXXX XXXx. TARGET2 xx established xxx xxxxxxxxx xx xxx xxxxx xx the XXX xxxxxxx xxxxx xxxxxxx orders xxx xxxxxxxxx xxx xxxxxxxxx xxx xxxxxxx xxxxx xxxxxxxx xxx xxxxxxxxxx xxxxxxxx in the xxxx xxxxxxxxx xxxxxx. Xx xxx xx xxx xxxxxxxxx xxxxxxxxx xx xxx X2X XXXx xx xxxxxxxxx, XXXXXX2 xx xxxxxxxxxxx xxxxxxxxxxx and functions xx xxx basis xx xxx X2X Xxxxxxxx. Xx xxx xx xxx technical xxxxxxxxx of xxx XXXX XXXx xxx XXXX XX technical xxxxxxxx xx xxxxxxxxx, XXXXXX2 xx xxxxxxxxxxx xxxxxxxxxxx and xxxxxxxxx xx xxx xxxxx xx xxx XXXX Xxxxxxxx.“;

4.

Xxxxxx&xxxx;5 se xxxxxxxxx xxxxx:

„Xxxxxxx&xxxx;5

Xxxxxx xxxxxxxxxxxx

XX account xxxxxxx in XXXXXX2-XXX xxx xxxxxx xxxxxxxxxxxx xxx xxxxx xxxxxx xxxx xxx requirements xxx xxx xx Xxxxxxx&xxxx;8(1) and (2). Xxxx xxxxx xxxx xx xxxxx xxx PM xxxxxxx xxxx xxx XXX. XX xxxxxxx xxxxxxx xxxx xxxx xxxxxxx xx the XXX Xxxx xxxxxx xx xxxxxxx the XXXX Xxxxxxx Xxxxxx Xxxxxxxx Xxxxxxxxx Xxxxxxxxx xxxxx xx xxx xxxxx xxxxxx xxxxxxxxx xx xxx TIPS Xxxxxxxx at all xxxxx, xxxxxx xx x&xxxx;XXXX DCA xxxxxx xx as a reachable xxxxx xxx x&xxxx;XXXX XXX xxxxxx.“;

5.

Xxxxxx&xxxx;22 xx xxxxxxxxx xxxxx:

„Xxxxxxx&xxxx;22

Xxxxxxxx Requirements xxx Xxxxxxx Xxxxxxxxxx

1.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx xxxxxxxxx xxxxxxxx xxxxxxxx xxxxxxxx to xxxxxxx their systems xxxx xxxxxxxxxxxx access xxx use. Participants xxxxx xx xxxxxxxxxxx xxxxxxxxxxx xxx xxx xxxxxxxx xxxxxxxxxx of xxx xxxxxxxxxxxxxxx, xxxxxxxxx xxx xxxxxxxxxxxx xx xxxxx xxxxxxx.

2.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx shall xxxxxx xxx XXX xx any xxxxxxxx-xxxxxxx xxxxxxxxx in xxxxx xxxxxxxxx xxxxxxxxxxxxxx xxx, xxxxx xxxxxxxxxxx, xxxxxxxx-xxxxxxx xxxxxxxxx xxxx occur xx the xxxxxxxxx xxxxxxxxxxxxxx of xxx xxxxx xxxxx xxxxxxxxx. Xxx XXX xxx xxxxxxx further xxxxxxxxxxx xxxxx xxx xxxxxxxx xxx, xx xxxxxxxxx, xxxxxxx that the xxxxxxxxxxx xxxx xxxxxxxxxxx xxxxxxxx xx xxxxxxx x&xxxx;xxxxxxxxxx xx xxxx xx xxxxx.

3.&xxxx;&xxxx;&xxxx;Xxx XXX xxx xxxxxx xxxxxxxxxx xxxxxxxx xxxxxxxxxxxx, xx xxxxxxxxxx xxxx xxxxxx xx xxxxxxxxxxxxx xx xxx prevention xx xxxxx, on xxx xxxxxxxxxxxx and/or xx xxxxxxxxxxxx xxxx xxx xxxxxxxxxx critical xx xxx XXX.

4.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx shall xxxxxxx xxx ECB xxxx: (x) xxxxxxxxx xxxxxx to xxxxx xxxxxxxxxxx xx adherence xx their xxxxxx xxxxxxx service xxxxxxxx’x xxxxxxxx xxxxxxxx xxxxxxxxxxxx, xxx (xx) xx xx xxxxxx xxxxx xxx XXXXXX2 xxxx-xxxxxxxxxxxxx xxxxxxxxx as published xx xxx ECB’s xxxxxxx xx English.

4a.   The XXX xxxxx xxxxxx xxx xxxxxxxxxxx’x xxxx-xxxxxxxxxxxxx xxxxxxxxx(x) xx xxx xxxxxxxxxxxx level xx xxxxxxxxxx with each xx the requirements xxx xxx xx xxx XXXXXX2 xxxx-xxxxxxxxxxxxx xxxxxxxxxxxx. Xxxxx xxxxxxxxxxxx xxx xxxxxx in Xxxxxxxx VII, xxxxx xx xxxxxxxx xx xxx other Appendices xxxxxx xx Article 2(1), xxxxx xxxx xx xxxxxxxx xxxx xx xxxxx Conditions.

4b.   The xxxxxxxxxxx’x xxxxx xx compliance xxxx xxx xxxxxxxxxxxx xx xxx XXXXXX2 xxxx-xxxxxxxxxxxxx shall xx xxxxxxxxxxx xx xxxxxxx, xx xxxxxxxxxx xxxxx xx xxxxxxxx: ‘full xxxxxxxxxx’; ‘xxxxx xxx-xxxxxxxxxx’; xx ‘major xxx-xxxxxxxxxx’. Xxx xxxxxxxxx xxxxxxxx xxxxx: full xxxxxxxxxx xx xxxxxxx xxxxx xxxxxxxxxxxx satisfy 100% xx xxx requirements; xxxxx non-compliance xx xxxxx a participant xxxxxxxxx xxxx than 100% xxx xx least 66% of xxx xxxxxxxxxxxx xxx major xxx-xxxxxxxxxx xxxxx a participant xxxxxxxxx xxxx than 66% xx xxx xxxxxxxxxxxx. If x&xxxx;xxxxxxxxxxx xxxxxxxxxxxx xxxx x&xxxx;xxxxxxxx xxxxxxxxxxx is xxx xxxxxxxxxx xx xx, xx xxxxx be xxxxxxxxxx xx compliant xxxx xxx xxxxxxxxxx xxxxxxxxxxx for xxx xxxxxxxx xx the xxxxxxxxxxxxxx. X&xxxx;xxxxxxxxxxx xxxxx xxxxx xx xxxxx ‘xxxx xxxxxxxxxx’ xxxxx xxxxxx xx xxxxxx xxxx demonstrating xxx xx xxxxxxx xx xxxxx xxxx xxxxxxxxxx. Xxx ECB xxxxx xxxxxx xxx xxxxxxxx xxxxxxxxxxx xxxxxxxxxxx of xxx xxxxxx xx xxxx xxxxxxxxxxx’x compliance.

4c.   If xxx xxxxxxxxxxx xxxxxxx xx xxxxx xxxxxxxxx xxxxxx xx xxx xxxxxxxxxxx xx adherence xx xxxxx xxxxxx XXXx endpoint xxxxxxxx xxxxxxxxxxxx or xxxx xxx xxxxxxx xxx XXXXXX2 xxxx-xxxxxxxxxxxxx the xxxxxxxxxxx’x level xx xxxxxxxxxx xxxxx be xxxxxxxxxxx as ‘xxxxx xxx-xxxxxxxxxx’.

4x.&xxxx;&xxxx;&xxxx;Xxx ECB xxxxx xxxxxxxx xxxxxxxxxx xx xxxxxxxxxxxx xx xx xxxxxx xxxxx.

4x.&xxxx;&xxxx;&xxxx;Xxx XXX xxx xxxxxx xxx xxxxxxxxx xxxxxxxx xx xxxxxxx xx participants xxxxx level of xxxxxxxxxx xxx xxxxxxxx xx minor xx xxxxx xxx-xxxxxxxxxx, in xxxxxxxxxx order xx xxxxxxxx:

(x)

xxxxxxxx xxxxxxxxxx: xxx xxxxxxxxxxx shall xxxxxxx xxx XXX with x&xxxx;xxxxxxx xxxxxx, signed xx x&xxxx;xxxxxx xxxxxxxxx, xx xxxxx xxxxxxxx xx addressing the xxx-xxxxxxxxxx. The xxxxxxxxxxx xxxxx additionally incur x&xxxx;xxxxxxx xxxxxxx xxxxxx xxx xxxx xxxxxxxx xxxxxxx xxxxx xx xxx xxxxxxx fee xx xxx out xx xxxxxxxxx 1 xx Appendix VI xxxxxxxxx xxx xxxxxxxxxxx xxxx. Xxxx xxxxxxx xx xxxxxxx xxx xx imposed xx xxx xxxxx the xxxxxxxxxxx xxxxxxxx x&xxxx;xxxxxx xxxxxxxxxxx assessment xx xxxxx non-compliance xx xx assessment of xxxxx non-compliance;

(ii)

suspension: participation xx XXXXXX2-XXX may xx xxxxxxxxx xx xxx xxxxxxxxxxxxx xxxxxxxxx xx Xxxxxxx&xxxx;28(2)(x) and (x) xx xxxx Xxxxx. By way xx derogation from Xxxxxxx&xxxx;28 xx xxxx Xxxxx, xxx xxxxxxxxxxx xxxxx xx xxxxx xxxxx months’ xxxxxx xx xxxx xxxxxxxxxx. Xxx xxxxxxxxxxx shall xxxxx x&xxxx;xxxxxxx penalty xxxxxx for xxxx xxxxxxxxx xxxxxxx xx xxxxxx its xxxxxxx xxx as xxx xxx xx xxxxxxxxx 1 xx Appendix XX, xxxxxxxxx xxx xxxxxxxxxxx xxxx. Xxxx xxxxxxx xx xxxxxxx xxx xx xxxxxxx xx xxx event xxx xxxxxxxxxxx xxxxxxxx x&xxxx;xxxxxx consecutive xxxxxxxxxx xx xxxxx xxx-xxxxxxxxxx;

(xxx)

xxxxxxxxxxx: xxxxxxxxxxxxx xx XXXXXX2-XXX xxx xx xxxxxxxxxx xx xxx circumstances xxxxxxxxx in Xxxxxxx&xxxx;28(2)(x) xxx (c) xx xxxx Xxxxx. Xx xxx of xxxxxxxxxx xxxx Xxxxxxx&xxxx;28 xx xxxx Xxxxx, xxx xxxxxxxxxxx shall be xxxxx xxxxx months’ xxxxxx xx xxxx xxxxxxxxxxx. Xxx xxxxxxxxxxx xxxxx incur xx xxxxxxxxxx xxxxxxx xxxxxx xx XXX 1000 xxx xxxx xxxxxxxxxx xxxxxxx. Xxxx xxxxxxx xx xxxxxxx xxx xx xxxxxxx xx xxx xxxxxxxxxxx xxx xxx xxxxxxxxx xxx xxxxx non-compliance to xxx xxxxxxxxxxxx xx xxx XXX xxxxxxxxx xxxxx xxxxxx xx xxxxxxxxxx.“;

6.

X&xxxx;xxxxxx&xxxx;33 xx xxxxxxxx 1 nahrazuje tímto:

„1.   Participants xxxxx be xxxxxx xx xx xxxxx xx, xxxxx xxxxxx xxxx, and shall xx able to xxxxxxxxxxx xxxx xxxxxxxxxx xx xxx xxxxxxxx xxxxxxxxx authorities with xxx xxxxxxxxxxx on xxxx xxxxxxxx to xxxxxxxxxxx xx xxxx xxxxxxxxxx. Xxxx shall xx deemed xx xx xxxxx xx, xxx xxxxx xxxxxx xxxx xxx xxxxxxxxxxx xx xxxx xxxxxxxx xx xxxxxxxxxxx xx xxxxxxxxxx xx xxxxx xxxxxxxxxx and the xxxxxxxxx xx terrorism, xxxxxxxxxxxxx-xxxxxxxxx nuclear xxxxxxxxxx xxx xxx xxxxxxxxxxx xx nuclear xxxxxxx xxxxxxxx xxxxxxx, xx xxxxxxxxxx in terms xx xxxxxxxxxxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxxx xxx xxxxxxxx xxxxxxx xx xxxxxxxx on their XX xxxxxxxx. Xxxxxxxxxxxx xxxxx xxxxxx that xxxx xxx xxxxxxxx xxxxx xxx TARGET2 xxxxxxx xxxxxxx xxxxxxxx’x xxxx retrieval policy xxxxx xx xxxxxxxx xxxx the xxxxxxxxxxx xxxxxxxxxxxx xxxx xxx XXXXXX2 network xxxxxxx xxxxxxxx.“;

7.

Xxxxxx xx nový xxxxxx&xxxx;39x, který xxx:

„Xxxxxxx&xxxx;39x

Xxxxxxxxxxxx xxxxxxxxxx

1.&xxxx;&xxxx;&xxxx;Xxxx xxx XXXXXX xxxxxx xx xxxxxxxxxxx xxx XXXXXX2 has xxxxxx xxxxxxxxx, PM xxxxxxx xxxxxxxx xxxxx xx transferred xx xxx xxxxxxx xxxxxx’x xxxxxxxxxxxxx xxxxxxxxx xxxxxxxx xx the XXXXXX xxxxxx.

2.&xxxx;&xxxx;&xxxx;Xxx xxxxxxxxxxx xxxx XX xxxxxxx holders, xxxxxxxx Xxxxxxxxxxxx and xxxxxxxxxxx BIC xxxxxxx xxxxxxxx to xxx XXX Xxxx scheme xx xxxxxxxxx in xxx XXXX Xxxxxxxx xxxxxxxx xx Xxxxxxx&xxxx;5 xxxxx xxxxx xx xx 25 February 2022.“;

8.

X&xxxx;xxxxxxx I se x&xxxx;xxxx.&xxxx;8 xxxxxxx. 4 xxxxxxxxx xxxxxxx x) xxxxx:

„(x)

Xxxx-xx-xxxxxxxxxxx xxxx (U2A)

U2A permits xxxxxx xxxxxxxxxxxxx xxxxxxx x&xxxx;xxxxxxxxxxx and xxx XXX. Xxx xxxxxxxxxxx xx xxxxxxxxx in x&xxxx;xxxxxxx running on x&xxxx;XX xxxxxx (XXXXX Xxxxxxxx XxxXxxxxxx xx xxxxxxx interface, xx xxx xx required xx SWIFT). Xxx X2X xxxxxx xxx XX xxxxxxxxxxxxxx xxx xx be able xx support cookies. Xxxxxxx xxxxxxx are xxxxxxxxx xx the XXX User Xxxxxxxx.“;

9.

X&xxxx;xxxxxxx XX xx x&xxxx;xxxxxxxx 6 xxxxxxxxx xxxxxxx x) xxxxx:

„(x)

xxx xxxxxxxxxxx xxxxxxxxxx xx payment xxxxxx, xxxxxxxxxxxx xxxxx xxxxxxx xxxxxxxx xxxxxx xx collateral. During xxxxxxxxxxx processing, xxxxxxxx xxxxxxxxxxx xxxxxxxx may xx xxxx xx xxxx xxxxxxxx xxxxxxxxxxx xxxxxxxx. Xxx xxx xxxxxxxx xx xxxxxxxxxxx xxxxxxxxxx, xxxxxxxxxxxx’ available xxxxxxxxx xxx xxx xx xxxxx xxxx xxxxxxx by the XXX.“;

10.

Xxxxxxxx xx xxxx xxxxxxx XXX, xxxxx xxx:

„Xxxxxxxx XXX

Xxxxxxxxxxxx xxxxxxxxx xxxxxxxxxxx xxxxxxxx management xxx xxxxxxxx continuity xxxxxxxxxx

Xxxxxxxxxxx xxxxxxxx xxxxxxxxxx

Xxxxx xxxxxxxxxxxx are applicable xx xxxx participant, xxxxxx xxx xxxxxxxxxxx xxxxxxxxxxxx xxxx a specific xxxxxxxxxxx xx xxx xxxxxxxxxx xx xx. Xx establishing the xxxxx xx xxxxxxxxxxx xx xxx requirements xxxxxx xxx xxxxxxxxxxxxxx, xxx xxxxxxxxxxx xxxxxx xxxxxxxx xxx xxxxxxxx xxxx are part xx xxx Xxxxxxx Xxxxxxxxxxx Xxxxx (XXX). Xxxxxxxxxxxx, xxx XXX xxxxxx xx x&xxxx;Xxxxx xx Xxxxx (XxX), x.x. x&xxxx;xxxxxx involved xx xxx creation xx xxxxxxxxxxxx (e.g. xxxxxxxxxxxx, xxxxx-xxxxxx xxx xxxx-xxxxxx xxxxxxxxxxxx, xxxxxxxxxx), xxx xxxx at xxx xxxxxx responsible xx send the xxxxxxx xx SWIFT (x.x. XXXXX XXX Xxx) xx Internet (xxxx xxx xxxxxx xxxxxxxxxx xx Internet-based Xxxxxx).

Xxxxxxxxxxx 1.1: Xxxxxxxxxxx xxxxxxxx policy

The xxxxxxxxxx xxxxx xxx x&xxxx;xxxxx xxxxxx xxxxxxxxx xx xxxx xxxx business xxxxxxxxxx xxx xxxxxxxxxxx xxxxxxx xxx xxx xxxxxxxxxx to information xxxxxxxx through xxx xxxxxxxx, approval xxx xxxxxxxxxxx of xx xxxxxxxxxxx security policy xxxxxx xx xxxxxxxx xxxxxxxxxxx xxxxxxxx and xxxxx xxxxxxxxxx across xxx xxxxxxxxxxxx xx xxxxx xx identification, xxxxxxxxxx xxx treatment xx information security xxx cyber resilience xxxxx. Xxx xxxxxx xxxxxx xxxxxxx xx xxxxx the xxxxxxxxx xxxxxxxx: xxxxxxxxxx, scope (xxxxxxxxx xxxxxxx xxxx xx xxxxxxxxxxxx, human xxxxxxxxx, xxxxx management xxx.), xxxxxxxxxx xxx xxxxxxxxxx of responsibilities.

Requirement 1.2: Xxxxxxxx organisation

An xxxxxxxxxxx security xxxxxxxxx xxxxx be established xx xxxxxxxxx xxx xxxxxxxxxxx xxxxxxxx policy xxxxxx xxx xxxxxxxxxxxx. Xxx xxxxxxxxxx xxxxx xxxxxxxxxx xxx review xxx xxxxxxxxxxxxx xx xxx xxxxxxxxxxx xxxxxxxx xxxxxxxxx to ensure xxx xxxxxxxxxxxxxx xx xxx xxxxxxxxxxx xxxxxxxx xxxxxx (xx per Xxxxxxxxxxx 1.1) across xxx xxxxxxxxxxxx, xxxxxxxxx xxx xxxxxxxxxx of xxxxxxxxxx resources and xxxxxxxxxx xx xxxxxxxx xxxxxxxxxxxxxxxx xxx xxxx xxxxxxx.

Xxxxxxxxxxx 1.3: Xxxxxxxx xxxxxxx

Xxx xxxxxxxx of xxx organisation’s xxxxxxxxxxx xxx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx should xxx xx xxxxxxx by xxx xxxxxxxxxxxx of, xxx/xx xxx dependence xx, xx xxxxxxxx xxxxx/xxxxxxx xx xxxxxxxx/xxxxxxxx xxxxxxxx by xxxx. Xxx xxxxxx to xxx xxxxxxxxxxxx’x information xxxxxxxxxx xxxxxxxxxx by xxxxxxxx parties shall xx xxxxxxxxxx. Xxxx xxxxxxxx parties xx xxxxxxxx/xxxxxxxx xx xxxxxxxx xxxxxxx xxx xxxxxxxx xx xxxxxx xxx xxxxxxxxxxxx’x xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx, x&xxxx;xxxx xxxxxxxxxx xxxxx xx xxxxxxx xxx xx xxxxxxxxx xxx security xxxxxxxxxxxx xxx xxxxxxx xxxxxxxxxxxx. Xxxxxxxx shall xx xxxxxx xxx xxxxxxx xx xx agreement xxxx xxxx relevant xxxxxxxx xxxxx.

Xxxxxxxxxxx 1.4: Xxxxx xxxxxxxxxx

Xxx xxxxxxxxxxx xxxxxx, xxx business xxxxxxxxx xxx xxx xxxxxxxxxx information systems, xxxx xx xxxxxxxxx xxxxxxx, xxxxxxxxxxxxxxx, business xxxxxxxxxxxx, xxx-xxx-xxxxx xxxxxxxx, xxxxxxxx xxx xxxx-xxxxxxxxx xxxxxxxxxxxx, xx the xxxxx xx xxx Xxxxxxx Transaction Xxxxx xxxxx be xxxxxxxxx xxx xxx xxxx x&xxxx;xxxxxxxxx xxxxx. Xxx xxxxxxxxxxxxxx xxx the xxxxxxxxxxx xxx the xxxxxxxxx xx xxxxxxxxxxx xxxxxxxx in xxx xxxxxxxx processes and xxx related IT xxxxxxxxxx to xxxxxxxxx xxx xxxxxxxxxxx xxxxxx xxxxx xx xxxxxxxx. Xxxx: xxx xxxxx xxx delegate the xxxxxxxxxxxxxx xx specific xxxxxxxx xx xxxxxxxxxxx, xxx remains xxxxxxxxxxx xxx xxx xxxxxx xxxxxxxxxx xx the xxxxxx.

Xxxxxxxxxxx 1.5: Information xxxxxx xxxxxxxxxxxxxx

Xxxxxxxxxxx xxxxxx xxxxx xx xxxxxxxxxx xx terms xx xxxxx criticality to xxx smooth xxxxxxxx xx xxx xxxxxxx xx xxx xxxxxxxxxxx. Xxx classification shall xxxxxxxx xxx need, xxxxxxxxxx xxx degree xx xxxxxxxxxx xxxxxxxx xxxx xxxxxxxx xxx xxxxxxxxxxx asset xx xxx relevant xxxxxxxx xxxxxxxxx and xxxxx xxxx take xxxx xxxxxxxxxxxxx xxx xxxxxxxxxx XX components. Xx xxxxxxxxxxx xxxxx xxxxxxxxxxxxxx xxxxxx xxxxxxxx xx xxx management xxxxx xx xxxx to xxxxxx xx xxxxxxxxxxx xxx of xxxxxxxxxx xxxxxxxx throughout xxx xxxxxxxxxxx xxxxx xxxxxxxxx (xxxxxxxxx xxxxxxx xxx xxxxxxxxxxx of xxxxxxxxxxx xxxxxx) and to xxxxxxxxxxx xxx xxxx xxx specific xxxxxxxx xxxxxxxx.

Xxxxxxxxxxx 1.6: Human xxxxxxxxx xxxxxxxx

Xxxxxxxx xxxxxxxxxxxxxxxx xxxxx xx xxxxxxxxx xxxxx xx employment xx xxxxxxxx job xxxxxxxxxxxx xxx xx xxxxx xxx conditions xx employment. All xxxxxxxxxx for employment, xxxxxxxxxxx xxx third xxxxx users shall xx adequately xxxxxxxx, xxxxxxxxxx for sensitive xxxx. Xxxxxxxxx, xxxxxxxxxxx xxx xxxxx party xxxxx xx information xxxxxxxxxx xxxxxxxxxx xxxxx xxxx xx agreement xx xxxxx security xxxxx xxx xxxxxxxxxxxxxxxx. Xx adequate xxxxx xx xxxxxxxxx shall xx ensured among xxx xxxxxxxxx, xxxxxxxxxxx xxx third xxxxx xxxxx, xxx xxxxxxxxx xxx xxxxxxxx in xxxxxxxx xxxxxxxxxx xxx xxx correct xxx xx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx xxxxx xx xxxxxxxx xx xxxx xx xxxxxxxx possible xxxxxxxx xxxxx. X&xxxx;xxxxxx xxxxxxxxxxxx process xxx xxxxxxxx xxxxxxxx breaches xxxxx be xxxxxxxxxxx xxx xxxxxxxxx. Xxxxxxxxxxxxxxxx xxxxx xx xx xxxxx to xxxxxx xxxx xx employee’s, xxxxxxxxxx’x xx xxxxx xxxxx user’s exit xxxx xx xxxxxxxx xxxxxx xxx organisation xx xxxxxxx, xxx xxxx xxx xxxxxx xx xxx xxxxxxxxx xxx the removal xx xxx xxxxxx xxxxxx are completed.

Requirement 1.7: Physical and xxxxxxxxxxxxx xxxxxxxx

Xxxxxxxx or xxxxxxxxx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx xxxxx xx xxxxxx in xxxxxx xxxxx, protected by xxxxxxx xxxxxxxx xxxxxxxxxx, xxxx xxxxxxxxxxx xxxxxxxx xxxxxxxx xxx xxxxx xxxxxxxx. Xxxx xxxxx xx xxxxxxxxxx xxxxxxxxx xxxx xxxxxxxxxxxx access, xxxxxx xxx xxxxxxxxxxxx. Xxxxxx xxxxx xx xxxxxxx xxxx xx xxxxxxxxxxx who xxxx xxxxxx the xxxxx xx Requirement 1.6. Xxxxxxxxxx and standards xxxxx xx xxxxxxxxxxx xx xxxxxxx xxxxxxxx xxxxx xxxxxxxxxx information xxxxxx xxxx in xxxxxxx.

Xxxxxxxxx xxxxx xx xxxxxxxxx xxxx xxxxxxxx xxx xxxxxxxxxxxxx xxxxxxx. Xxxxxxxxxx xx xxxxxxxxx (xxxxxxxxx equipment xxxx xxx-xxxx) and xxxxxxx xxx removal xx xxxxxxxx xx necessary xx xxxxxx xxx xxxx xx xxxxxxxxxxxx xxxxxx to information xxx xx guard xxxxxxx loss xx xxxxxx xx equipment xx xxxxxxxxxxx. Special xxxxxxxx may xx xxxxxxxx to xxxxxxx xxxxxxx xxxxxxxx xxxxxxx xxx to safeguard xxxxxxxxxx xxxxxxxxxx xxxx xx xxx xxxxxxxxxx xxxxxx and cabling xxxxxxxxxxxxxx.

Xxxxxxxxxxx 1.8: Operations xxxxxxxxxx

Xxxxxxxxxxxxxxxx and xxxxxxxxxx xxxxx be xxxxxxxxxxx xxx xxx xxxxxxxxxx xxx operation of xxxxxxxxxxx processing xxxxxxxxxx xxxxxxxx xxx xxx xxxxxxxxxx xxxxxxx xx xxx Xxxxxxx Xxxxxxxxxxx Xxxxx xxx-xx-xxx.

Xx xxxxxxx xxxxxxxxx procedures, xxxxxxxxx xxxxxxxxx administration xx XX xxxxxxx, xxxxxxxxxxx xx xxxxxx xxxxx xx xxxxxxxxxxx, xxxxx xxxxxxxxxxx, xx reduce xxx xxxx xx xxxxxxxxx xx xxxxxxxxxx xxxxxx misuse. Where xxxxxxxxxxx of xxxxxx xxxxxx xx xxxxxxxxxxx xxx xx documented xxxxxxxxx xxxxxxx, xxxxxxxxxxxx xxxxxxxx xxxxx be xxxxxxxxxxx xxxxxxxxx x&xxxx;xxxxxx xxxx xxxxxxxx. Xxxxxxxx xxxxx xx xxxxxxxxxxx xx prevent and xxxxxx xxx xxxxxxxxxxxx xx malicious xxxx xxx systems in xxx Payment Xxxxxxxxxxx Xxxxx. Controls xxxxx xx xxxx xxxxxxxxxxx (xxxxxxxxx xxxx xxxxxxxxx) xx prevent, xxxxxx xxx xxxxxx malicious xxxx. Xxxxxx code xxxxx xx used xxxx xxxx xxxxxxx xxxxxxx (x.x. xxxxxx Xxxxxxxxx XXX xxxxxxxxxx xxx Xxxx Applets). Xxx configuration xx xxx xxxxxxx (x.x. xxx use of xxxxxxxxxx xxx xxxxxxx) xxxxx be strictly xxxxxxxxxx.

Xxxx xxxxxx xxx xxxxxxxx policies xxxxx xx xxxxxxxxxxx xx xxx management; those xxxxxxxx xxxxxxxx xxxxx xxxxxxx a plan xx xxx restoration xxxxxxx xxxxx xx xxxxxx xx regular intervals xx xxxxx annually.

Systems xxxx are xxxxxxxx xxx the xxxxxxxx xx xxxxxxxx shall xx xxxxxxxxx and xxxxxx xxxxxxxx to xxxxxxxxxxx security shall xx recorded. Operator xxxx shall xx xxxx xx ensure xxxx xxxxxxxxxxx xxxxxx xxxxxxxx xxx xxxxxxxxxx. Xxxxxxxx xxxx xxxxx xx xxxxxxxxx xxxxxxxx xx x&xxxx;xxxxxx xxxxx, xxxxx on the xxxxxxxxxxx of xxx xxxxxxxxxx. Xxxxxx xxxxxxxxxx xxxxx xx xxxx xx xxxxx xxx xxxxxxxxxxxxx of xxxxxxxx xxxxx are identified xx xxxxxxxx xxx xxx xxxxxxxx xx xxxxxxxx xxx xx xxxxxx conformity xx xx xxxxxx xxxxxx xxxxx.

Xxxxxxxxx xx xxxxxxxxxxx xxxxxxx xxxxxxxxxxxxx xxxxx xx xxxxx xx x&xxxx;xxxxxx xxxxxxxx xxxxxx, xxxxxxx xxx xx xxxx with xxxxxxxx xxxxxxxxxx among xxx xxxxxxxx xxxxxxx xxx xxxxx xx xxxxxxxxx xxxx xxx xxxxxxxx xxxxxxxxxxx. Xxxxx party xxxxxxxx components xxxxxxxx xx xxx exchange xx xxxxxxxxxxx xxxx XXXXXX2 (xxxx xxxxxxxx xxxxxxxx from x&xxxx;Xxxxxxx Xxxxxx xx xxxxxxxx 2 xx the xxxxx section xx xxx TARGET2 xxxx-xxxxxxxxxxxxx xxxxxxxxxxx xxxxxxxx) xxxx xx used xxxxx x&xxxx;xxxxxx xxxxxxxxx xxxx xxx xxxxx party.

Requirement 1.9: Access xxxxxxx

Xxxxxx xx information xxxxxx xxxxx xx justified xx xxx xxxxx xx business xxxxxxxxxxxx (xxxx-xx-xxxx&xxxx;(1)) xxx xxxxxxxxx xx xxx established xxxxxxxxx xx xxxxxxxxx xxxxxxxx (xxxxxxxxx xxx xxxxxxxxxxx xxxxxxxx policy). Xxxxx access xxxxxxx xxxxx shall xx xxxxxxx xxxxx xx xxx xxxxxxxxx of xxxxx xxxxxxxxx&xxxx;(2) xx xxxxxxx closely the xxxxx of xxx xxxxxxxxxxxxx business and XX processes. Where xxxxxxxx (x.x. for xxxxxx management) xxxxxxx xxxxxx xxxxxxx xxxxxx xx xxxxxxxxxx with xxxxxxxx access xxxxxxx xxxxxx there xxx xxxxxxxx compensatory controls xx xxxxx (e.g. xxxxxxxxxx, xxxxxxxx xxxx xxxxxxxxxxxxx).

Xxxxxx xxx xxxxxxxxxx xxxxxxxxxx xxxxx be xx place to xxxxxxx the allocation xx access xxxxxx xx information xxxxxxx xxx services that xxxx xxxxxx the xxxxx of xxx Xxxxxxx Xxxxxxxxxxx Chain. Xxx xxxxxxxxxx shall xxxxx xxx stages xx xxx xxxxxxxxx xx xxxx xxxxxx, xxxx xxx xxxxxxx xxxxxxxxxxxx xx xxx xxxxx xx xxx xxxxx xxxxxxxxxxxxxx of xxxxx xxxx xx xxxxxx require xxxxxx.

Xxxxxxx xxxxxxxxx xxxxx be xxxxx, xxxxx xxxxxxxxxxx, xx xxx xxxxxxxxxx xx xxxxxx xxxxxx xx xxxx criticality xxxx xxx abuse xx xxxxx xxxxxx xxxxxx could xxxx xx x&xxxx;xxxxxx adverse xxxxxx xx xxx xxxxxxxxxx xx xxx xxxxxxxxxxx (x.x. access xxxxxx allowing xxxxxx xxxxxxxxxxxxxx, xxxxxxxx xx xxxxxx xxxxxxxx, direct xxxxxx to xxxxxxxx xxxx).

Xxxxxxxxxxx controls xxxxx xx xxx xx xxxxx to xxxxxxxx, xxxxxxxxxxxx and xxxxxxxxx xxxxx xx xxxxxxxx xxxxxx xx xxx xxxxxxxxxxxx’x xxxxxxx, x.x. xxx xxxxx xxx xxxxxx xxxxxx to xxxxxxx in xxx Xxxxxxx Transaction Xxxxx. Xxxxxxxx xxxxxxxx xxxxx xxx be shared xx xxxxx xx xxxxxx xxxxxxxxxxxxxx.

Xxx passwords, xxxxx shall xx xxxxxxxxxxx and xxxxxxxx xx xxxxxxxx xxxxxxxx xx ensure that xxxxxxxxx xxxxxx xx xxxxxx xxxxxxx, x.x. xxxxxxxxxx rules and xxxxxxx-xxxx validity. A safe xxxxxxxx xxxxxxxx xxx/xx xxxxx xxxxxxxx shall xx xxxxxxxxxxx.

X&xxxx;xxxxxx shall xx xxxxxxxxx and xxxxxxxxxxx on the xxx of cryptographic xxxxxxxx xx xxxxxxx xxx xxxxxxxxxxxxxxx, xxxxxxxxxxxx xxx xxxxxxxxx xx xxxxxxxxxxx. X&xxxx;xxx management xxxxxx xxxxx be xxxxxxxxxxx xx xxxxxxx xxx xxx xx xxxxxxxxxxxxx xxxxxxxx.

Xxxxx xxxxx xx xxxxxx xxx xxxxxxx xxxxxxxxxxxx information xx xxxxxx xx xx xxxxx (x.x. x&xxxx;xxxxx screen, x&xxxx;xxxxx xxxx policy) to xxxxxx xxx risk xx unauthorised xxxxxx.

Xxxx xxxxxxx remotely, xxx xxxxx of xxxxxxx xx xx xxxxxxxxxxx xxxxxxxxxxx xxxxx xx xxxxxxxxxx xxx xxxxxxxxxxx xxxxxxxxx xxx organisational xxxxxxxx xxxxx xx xxxxxxx.

Xxxxxxxxxxx 1.10: Xxxxxxxxxxx xxxxxxx acquisition, development xxx maintenance

Security requirements xxxxx be identified xxx xxxxxx prior xx xxx xxxxxxxxxxx xxx/xx xxxxxxxxxxxxxx xx xxxxxxxxxxx xxxxxxx.

Xxxxxxxxxxx xxxxxxxx xxxxx be xxxxx xxxx xxxxxxxxxxxx, xxxxxxxxx xxxx-xxxxxxxxx applications, xx xxxxxx xxxxxxx xxxxxxxxxx. Xxxxx xxxxxxxx xxxxx xxxxxxx the xxxxxxxxxx xx input xxxx, xxxxxxxx xxxxxxxxxx xxx xxxxxx xxxx. Xxxxxxxxxx xxxxxxxx may be xxxxxxxx for systems xxxx xxxxxxx, or xxxx an impact xx, sensitive, xxxxxxxx xx xxxxxxxx xxxxxxxxxxx. Xxxx xxxxxxxx xxxxx xx xxxxxxxxxx on xxx basis of xxxxxxxx xxxxxxxxxxxx xxx xxxx assessment xxxxxxxxx xx xxx xxxxxxxxxxx xxxxxxxx (x.x. xxxxxxxxxxx xxxxxxxx xxxxxx, xxxxxxxxxxxxx xxxxxxx xxxxxx).

Xxx xxxxxxxxxxx xxxxxxxxxxxx xx xxx xxxxxxx xxxxx be xxxxxxxxxxx, documented xxx xxxxxx xxxxx xx xxxxx xxxxxxxxxx xxx xxx. Xx xxxxxxx xxxxxxx security, xxxxxxxxxxx xxxxxxxx, xxxxxxxxx xxxxxxxxxxxx xxx xxxxxx management, xxxxxx xx implemented xxxxx xx xxx xxxxxxxxxxx of xxxx xxxxx xxx xxx xxxxx xx xxxx xx xxx network xxxxx xx the xxxxxxxxxxxx. Xxxxx shall xx xxxxxxxx xxxxxxxx xx protect sensitive xxxxxxxxxxx xxxxxxx xxxx xxxxxx networks.

Access to xxxxxx files xxx xxxxxxx source xxxx xxxxx xx xxxxxxxxxx xxx IT xxxxxxxx xxx support activities xxxxxxxxx in x&xxxx;xxxxxx xxxxxx. Xxxx xxxxx xx xxxxx xx xxxxx xxxxxxxx of xxxxxxxxx xxxx xx xxxx xxxxxxxxxxxx. Xxxxxxx xxx support xxxxxxxxxxxx xxxxx be strictly xxxxxxxxxx. Xxxxxxxxxx xx xxxxxxx xx xxxxxxxxxx xxxxx xx xxxxxxxx xxxxxxxxxx. X&xxxx;xxxx assessment xx the xxxxx xxxxxxx xx xx xxxxxxxx xx production xxxxx be xxxxxxxxx.

Xxxxxxx xxxxxxxx testing xxxxxxxxxx xx xxxxxxx xx xxxxxxxxxx shall xxxx xx xxxxxxxxx according xx x&xxxx;xxxxxxxxxx xxxx xxxxx xx the xxxxxxx xx x&xxxx;xxxx xxxxxxxxxx, xxx security xxxxxxx xxxxx include, xx xxxxx, vulnerability xxxxxxxxxxx. Xxx of xxx xxxxxxxxxxxx highlighted xxxxxx xxx security xxxxxxx xxxxxxxxxx xxxxx xx assessed and xxxxxx plans to xxxxx xxx xxxxxxxxxx xxx xxxxx xx xxxxxxxx xxx followed xx xx x&xxxx;xxxxxx xxxxxxx.

Xxxxxxxxxxx 1.11: Xxxxxxxxxxx xxxxxxxx xx xxxxxxxx&xxxx;(3) xxxxxxxxxxxxx

Xx xxxxxx xxxxxxxxxx xx xxx xxxxxxxxxxx’x xxxxxxxx information xxxxxxx xxxx are xxxxxxxxxx xx xxxxxxxxx, information xxxxxxxx requirements for xxxxxxxxxx the risks xxxxxxxxxx with supplier’s xxxxxx xxxxx xx xxxxxxxxxx and formally xxxxxx xxxx with xxx xxxxxxxx.

Xxxxxxxxxxx 1.12: Xxxxxxxxxx xx information xxxxxxxx xxxxxxxxx xxx xxxxxxxxxxxx

Xx xxxxxx x&xxxx;xxxxxxxxxx xxx xxxxxxxxx approach xx the management xx xxxxxxxxxxx xxxxxxxx xxxxxxxxx, including xxxxxxxxxxxxx xx security events xxx weaknesses, xxxxx, xxxxxxxxxxxxxxxx xxx xxxxxxxxxx, xx xxxxxxxx xxx xxxxxxxxx xxxxx, shall xx xxxxxxxxxxx and xxxxxx to ensure x&xxxx;xxxxx, xxxxxxxxx and xxxxxxx and xxxxxx xxxxxxx xxxx information xxxxxxxx xxxxxxxxx xxxxxxxxx xxxxxxxxx related xx x&xxxx;xxxxx-xxxxxxx cause (x.x. x&xxxx;xxxxx pursued xx xx xxxxxxxx xxxxxxxx xx xx an xxxxxxx). Personnel involved xx these xxxxxxxxxx xxxxx be adequately xxxxxxx.

Xxxxxxxxxxx 1.13: Xxxxxxxxx xxxxxxxxxx xxxxxx

X&xxxx;xxxxxxxxxxx’x internal xxxxxxxxxxx systems (x.x. xxxx xxxxxx xxxxxxx, xxxxxxxx xxxxxxxx xxx xxxxxxxx xxxxxxx xxxxxxxxxxxx) xxxxx xx regularly xxxxxxxx for compliance xxxx xxx xxxxxxxxxxxx’x xxxxxxxxxxx framework xx xxxxxxxx (x.x. xxxxxxxxxxx xxxxxxxx policy, cryptographic xxxxxxx xxxxxx).

Xxxxxxxxxxx 1.14: Xxxxxxxxxxxxxx

Xxxxx xxxxxxx xxxxxxxx xxxxx comply xxxx xxx the xxxxxxxx xxxxxxxx xxxx are xxx xxx xxxxxxxx xxxxxxxx xxx xxxxxxx (x.x. xxxxxxxxx, xxxxxxx). Xxxxxxxx xxxxxxxx xx xxxxxxxxxxx xxxx xxxxxxx: xxxxxxxxx xx the xxxxxxxxxx xxx the xxxxxxx operating xxxxxx, xxxxxxx patching, xxxxxx xxxxxxxxxx xx xxxxxxxxx xxxxxxxxxxxx (x.x. xxxxxxxxxx xxx xxxxxxxxxxx). Centralised xxxxxxxxxx, xxxxxxx xxx xxxxxxxxxx xx xxxx xx xxxxxxxx of xxxxxx xxxxxx, xx xxxxxxxxxx xxx high xxxxxxxxxx xxxxxxxx, shall xx implemented based xx x&xxxx;xxxx xxxxxxxxxx. Xxxxx virtual xxxxxxxx xxxxxxx by xxx xxxx hypervisor xxxxx xxxx x&xxxx;xxxxxxx xxxx xxxxxxx.

Xxxxxxxxxxx 1.15: Xxxxx xxxxxxxxx

Xxx xxxxx of xxxxxx and/or xxxxxx xxxxx solutions in xxx Payment Xxxxxxxxxxx Xxxxx must be xxxxx xx a formal xxxx assessment, xxxxxx xxxx xxxxxxx xxx xxxxxxxxx xxxxxxxx xxx xxx xxxxxxxxxxx xxxxxxx xxxxxxx xx xxx xxxxx solution.

If xxxxxx xxxxx xxxxxxxxx xxx xxxx, xx is xxxxxxxxxx that the xxxxxxxxxxx level of xxx xxxxxxx xxxxxx xx xxx xxxxxxx xxx xx xxx xxxxxxxxx xxxxxxx. Xxx xx-xxxxxxxx xxxxxxxxxx of xxx xxxxxx solutions xxxx xx segregated xxxx the xxxxx xx-xxxxxxxx systems.

Business xxxxxxxxxx xxxxxxxxxx (applicable xxxx xx xxxxxxxx xxxxxxxxxxxx)

Xxx xxxxxxxxx requirements (2.1 xx 2.6) relate xx xxxxxxxx xxxxxxxxxx xxxxxxxxxx. Xxxx TARGET2 xxxxxxxxxxx xxxxxxxxxx xx xxx Eurosystem as xxxxx xxxxxxxx xxx xxx smooth xxxxxxxxxxx xx the XXXXXX2 xxxxxx shall have x&xxxx;xxxxxxxx xxxxxxxxxx strategy xx place comprising xxx xxxxxxxxx xxxxxxxx.

Xxxxxxxxxxx 2.1

:

Xxxxxxxx continuity xxxxx xxxxx be xxxxxxxxx xxx xxxxxxxxxx xxx xxxxxxxxxxx xxxx xxx xx xxxxx.

Xxxxxxxxxxx 2.2

:

Xx xxxxxxxxx xxxxxxxxxxx site xxxxx xx available.

Requirement 2.3

:

Xxx xxxx xxxxxxx xx the xxxxxxxxx xxxx xxxxx xx xxxxxxxxx xxxx xxxx xx xxx xxxxxxx xxxx, in order xx avoid xxxx xxxx xxxxx xxx xxxxxxxx xx xxx xxxx xxxxx xx xxx xxxx xxxx. Xxx example, xxx xxxxxxxxx xxxx xxxxx xx xx x&xxxx;xxxxxxxxx xxxxx grid and xxxxxxx xxxxxxxxxxxxxxxxx xxxxxxx xxxx xxxxx xx xxx primary business xxxxxxxx.

Xxxxxxxxxxx 2.4

:

Xx xxx xxxxx of x&xxxx;xxxxx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxx xxx xxxxxxx xxxx xxxxxxxxxxxx xxx/xx xxxxxxxx xxxxx xxxxxxxxxxx, xxx xxxxxxxx participant xxxxx xx xxxx to xxxxxx xxxxxx xxxxxxxxxx xxxx xxx xxxxxxxxx xxxx, xxxxx xx xxxxx be xxxxxxxx xx xxxxxxxx xxxxx xxx xxxxxxxx day xxx xxxx the xxxxxxxxx business day(s).

Requirement 2.5

:

Xxxxxxxxxx shall be xx xxxxx xx xxxxxx xxxx xxx xxxxxxxxxx xx xxxxxxxxxxxx xx xxxxxxx xxxx xxx alternate xxxx xxxxxx x&xxxx;xxxxxxxxxx timeframe xxxxx xxx xxxxxxx xxxxxxxxxx of xxxxxxx xxx xxxxxxxxxxxx xx xxx criticality xx xxx xxxxxxxx xxxx xxx disrupted.

Requirement 2.6

:

Xxx xxxxxxx to xxxx xxxx operational disruptions xxxxx be xxxxxx xx least once x&xxxx;xxxx and xxxxxxxx xxxxx xxxxx xx xxxxxxxxxxxxx xxxxxxx. Xxx xxxxxxx xxxxxx xxxxxxx xxxxx xxxxx xxx xxxxxx one xxxx.

“.

(1)&xxxx;&xxxx;Xxx xxxx-xx-xxxx xxxxxxxxx xxxxxx xx xxx xxxxxxxxxxxxxx xx xxx set xx information that xx xxxxxxxxxx xxxxx xxxxxx to in xxxxx xx xxxxx xxx her/his xxxxxx.

(2)&xxxx;&xxxx;Xxx xxxxxxxxx of least xxxxxxxxx xxxxxx xx xxxxxxxxx x&xxxx;xxxxxxx’x access xxxxxxx xx an XX xxxxxx xx xxxxx xx match xxx xxxxxxxxxxxxx xxxxxxxx xxxx.

(3)&xxxx;&xxxx;X&xxxx;xxxxxxxx xx the xxxxxxx xx xxxx xxxxxxxx should xx xxxxxxxxxx xx xxx xxxxx xxxxx (and xxx personnel) xxxxx xx xxxxx xxxxxxxx (xxxxxxxxx), with xxx xxxxxxxxxxx, xx provide x&xxxx;xxxxxxx xxx xxxxx xxx xxxxxxx xxxxxxxxx xxx third xxxxx (xxx xxx xxxxxxxxx) xx granted xxxxxx, xxxxxx remotely xx xx-xxxx, xx information xxx/xx xxxxxxxxxxx xxxxxxx xxx/xx xxxxxxxxxxx processing xxxxxxxxxx xx xxx xxxxxxxxxxx xx scope xx xxxxxxxxxx xx xxx scope covered xxxxx xxx xxxxxxxx xx the XXXXXX2 xxxx-xxxxxxxxxxxxx.


XXXXXXX XX

Xxxxxxx XX xxxxxxxxxx ECB/2007/7 se xxxx xxxxx:

1.

Xxxxxx&xxxx;1 se xxxx xxxxx:

x)

xxxxxxxx pojmu „xxxxxxx xxxxxxx xxxxx“ xx xxxxxxxxx xxxxx:

„—

“xxxxxxx xxxxxxx xxxxx” xxxxx, xx xxxx xxxx xxx Xxxxxxxx Payments Xxxxxxx'x XXXX Xxxxxxx Xxxxxx Transfer (SCT Xxxx) xxxxxx, x&xxxx;xxxxxxx xxxxxxxxxxx xxxxx xxx xx xxxxxxxx 24 xxxxx x&xxxx;xxx any xxxxxxxx xxx xx xxx xxxx, xxxx xxxxxxxxx xx close xx xxxxxxxxx xxxxxxxxxx xxx xxxxxxxxxxxx to xxx payer and xxxxxxxx (x) xxx XXXX XXX xx XXXX DCA xxxxxxx xxxxxxx orders, (xx) XXXX XXX xx XXXX XX technical xxxxxxx xxxxxxx xxxxxxx xxxxxx, (iii) XXXX XX xxxxxxxxx xxxxxxx xx XXXX DCA xxxxxxx payment orders xxx (xx) XXXX XX xxxxxxxxx xxxxxxx xx XXXX XX xxxxxxxxx account xxxxxxx xxxxxxx orders,“;

b)

vkládají xx xxxx xxxxxxxx, xxxxx xxxxx:

„—

“XXXX xxxxxxxxx xxxxxx xxxxxxxxx xxxxxxx (XXXX XX xxxxxxxxx account)” xxxxx an xxxxxxx xxxx by an xxxxxxxxx xxxxxx or x&xxxx;XX xx an xxxxxxxxx xxxxxx'x behalf xx xxx XX’x XXXXXX2 xxxxxxxxx xxxxxx xxx xxx by xxx xxxxxxxxx xxxxxx xxx the xxxxxxx xx xxxxxxxx xxxxxxx xxxxxxxx xx xxx xxx books,

“TIPS DCA xx XXXX AS xxxxxxxxx xxxxxxx xxxxxxxxx xxxxxxxx xxxxx” means xxx xxxxxxxxxxx xx xxxxxxxx x&xxxx;xxxxxxxxx xxxxxx xx xxxxx xxxx x&xxxx;XXXX XXX xx x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx xxxx xxx TIPS DCA xxxxxx’x xxxxxxxx (xx xxx xxxxxxxx xx xxxxxxx participant xx xxx xxxxxxxxx xxxxxx) xx xxx books xx the xxxxxxxxx xxxxxx,

“XXXX XX xxxxxxxxx xxxxxxx xx TIPS XXX xxxxxxxxx transfer xxxxx” means xxx xxxxxxxxxxx xx xxxxxxxx x&xxxx;xxxxxxxxx amount of xxxxx xxxx x&xxxx;XXXX XX technical xxxxxxx xx x&xxxx;XXXX XXX xx defund xxx XXXX XXX xxxxxx’x xxxxxxxx (xx xxx xxxxxxxx xx xxxxxxx xxxxxxxxxxx of xxx xxxxxxxxx xxxxxx) xx xxx books xx xxx xxxxxxxxx xxxxxx,

“Xxxxxxx Xxxxxxx Xxxxxxxx (NSP)” xxxxx xx xxxxxxxxxxx xxxx xxx xxxx xxxxxxx x&xxxx;xxxxxxxxxx xxxx xxx Xxxxxxxxxx xx xxxxxxx connectivity xxxxxxxx xxx xxx Eurosystem Xxxxxx Market Xxxxxxxxxxxxxx Xxxxxxx.“;

x)

xxxxxxxx xxxxx „X2X xxxxxxx xxxxxxx xxxxxxxx“ xx zrušuje;

2.

V čl. 4 odst. 2 xx písmeno xx) xxxxxxxxx tímto:

„(fc)

TIPS DCA xx XX liquidity xxxxxxxx xxxxxx and XX xx XXXX XXX liquidity xxxxxxxx xxxxxx;“;

3.

X&xxxx;xx.&xxxx;4 xxxx.&xxxx;2 se xxxxxx xxxx xxxxxxx xx), které xxx:

„(xx)

XXXX XXX xx XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx xxxxxxxx xxxxxx xxx TIPS XX xxxxxxxxx account xx XXXX XXX liquidity xxxxxxxx xxxxxx; and“;

4.

V článku 4 xx xxxxxxxx 3 xxxxxxxxx xxxxx:

„3.&xxxx;&xxxx;&xxxx;XXXXXX2 xxxxxxxx xxxx-xxxx xxxxx settlement xxx xxxxxxxx xx xxxx, xxxx xxxxxxxxxx xx xxxxxxx bank xxxxx xxxxxx XX xxxxxxxx, X2X XXXx xxx XXXX XXXx. XXXXXX2 xx established xxx functions xx xxx xxxxx xx xxx SSP xxxxxxx xxxxx xxxxxxx xxxxxx xxx submitted and xxxxxxxxx xxx xxxxxxx xxxxx payments are xxxxxxxxxx xxxxxxxx xx xxx same technical xxxxxx. Xx xxx xx the technical xxxxxxxxx xx xxx X2X DCAs xx xxxxxxxxx, TARGET2 xx xxxxxxxxxxx established and xxxxxxxxx xx xxx xxxxx xx xxx X2X Xxxxxxxx. Xx xxx xx the xxxxxxxxx xxxxxxxxx of xxx XXXX DCAs xxx TIPS AS xxxxxxxxx accounts is xxxxxxxxx, XXXXXX2 xx xxxxxxxxxxx xxxxxxxxxxx xxx xxxxxxxxx on xxx xxxxx xx xxx XXXX Platform. Xxx XXX xx the xxxxxxxx of services xxxxx xxxxx Xxxxxxxxxx. Xxxx and xxxxxxxxx xx the SSP-providing XXXx xxx xxx 4XXx xxxxx xx xxxxxxxxxx xxxx xxx xxxxxxxxx of xxx XXX, xxx which xx xxxxx xxxxxx xxxxxxxxx xx accordance xxxx Xxxxxxx&xxxx;21 xx xxxx Annex. Xxxxxxxxxxxxx xxxxxxxx to these Xxxxxxxxxx shall xxx xxxxxx x&xxxx;xxxxxxxxxxx relationship xxxxxxx T2S DCA xxxxxxx xxx xxx XXX-xxxxxxxxx XXXx xx xxx 4XXx xxxx xxx xx xxx xxxxxx acts xx xxxx capacity. Xxxxxxxxxxxx, xxxxxxxx or information xxxxx a T2S DCA xxxxxx receives xxxx, xx sends xx, xxx XXX xx X2X Xxxxxxxx in xxxxxxxx xx xxx xxxxxxxx xxxxxxxx xxxxx xxxxx Xxxxxxxxxx are xxxxxx xx xx xxxxxxxx xxxx, xx xxxx to, xxx XXX.“;

5.

X&xxxx;xxxxxx&xxxx;8 xx xxxxxxxx 3 nahrazuje tímto:

„3.   Where xxx XXX has xxxxxxx a request xx x&xxxx;X2X XXX holder xxxxxxxx xx xxxxxxxxx 1, xxxx T2S XXX xxxxxx xx xxxxxx xx xxxx xxxxx the xxxxxxxxxxxxx XXX(x) x&xxxx;xxxxxxx xx xxxxx xxx X2X XXX with xxx xxxxxxx xxxxxxxx xx xxxxxxxxxx transactions xxxxxxxx xx those xxxxxxxxxx xxxxxxxx.“;

6.

X&xxxx;xxxxxx&xxxx;28 xx odstavec 1 xxxxxxxxx xxxxx:

„1.&xxxx;&xxxx;&xxxx;X2X XXX xxxxxxx xxxxx xx xxxxxx to xx aware xx, xxxxx xxxxxx xxxx, xxx xxxxx xx xxxx xx xxxxxxxxxxx xxxx xxxxxxxxxx xx xxx xxxxxxxx xxxxxxxxx xxxxxxxxxxx xxxx xxx xxxxxxxxxxx xx them xxxxxxxx to legislation xx xxxx xxxxxxxxxx. Xxxx shall be xxxxxx xx xx xxxxx xx, and xxxxx comply with xxx xxxxxxxxxxx xx xxxx xxxxxxxx xx xxxxxxxxxxx xx xxxxxxxxxx xx xxxxx xxxxxxxxxx xxx xxx xxxxxxxxx xx xxxxxxxxx, xxxxxxxxxxxxx-xxxxxxxxx xxxxxxx activities xxx xxx xxxxxxxxxxx of xxxxxxx xxxxxxx xxxxxxxx xxxxxxx, xx xxxxxxxxxx xx terms of xxxxxxxxxxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxxx xxx payments xxxxxxx xx xxxxxxxx xx xxxxx X2X XXXx. Prior xx xxxxxxxx xxxx xxx xxxxxxxxxxx relationship xxxx xxx X2X xxxxxxx xxxxxxx xxxxxxxx, X2X XXX holders shall xxxxxx xxxx xxxx xxx informed about xxx xxxx xxxxxxxxx xxxxxx.“;

7.

Xxxxxx&xxxx;30 se nahrazuje xxxxx:

„Xxxxxxx&xxxx;30

Xxxxxxxxxxx xxxxxxxxxxxx xxxx xx NSP

1.   T2S DCA xxxxxxx xxxxx either:

(a)

have xxxxxxxxx a contract xxxx xx XXX xxxxxx xxx framework xx xxx xxxxxxxxxx contract xxxx that XXX xx xxxxx xx xxxxxxxxx x&xxxx;xxxxxxxxx xxxxxxxxxx xx XXXXXX2- ECB; xx

(x)

xxxxxxx xxx another xxxxxx xxxxx has xxxxxxxxx x&xxxx;xxxxxxxx with xx XXX within xxx framework xx xxx xxxxxxxxxx contract xxxx xxxx XXX.

2.&xxxx;&xxxx;&xxxx;Xxx xxxxx xxxxxxxxxxxx between x&xxxx;X2X XXX xxxxxx xxx the NSP xxxxx xx xxxxxxxxxxx xxxxxxxx xx the xxxxx xxx xxxxxxxxxx xx the xxxxxxxx xxxxxxxx concluded xxxx xx XXX xx xxxxxxxx xx in xxxxxxxxx 1(x).

3.&xxxx;&xxxx;&xxxx;Xxx xxxxxxxx xx be xxxxxxxx xx the NSP xxxxx xxx form xxxx of xxx xxxxxxxx to be xxxxxxxxx xx the XXX xx respect xx XXXXXX2.

4.&xxxx;&xxxx;&xxxx;Xxx XXX xxxxx xxx xx xxxxxx xxx any xxxx, errors or xxxxxxxxx xx xxx XXX (xxxxxxxxx its xxxxxxxxx, staff and xxxxxxxxxxxxxx), xx xxx xxx xxxx, xxxxxx xx xxxxxxxxx xx xxxxx xxxxxxx xxxxxxxx xx xxxxxxxxxxxx xx xxxx access to xxx XXX’x network.“;

8.

Vkládá xx xxxx xxxxxx&xxxx;34x, xxxxx xxx:

„Xxxxxxx&xxxx;34x

Xxxxxxxxxxxx xxxxxxxxxx

Xxxx xxx TARGET xxxxxx xx xxxxxxxxxxx xxx XXXXXX2 has xxxxxx xxxxxxxxx, X2X DCA xxxxxxx shall xxxxxx X2X DCA holders xx xxx XXXXXX xxxxxx.“;

9.

Xxxxxx xx xxxxx „X2X network xxxxxxx xxxxxxxx“ (x&xxxx;xxxxxxxxx nebo xxxxxxx čísle) x&xxxx;xx.&xxxx;6 xxxx.&xxxx;1 xxxx. x) xxxx i), čl. 9 xxxx.&xxxx;5, xx.&xxxx;10 odst. 6, xx.&xxxx;14 odst. 1 písm. x), xx.&xxxx;22 xxxx.&xxxx;1, xx.&xxxx;22 odst. 2, čl. 22 xxxx.&xxxx;3, čl. 27 xxxx.&xxxx;5, xx.&xxxx;28 xxxx.&xxxx;1, xx.&xxxx;29 xxxx.&xxxx;1 xxxxxxx XX x&xxxx;x&xxxx;xxxxxxxx 1 xxxxxxx X&xxxx;xx xxxxxxxxx xxxxxxx „XXX“;

10.

X&xxxx;xxxxxxx I se x&xxxx;xxxx.&xxxx;8 xxxxxxx. 4 xxxxxxxxx xxxxxxx b) xxxxx:

„(x)

Xxxx-xx-xxxxxxxxxxx xxxx (X2X)

X2X xxxxxxx xxxxxx xxxxxxxxxxxxx xxxxxxx x&xxxx;X2X XXX xxxxxx xxx the X2X XXX. The information xx xxxxxxxxx xx x&xxxx;xxxxxxx xxxxxxx on x&xxxx;XX xxxxxx. For X2X xxxxxx xxx XX xxxxxxxxxxxxxx xxx xx xx xxxx xx xxxxxxx cookies. Xxxxxxx xxxxxxx are xxxxxxxxx in the X2X Xxxx Xxxxxxxx.“.

PŘÍLOHA XXX

Xxxxxxx XXX xxxxxxxxxx XXX/2007/7 se xxxx takto:

1.

Odkazy xx xxxxx „TIPS network xxxxxxx xxxxxxxx“ (x&xxxx;xxxxxxxxx xxxx množném xxxxx) x&xxxx;xxxx příloze se xxxxxxxxx xxxxxxx „XXX“;

2.

Xxxxxx&xxxx;1 xx mění xxxxx:

x)

xxxxxxxx xxxxx „reachable xxxxx“ xx nahrazuje xxxxx:

„—

“xxxxxxxxx xxxxx” xxxxx an xxxxxx which: (x) xxxxx a BIC, (x) xx xxxxxxxxxx xx x&xxxx;xxxxxxxxx xxxxx xx x&xxxx;XXXX XXX holder xx xx xx xxxxxxxxx xxxxxx; (x) xx x&xxxx;xxxxxxxxxxxxx, xxxxxxxx xx xxxxxx of x&xxxx;XXXX DCA xxxxxx xx x&xxxx;xxxxxxxxxxx of xx xxxxxxxxx system xx x&xxxx;xxxxxxxxxxxxx, xxxxxxxx xx xxxxxx of x&xxxx;xxxxxxxxxxx of xx xxxxxxxxx system; xxx (x) is xxxxxxxxxxx xxxxxxx the XXXX Xxxxxxxx xxx xx xxxx to xxxxxx xxxxxxx xxxxxxx orders xxx xxxxxxx xxxxxxx xxxxxxx orders either xxx xxx TIPS XXX xxxxxx or xxx xxxxxxxxx xxxxxx xx, xx xx xxxxxxxxxx xx xxx XXXX DCA xxxxxx xx xx the xxxxxxxxx xxxxxx, xxxxxxxx,“;

x)

xxxxxxxx xxxxx „payment xxxxx“ xx xxxxxxxxx xxxxx:

„—

“xxxxxxx xxxxx”, except xxxxx xxxx xx Articles 16 xx 18 xx xxxx Xxxxx, xxxxx xx xxxxxxx xxxxxxx xxxxx, x&xxxx;xxxxxxxx xxxxxx answer, x&xxxx;XX xx TIPS DCA xxxxxxxxx xxxxxxxx xxxxx, x&xxxx;XXXX XXX xx XX xxxxxxxxx xxxxxxxx xxxxx, x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx XXXX XXX liquidity xxxxxxxx order or x&xxxx;XXXX XXX xx XXXX AS technical xxxxxxx liquidity xxxxxxxx xxxxx,“;

x)

xxxxxxxx xxxxx „xxxxxxx xxxxxxx order“ se xxxxxxxxx xxxxx:

„—

“xxxxxxx xxxxxxx xxxxx” xxxxx, xx xxxx xxxx the Xxxxxxxx Xxxxxxxx Xxxxxxx'x XXXX Xxxxxxx Xxxxxx Xxxxxxxx (SCT Inst) xxxxxx, a payment xxxxxxxxxxx xxxxx xxx xx xxxxxxxx 24 xxxxx x&xxxx;xxx xxx xxxxxxxx xxx xx xxx xxxx, xxxx xxxxxxxxx xx xxxxx xx xxxxxxxxx xxxxxxxxxx xxx xxxxxxxxxxxx xx xxx xxxxx xxx xxxxxxxx (x) XXXX XXX xx TIPS XXX xxxxxxx payment xxxxxx, (x) TIPS XXX xx XXXX XX xxxxxxxxx xxxxxxx instant xxxxxxx xxxxxx, (c) XXXX XX xxxxxxxxx xxxxxxx xx TIPS XXX xxxxxxx payment xxxxxx xxx (x) XXXX AS xxxxxxxxx xxxxxxx xx TIPS XX xxxxxxxxx xxxxxxx xxxxxxx payment xxxxxx,“;

x)

xxxxxxxx xx nové definice, xxxxx znějí:

„—

“TIPS xxxxxxxxx xxxxxx xxxxxxxxx xxxxxxx (XXXX XX xxxxxxxxx xxxxxxx)” xxxxx an xxxxxxx held xx xx xxxxxxxxx system xx xxx XX xx xx ancillary xxxxxx'x behalf in xxx XX’x XXXXXX2 xxxxxxxxx xxxxxx xxx xxx by xxxx xxxxxxxxx system xxx xxx xxxxxxx of xxxxxxxx instant payments xx xxx xxx xxxxx,

“XXXX XXX xx XXXX AS technical xxxxxxx xxxxxxxxx transfer xxxxx” means the xxxxxxxxxxx xx transfer x&xxxx;xxxxxxxxx xxxxxx of xxxxx xxxx x&xxxx;XXXX XXX xx x&xxxx;XXXX XX xxxxxxxxx xxxxxxx xx xxxx the XXXX XXX xxxxxx’x xxxxxxxx (or the xxxxxxxx of xxxxxxx xxxxxxxxxxx xx xxx xxxxxxxxx system) in xxx books xx xxx xxxxxxxxx system,

“TIPS XX technical xxxxxxx xx TIPS XXX xxxxxxxxx xxxxxxxx xxxxx” xxxxx the xxxxxxxxxxx xx transfer a specified xxxxxx of xxxxx xxxx a TIPS XX xxxxxxxxx xxxxxxx to x&xxxx;XXXX XXX to xxxxxx xxx XXXX XXX xxxxxx’x xxxxxxxx (xx xxx position xx xxxxxxx participant xx xxx xxxxxxxxx xxxxxx) xx xxx xxxxx of xxx xxxxxxxxx xxxxxx,

“Xxxxxxxx Xxxxxxxx Xxxxxxx'x XXXX Xxxxxxx Xxxxxx Xxxxxxxx (SCT Xxxx) xxxxxx” xx “XXX Xxxx xxxxxx” xxxxx xx xxxxxxxxx, xxxx xxxxxxxxx scheme xxxxxxxxx x&xxxx;xxx of xxxxxxxxx xxxxx xx xx xxxxxxxx xxxx xx XXX Inst xxxxxxxxxxxx, allowing xxxxxxx xxxxxxxx xxxxxxxxx xx XXXX xx xxxxx xx automated, XXXX-xxxx xxxx xxxxxxx xxxxxx xxxxxxxx xxxxxxx,

“xxxxxx xxxxx xxxx-xx (XXX) service” xxxxx x&xxxx;xxxxxxx xxxxx xxxxxxx XXXX XXX xxxxxxx, xxxxxxxxx xxxxxxx xxxxx XXXX AS xxxxxxxxx xxxxxxxx xxx xxxxxxxxx parties, xxx xxxxxxx xxxx xxxxx xxxxxxxxx a request to xxxxxxx an xxxxxxx xxxxxxx xxxxx xx xxxxxx of x&xxxx;xxxxxxxxxxx xxxxxxxxxx with x&xxxx;xxxxx (x.x. a mobile number), xx xxxxxxxx xxxx xxx central XXX xxxxxxxxxx xxx corresponding xxxxxxxxxxx IBAN xxx xxx XXX xx xx xxxx xx xxxxxx xxx xxxxxxxx xxxxxxx xx XXXX,

“Xxxxxxx Xxxxxxx Xxxxxxxx (NSP)” xxxxx xx undertaking xxxx has been xxxxxxx x&xxxx;xxxxxxxxxx with xxx Eurosystem xx xxxxxxx connectivity xxxxxxxx xxx xxx Xxxxxxxxxx Xxxxxx Xxxxxx Xxxxxxxxxxxxxx Xxxxxxx,

“XXXX” xxxxx xxx xxxxxxxxxxxxx bank account xxxxxx xxxxx xxxxxxxx xxxxxxxxxx xx xxxxxxxxxx xxxxxxx xx x&xxxx;xxxxxxxx xxxxxxxxx xxxxxxxxxxx in x&xxxx;xxxxxxxxxx xxxxxxx.“;

x)

xxxxxxxx xxxxx „XXXX xxxxxxx xxxxxxx xxxxxxxx“ xx xxxxxxx;

3.

X&xxxx;xx.&xxxx;3 xxxx.&xxxx;1 xx xxxxxxx xxxxx xx „Appendix X: XXXX xxxxxxxxxxxx xxxxxxxxx requirements“;

4.

Článek 4 se xxxx xxxxx:

x)

x&xxxx;xxxxxxxx 2 xx doplňuje xxxx xxxxxxx k), xxxxx xxx:

„(x)

XXXX XXX to XXXX AS xxxxxxxxx xxxxxxx liquidity xxxxxxxx xxxxxx and TIPS XX xxxxxxxxx xxxxxxx xx XXXX XXX xxxxxxxxx xxxxxxxx xxxxxx; xxx“;

x)

xxxxxxxx 3 xx xxxxxxxxx xxxxx:

„3.&xxxx;&xxxx;&xxxx;XXXXXX2 xxxxxxxx xxxx-xxxx gross xxxxxxxxxx xxx xxxxxxxx xx xxxx, with xxxxxxxxxx xx xxxxxxx xxxx xxxxx xxxxxx PM xxxxxxxx, X2X XXXx xxx TIPS XXXx.&xxxx;XXXXXX2 xx xxxxxxxxxxx xxx xxxxxxxxx xx the xxxxx of xxx XXX through xxxxx xxxxxxx xxxxxx xxx xxxxxxxxx xxx processed xxx through xxxxx xxxxxxxx xxx xxxxxxxxxx xxxxxxxx xx the xxxx technical manner. Xx xxx as xxx xxxxxxxxx xxxxxxxxx xx xxx XXXX XXXx xxx TIPS XX xxxxxxxxx xxxxxxxx xx xxxxxxxxx, XXXXXX2 xx technically xxxxxxxxxxx xxx xxxxxxxxx xx xxx xxxxx xx xxx XXXX Xxxxxxxx. Xx far xx xxx technical xxxxxxxxx xx the X2X XXXx is xxxxxxxxx, XXXXXX2 xx technically xxxxxxxxxxx xxx xxxxxxxxx xx xxx xxxxx xx xxx T2S Xxxxxxxx.“;

5.

X&xxxx;xx.&xxxx;6 xxxx.&xxxx;1 xxxx. x) xx xxx x) nahrazuje xxxxx:

„(x)

xxxxxxx, xxxxxx, xxxxxxx and xxxxxxx and ensure xxx xxxxxxxx xx xxx necessary IT xxxxxxxxxxxxxx xx xxxxxxx xx xxx XXXX Xxxxxxxx and submit xxxxxxx xxxxxx xx xx. Xx doing xx, applicant TIPS XXX holders xxx xxxxxxx xxxxx parties, xxx retain xxxx xxxxxxxxx. In particular, xxxxxx xx xxxxxxxxxxx xxxxx is xxxx, xxxxxxxxx XXXX XXX xxxxxxx xxxxx xxxxx xxxx xx xxxxxxxxx xxxx xxx xx xxxx XXXx to xxxxxx xxx xxxxxxxxx xxxxxxxxxx and admissions, xx xxxxxxxxxx with xxx xxxxxxxxx xxxxxxxxxxxxxx xx Appendix X; xxx“;

6.

Xxxxxx&xxxx;9 se xxxxxxxxx xxxxx:

„Xxxxxxx&xxxx;9

Xxxxxxxxxxx relationship xxxx xx XXX

1.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx xxxxxx:

(x)

xxxxxxxx x&xxxx;xxxxxxxx xxxx xx XXX within xxx xxxxxxxxx xx xxx xxxxxxxxxx xxxxxxxx xxxx that XXX xx xxxxx to xxxxxxxxx a technical connection xx XXXXXX2-XXX; xx

(x)

xxxxxxx xxx xxxxxxx xxxxxx xxxxx xxx xxxxxxxxx x&xxxx;xxxxxxxx xxxx xx XXX within the xxxxxxxxx of xxx xxxxxxxxxx xxxxxxxx with xxxx XXX.

2.&xxxx;&xxxx;&xxxx;Xxx legal xxxxxxxxxxxx xxxxxxx a participant xxx the NSP xxxxx xx xxxxxxxxxxx xxxxxxxx xx xxx xxxxx xxx xxxxxxxxxx xx their separate xxxxxxxx as xxxxxxxx xx xx xxxxxxxxx 1(x).

3.&xxxx;&xxxx;&xxxx;Xxx xxxxxxxx xx xx provided by xxx NSP xxxxx xxx form xxxx xx xxx xxxxxxxx xx be xxxxxxxxx xx xxx XXX xx xxxxxxx of XXXXXX2.

4.&xxxx;&xxxx;&xxxx;Xxx XXX shall xxx be xxxxxx xxx any xxxx, xxxxxx or xxxxxxxxx xx xxx XXX (xxxxxxxxx xxx xxxxxxxxx, xxxxx xxx subcontractors), xx xxx xxx xxxx, errors xx xxxxxxxxx by third xxxxxxx selected by xxxxxxxxxxxx xx gain xxxxxx to xxx XXX’x network.“;

7.

Článek 10 xx xxxxxxx;

8.

Xxxxxx xx nový xxxxxx&xxxx;11x, který zní:

„Article 11a

MPL xxxxxxxxxx

1.&xxxx;&xxxx;&xxxx;Xxx central XXX xxxxxxxxxx xxxxxxxx the xxxxx – XXXX xxxxxxx table xxx xxx xxxxxxxx xx xxx XXX xxxxxxx.

2.&xxxx;&xxxx;&xxxx;Xxxx xxxxx xxx xx xxxxxx xx only xxx IBAN. Xx XXXX xxx xx xxxxxx to one xx xxxxxxxx xxxxxxx.

3.&xxxx;&xxxx;&xxxx;Xxxxxxx&xxxx;29 xxxxx xxxxx to xxx data contained xx xxx MPL xxxxxxxxxx.“;

9.

X&xxxx;xxxxxx&xxxx;12 xx zrušuje xxxxxxxx 9;

10.

Xxxxxx&xxxx;16 xx xxxxxxxxx xxxxx:

„Xxxxxxx&xxxx;16

Xxxxx of xxxxxxx xxxxxx in XXXX XXX

Xxx xxxxxxxxx xxx xxxxxxxxxx xx xxxxxxx orders for xxx xxxxxxxx of xxx XXXX xxxxxxx:

(x)

xxxxxxx xxxxxxx orders;

(b)

positive recall xxxxxxx;

(x)

XXXX XXX xx XX xxxxxxxxx xxxxxxxx xxxxxx;

(x)

XXXX XXX xx XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx transfer xxxxxx; xxx

(x)

XXXX XX xxxxxxxxx xxxxxxx xx XXXX XXX xxxxxxxxx xxxxxxxx xxxxxx.“;

11.

X&xxxx;xxxxxx&xxxx;18 xx xxxxxxxx 6 xxxxxxxxx xxxxx:

„6.&xxxx;&xxxx;&xxxx;Xxxxx x&xxxx;XXXX XXX xx XX xxxxxxxxx xxxxxxxx xxxxx, x&xxxx;XXXX XXX to XXXX XX technical account xxxxxxxxx xxxxxxxx xxxxx xx a TIPS XX xxxxxxxxx account xx XXXX XXX liquidity xxxxxxxx order xxx xxxx xxxxxxxx xx xxxxxxxx xx in Xxxxxxx&xxxx;17, the XXXXXX2-XXX xxxxx check xxxxxxx xxxxxxxxxx xxxxx are xxxxxxxxx on xxx xxxxx'x xxxxxxx. If xxxxxxxxxx xxxxx are xxx xxxxxxxxx the xxxxxxxxx transfer xxxxx xxxxx xx rejected. Xx xxxxxxxxxx xxxxx xxx xxxxxxxxx xxx xxxxxxxxx transfer xxxxx xxxxx xx xxxxxxx xxxxxxxxxxx.“;

12.

X&xxxx;xx.&xxxx;20 xxxx.&xxxx;1 xx xxxxxxx b) nahrazuje xxxxx:

„(x)

XXXX XXX xx XX xxxxxxxxx xxxxxxxx xxxxxx, positive xxxxxx xxxxxxx xxx XXXX XXX xx XXXX XX xxxxxxxxx xxxxxxx xxxxxxxxx xxxxxxxx orders xxx deemed xxxxxxx xxxx XXXXXX2-XXX xxx xxxxxxxxxxx at xxx xxxxxx that xxx xxxxxxxx XXXX XXX xx debited. XXXX XX xxxxxxxxx account xx TIPS DCA xxxxxxxxx transfer orders xxx deemed xxxxxxx xxxx TARGET2-ECB xxx xxxxxxxxxxx xx the xxxxxx xxxx xxx xxxxxxxx TIPS XX xxxxxxxxx account xx xxxxxxx.“;

13.

X&xxxx;xxxxxx&xxxx;30 xx xxxxxxxx 1 xxxxxxxxx tímto:

„1.   TIPS XXX holders shall xx xxxxxx xx xx aware xx, xxxxx xxxxxx xxxx xxx xxxxx xx xxxx xx demonstrate xxxx xxxxxxxxxx xx xxx xxxxxxxx xxxxxxxxx xxxxxxxxxxx xxxx all xxxxxxxxxxx xx xxxx xxxxxxxx xx legislation xx data protection. Xxxx xxxxx be xxxxxx xx xx xxxxx xx, xxx xxxxx comply xxxx xxx xxxxxxxxxxx xx xxxx xxxxxxxx xx xxxxxxxxxxx xx xxxxxxxxxx xx xxxxx laundering xxx the xxxxxxxxx xx xxxxxxxxx, proliferation-sensitive xxxxxxx xxxxxxxxxx xxx xxx xxxxxxxxxxx xx xxxxxxx xxxxxxx xxxxxxxx xxxxxxx, xx particular xx terms of xxxxxxxxxxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxxx xxx payments xxxxxxx or xxxxxxxx xx xxxxx XXXX XXXx. XXXX XXX xxxxxxx xxxxxx that xxxx are xxxxxxxx xxxxx xxxxx xxxxxx XXX'x xxxx xxxxxxxxx xxxxxx prior xx xxxxxxxx xxxx x&xxxx;xxxxxxxxxxx xxxxxxxxxxxx xxxx that XXX.“;

14.

Xxxxxx xx xxxx xxxxxx&xxxx;35x, xxxxx xxx:

„Xxxxxxx&xxxx;35x

Xxxxxxxxxxxx xxxxxxxxx

Xxxx the XXXXXX xxxxxx xx operational xxx the TARGET2 xxx ceased xxxxxxxxx, XXXX DCA xxxxxxx xxxxx become XXXX XXX xxxxxxx in xxx XXXXXX xxxxxx.“;

15.

X&xxxx;xxxxxxx X&xxxx;xx xxxxxxx x&xxxx;xxxxxxxx 2 xxxxxxxxx xxxxx:

„Xxxxxxx Xxxx

Xxxxxxx Name

Pacs.002

FIToFIPayment Xxxxxx Xxxxxx

Xxxx.004

XxxxxxxXxxxxx

Xxxx.008

XXXxXXXxxxxxxxXxxxxxXxxxxxxx

Xxxx.028

XXXxXXXxxxxxxXxxxxxXxxxxxx

xxxx.003

XxxXxxxxxx

xxxx.004

XxxxxxXxxxxxx

xxxx.005

XxxXxxxxxxxxxx

xxxx.006

XxxxxxXxxxxxxxxxx

xxxx.011

XxxxxxXxxxx

xxxx.019

XxxxxxXxxxxxxxXxxXxxxxxxxxxx

xxxx.025

Xxxxxxx

xxxx.029

XxxxxxxxxxXxXxxxxxxxxxxxx

xxxx.050

XxxxxxxxxXxxxxxXxxxxxxx

xxxx.052

XxxxXxXxxxxxxxXxxxxxxXxxxxx

xxxx.053

XxxxXxXxxxxxxxXxxxxxxxx

xxxx.054

XxxxXxXxxxxxxxXxxxxXxxxxxXxxxxxxxxxxx

xxxx.056

XXXxXXXxxxxxxXxxxxxxxxxxxXxxxxxx

xxxx.010

XxxxxxxXxxxxxxXxxxxxxxxxxxxxx

xxxx.011

XxxxxxxXxxxxxxXxxxxxxxx

xxxx.015

XxxxxxxXxxxxxxxXxxxxxxXxxxxxxxxxxXxxxxxx

xxxx.016

XxxxxXxxxxxXxxxxxX01

xxxx.022

XxxxxXxxxxxxxxxxxXxxxxxxX01“

16.

X&xxxx;xxxxxxx X&xxxx;xx v odst. 6 xxxxxxx. 1 nahrazuje xxxxxxx x) tímto:

„(b)

User-to-application xxxx (X2X)

X2X permits xxxxxx xxxxxxxxxxxxx xxxxxxx x&xxxx;XXXX XXX xxxxxx xxx xxx XXXX XXX. The information xx xxxxxxxxx in x&xxxx;xxxxxxx xxxxxxx on x&xxxx;XX xxxxxx. Xxx X2X xxxxxx xxx XX infrastructure has xx xx xxxx xx xxxxxxx xxxxxxx. Xxxxxxx xxxxxxx are xxxxxxxxx in xxx XXXX Xxxx Xxxxxxxx.“;

17.

X&xxxx;xxxxxxx XX se xxxxxxx xxxxxxxx 2;

18.

Xxxxxxx V se xxxxxxx.