XXXXXXXXXX XXXXXXXX XXXXXXXXX XXXXX (EU) 2021/1758
xx xxx 21. září 2021,
xxxxxx xx xxxx rozhodnutí XXX/2007/7 x&xxxx;xxxxxxxxxx XXXXXX2-XXX (XXX/2021/43)
XXXXXXX RADA XXXXXXXX XXXXXXXXX XXXXX,
x&xxxx;xxxxxxx na Xxxxxxx x&xxxx;xxxxxxxxx Evropské xxxx, a zejména na xxxxx x&xxxx;xxxxxxx xxxxxxx xx.&xxxx;127 xxxx.&xxxx;2 xxxx xxxxxxx,
x&xxxx;xxxxxxx xx xxxxxx Xxxxxxxxxx systému centrálních xxxx a Evropské xxxxxxxxx xxxxx, a zejména xx xxxxxx&xxxx;11.6 x&xxxx;xxxxxx 17, 22 a 23 xxxxxx xxxxxxx,
xxxxxxxx k těmto xxxxxxx:
|
(1) |
Xxxx xxxxxxxxx xxxxxxx&xxxx;(1) xxx 20.&xxxx;xxxxxxxx 2021 xxxxxx xxxxxx Evropské centrální xxxxx XXX/2012/27&xxxx;(2) x&xxxx;xxxxx: x) vyjasnit, xx xxxxxxxx XXXX XXX xxxxx k TARGET2 připojeni xxxxxxxxxxxxxxx xxxxxxxxxx xxxxxxx xxxxx xxxxxxxxxxxxxx Eurosystému (Xxxxxxxxxx Xxxxxx Xxxxxx Xxxxxxxxxxxxxx Xxxxxxx) xx xxxxxxxxx 2021 x&xxxx;xxxxxxxx X2X DCA xxxxx x&xxxx;XXXXXX2 xxxxxxxxxxxxxxx xxxxxx xxxxxxx připojeni od xxxxxx 2022; x) xxxxxxxx x&xxxx;xxxxxxxx xxxxxxxx xxxxxxxx xx xxxxxxxxxx xxxxxxxxx na xxxxxxxxxx xxxxxxxxx xxxx XXXXXX2, xxx xx zajistilo, xx se xxxxxx XXXXXX2 xxxx xxxx xxxxxxx tak, xxx xxx xxxxxxx xxxxx xxxxxxx x&xxxx;xxxxxxx kybernetické xxxxxxxxxxx; x) zavést xxxxxxxxx, aby xxxxxxxx xxxx PM, jejich xxxxxxx xxxxxxxxx x&xxxx;xxxxxxxxxxxxx xxxxxxxx xxxx BIC, xxxxx přistoupili x&xxxx;xxxxxxxxxxx xxxxxxx XXX Inst xxxxxxxx xxxxxx x&xxxx;xxxxxxxxxx xxxxxxx xxx okamžité xxxxxxxxxxxxx xxxxxxx XXXX, xxxx x&xxxx;xxxxxxx xxxxxx xxxxxxxxxxx na xxxxxxxxx XXXX xxxxxxxxxxxxxxx TIPS XXX, xxx xxx xx xxxxxxxxx dostupnost xxxxxxxxxx plateb v celé Xxxx; d) xxxxxx xxxxxxxxxxxxxxx, pokud jde x&xxxx;xxxxxxx xxxxxxx xxxxxxxx x&xxxx;xxxx účastníků x&xxxx;XXXXXX2 xx xxxxxxxxxxxx nástupnické xxxx x&xxxx;xxxxxxxx xxxxxxx XXXXXX, xxx byla xxxxxxxxx právní xxxxxxx, x&xxxx;x) xxxxxxxx a aktualizovat xxxxxxx další aspekty xxxxxxxx zásad XXX/2012/27. |
|
(2) |
Xxxxxxx xxxx xxxxxxxxxx xxxxxxx xxxxxxxxxxx T2-T2S, bude x&xxxx;xxxxx právní jistoty xxxxxx nezbytné xxxxxxxx xxxxxxxxxxxxxxx, xxxxx xxx x&xxxx;xxxxxxx xxxxxxx zůstatků x&xxxx;xxxx účastníků x&xxxx;XXXXXX2-XXX xx xxxxxxxxxxxx nástupnické xxxx. |
|
(3) |
Xxxxx xxxxxxxx zásad XXX/2012/27, xxxxx xxxx xxxx xx xxxxxxxx XXXXXX2-XXX, xx třeba xxxxxxxxx x&xxxx;xxxxxxxxxx Evropské xxxxxxxxx xxxxx ECB/2007/7 (3). |
|
(4) |
Rozhodnutí XXX/2007/7 xx proto xxxxx xxxxxxxxxxxxx xxxxxxxx xxxxxx, |
XXXXXXX XXXX XXXXXXXXXX:
Článek 1
Změny
Přílohy X, XX x&xxxx;XXX rozhodnutí XXX/2007/7 xx xxxx v souladu x&xxxx;xxxxxxxxx xxxxxx rozhodnutí.
Xxxxxx&xxxx;2
Xxxxxxxxx xxxxxxxxxx
Xxxx xxxxxxxxxx xxxxxxxx x&xxxx;xxxxxxxx pátým xxxx xx xxxxxxxxxx x&xxxx;Xxxxxxx věstníku Xxxxxxxx xxxx.
Xxxxxxx xx xxx xxx 21.&xxxx;xxxxxxxxx 2021, x&xxxx;xxxxxxxx xxxx.&xxxx;1 xxxx. x) x&xxxx;xxxxxxxx 7 x&xxxx;9 xxxxxxx II xxxxxx xxxxxxxxxx, xxxxx xx xxxxxxx xxx xxx 13.&xxxx;xxxxxx 2022.
Ve Frankfurtu xxx Xxxxxxx dne 21. září 2021.
Xxxxxxxxxxx ECB
Christine XXXXXXX
(1)&xxxx;&xxxx;Xxxxxx xxxxxx Xxxxxxxx xxxxxxxxx xxxxx (XX) 2021/1759 xx dne 20.&xxxx;xxxxxxxx 2021, xxxxxxx xx xxxx obecné xxxxxx XXX/2012/27 o transevropském xxxxxxxxx xxxxxxxxxxxxxxx xxxxxxx xxxxxxxxx xxxxxx v reálném xxxx (XXXXXX2) (XXX/2021/30) [(xxx xxxxxx 45 x&xxxx;xxxxx xxxxx Úředního xxxxxxxx).
(2)&xxxx;&xxxx;Xxxxxx xxxxxx Xxxxxxxx centrální xxxxx XXX/2012/27 xx xxx 5.&xxxx;xxxxxxxx 2012 x&xxxx;xxxxxxxxxxxxxx xxxxxxxxx xxxxxxxxxxxxxxx xxxxxxx zúčtování plateb x&xxxx;xxxxxxx xxxx (XXXXXX2) (Xx. xxxx. X&xxxx;30, 30.1.2013, x. 1).
(3)&xxxx;&xxxx;Xxxxxxxxxx Xxxxxxxx centrální xxxxx XXX/2007/7 xx xxx 24.&xxxx;xxxxxxxx 2007 o podmínkách XXXXXX2-XXX (Xx. xxxx. X&xxxx;237, 8.9.2007, x. 71).
PŘÍLOHA I
Příloha X&xxxx;xxxxxxxxxx XXX/2007/7 xx xxxx xxxxx:
|
1. |
Xxxxxx&xxxx;1 xx xxxx xxxxx:
|
|
2. |
X&xxxx;xxxxxx&xxxx;2 xxxxxx xxxxxxxx se xxxxxxxx xxxx text, xxxxx xxx:
|
|
3. |
Xxxxxx&xxxx;3 xx xxxx xxxxx:
|
|
4. |
Xxxxxx&xxxx;5 xx nahrazuje xxxxx: „Xxxxxxx&xxxx;5 Xxxxxx xxxxxxxxxxxx XX xxxxxxx xxxxxxx xx TARGET2-ECB xxx direct xxxxxxxxxxxx xxx shall xxxxxx xxxx xxx xxxxxxxxxxxx xxx out in Xxxxxxx&xxxx;8(1) xxx&xxxx;(2). Xxxx xxxxx xxxx xx xxxxx one XX xxxxxxx with xxx XXX. PM xxxxxxx xxxxxxx xxxx xxxx xxxxxxx xx the XXX Inst scheme xx xxxxxxx xxx XXXX Instant Credit Xxxxxxxx Xxxxxxxxx Xxxxxxxxx xxxxx xx xxx xxxxx xxxxxx xxxxxxxxx xx xxx XXXX Xxxxxxxx xx xxx xxxxx, xxxxxx xx x&xxxx;XXXX XXX xxxxxx xx xx x&xxxx;xxxxxxxxx xxxxx xxx x&xxxx;XXXX XXX holder.“; |
|
5. |
Článek 22 xx xxxxxxxxx xxxxx: „Xxxxxxx&xxxx;22 Xxxxxxxx Xxxxxxxxxxxx xxx Control Xxxxxxxxxx 1.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx implement xxxxxxxx xxxxxxxx xxxxxxxx to xxxxxxx xxxxx xxxxxxx xxxx xxxxxxxxxxxx access xxx xxx. Xxxxxxxxxxxx xxxxx xx xxxxxxxxxxx xxxxxxxxxxx xxx the xxxxxxxx xxxxxxxxxx xx xxx xxxxxxxxxxxxxxx, xxxxxxxxx xxx xxxxxxxxxxxx xx xxxxx xxxxxxx. 2.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx shall xxxxxx xxx ECB xx xxx xxxxxxxx-xxxxxxx xxxxxxxxx in their xxxxxxxxx infrastructure xxx, xxxxx xxxxxxxxxxx, xxxxxxxx-xxxxxxx xxxxxxxxx xxxx xxxxx xx xxx xxxxxxxxx xxxxxxxxxxxxxx xx xxx xxxxx party xxxxxxxxx. Xxx ECB may xxxxxxx xxxxxxx xxxxxxxxxxx xxxxx xxx xxxxxxxx xxx, xx xxxxxxxxx, xxxxxxx xxxx xxx xxxxxxxxxxx xxxx xxxxxxxxxxx xxxxxxxx to xxxxxxx x&xxxx;xxxxxxxxxx xx xxxx xx xxxxx. 3.&xxxx;&xxxx;&xxxx;Xxx XXX xxx xxxxxx xxxxxxxxxx xxxxxxxx requirements, xx xxxxxxxxxx with xxxxxx xx cybersecurity xx xxx xxxxxxxxxx xx xxxxx, xx all xxxxxxxxxxxx xxx/xx on xxxxxxxxxxxx xxxx xxx xxxxxxxxxx xxxxxxxx by xxx XXX. 4.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx xxxxxxx xxx XXX xxxx: (i) xxxxxxxxx xxxxxx to xxxxx xxxxxxxxxxx xx adherence xx xxxxx xxxxxx xxxxxxx xxxxxxx provider’s xxxxxxxx xxxxxxxx xxxxxxxxxxxx, xxx (xx) xx xx xxxxxx basis xxx TARGET2 xxxx-xxxxxxxxxxxxx xxxxxxxxx as xxxxxxxxx xx the XXX’x xxxxxxx in Xxxxxxx. 4x.&xxxx;&xxxx;&xxxx;Xxx XXX xxxxx xxxxxx xxx xxxxxxxxxxx’x xxxx-xxxxxxxxxxxxx xxxxxxxxx(x) xx the xxxxxxxxxxxx xxxxx of xxxxxxxxxx xxxx xxxx xx xxx xxxxxxxxxxxx xxx xxx xx xxx TARGET2 xxxx-xxxxxxxxxxxxx xxxxxxxxxxxx. Xxxxx requirements xxx listed in Xxxxxxxx VII, xxxxx xx xxxxxxxx to xxx xxxxx Xxxxxxxxxx xxxxxx xx Xxxxxxx&xxxx;2(1), xxxxx xxxx an xxxxxxxx xxxx xx xxxxx Conditions. 4b. The xxxxxxxxxxx’x xxxxx xx xxxxxxxxxx xxxx xxx requirements xx xxx TARGET2 xxxx-xxxxxxxxxxxxx xxxxx xx xxxxxxxxxxx as follows, xx xxxxxxxxxx xxxxx xx xxxxxxxx: ‘full xxxxxxxxxx’; ‘minor xxx-xxxxxxxxxx’; xx ‘xxxxx non-compliance’. Xxx xxxxxxxxx xxxxxxxx xxxxx: full xxxxxxxxxx xx xxxxxxx xxxxx xxxxxxxxxxxx xxxxxxx 100% xx the xxxxxxxxxxxx; xxxxx xxx-xxxxxxxxxx is xxxxx x&xxxx;xxxxxxxxxxx xxxxxxxxx xxxx xxxx 100% xxx xx xxxxx 66% of xxx xxxxxxxxxxxx xxx xxxxx xxx-xxxxxxxxxx xxxxx a participant xxxxxxxxx xxxx xxxx 66% xx xxx xxxxxxxxxxxx. If x&xxxx;xxxxxxxxxxx xxxxxxxxxxxx that x&xxxx;xxxxxxxx xxxxxxxxxxx xx not xxxxxxxxxx to xx, xx xxxxx be xxxxxxxxxx xx xxxxxxxxx xxxx xxx xxxxxxxxxx xxxxxxxxxxx for xxx xxxxxxxx xx xxx xxxxxxxxxxxxxx. A participant xxxxx xxxxx xx xxxxx ‘xxxx xxxxxxxxxx’ xxxxx xxxxxx an xxxxxx xxxx xxxxxxxxxxxxx xxx xx xxxxxxx xx xxxxx xxxx compliance. Xxx XXX xxxxx xxxxxx the xxxxxxxx xxxxxxxxxxx xxxxxxxxxxx xx xxx status xx xxxx xxxxxxxxxxx’x xxxxxxxxxx. 4x.&xxxx;&xxxx;&xxxx;Xx xxx xxxxxxxxxxx refuses xx grant xxxxxxxxx xxxxxx to its xxxxxxxxxxx xx xxxxxxxxx xx their xxxxxx XXXx xxxxxxxx xxxxxxxx xxxxxxxxxxxx xx xxxx xxx provide xxx XXXXXX2 self-certification xxx xxxxxxxxxxx’x xxxxx xx xxxxxxxxxx xxxxx be xxxxxxxxxxx xx ‘major xxx-xxxxxxxxxx’. 4x.&xxxx;&xxxx;&xxxx;Xxx XXX shall xxxxxxxx xxxxxxxxxx xx xxxxxxxxxxxx xx an xxxxxx xxxxx. 4x.&xxxx;&xxxx;&xxxx;Xxx XXX xxx xxxxxx xxx xxxxxxxxx measures xx xxxxxxx xx xxxxxxxxxxxx xxxxx level xx xxxxxxxxxx xxx xxxxxxxx xx xxxxx xx xxxxx xxx-xxxxxxxxxx, xx xxxxxxxxxx xxxxx of xxxxxxxx:
|
|
6. |
X&xxxx;xxxxxx&xxxx;33 xx xxxxxxxx 1 xxxxxxxxx xxxxx: „1.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx xx xxxxxx xx xx xxxxx xx, xxxxx xxxxxx xxxx, and shall xx xxxx xx xxxxxxxxxxx xxxx xxxxxxxxxx xx xxx xxxxxxxx xxxxxxxxx authorities xxxx xxx xxxxxxxxxxx on xxxx xxxxxxxx to xxxxxxxxxxx xx xxxx xxxxxxxxxx. Xxxx shall xx deemed to xx aware of, xxx shall xxxxxx xxxx xxx xxxxxxxxxxx xx them xxxxxxxx xx xxxxxxxxxxx xx xxxxxxxxxx of money xxxxxxxxxx xxx the xxxxxxxxx of xxxxxxxxx, xxxxxxxxxxxxx-xxxxxxxxx xxxxxxx xxxxxxxxxx xxx the xxxxxxxxxxx xx nuclear xxxxxxx xxxxxxxx xxxxxxx, in xxxxxxxxxx in xxxxx xx xxxxxxxxxxxx appropriate xxxxxxxx xxxxxxxxxx xxx xxxxxxxx xxxxxxx xx xxxxxxxx xx xxxxx XX accounts. Xxxxxxxxxxxx xxxxx xxxxxx xxxx xxxx xxx xxxxxxxx xxxxx xxx XXXXXX2 xxxxxxx service provider’s xxxx retrieval xxxxxx xxxxx to entering xxxx xxx xxxxxxxxxxx xxxxxxxxxxxx xxxx xxx XXXXXX2 network xxxxxxx xxxxxxxx.“; |
|
7. |
Xxxxxx xx xxxx xxxxxx&xxxx;39x, xxxxx xxx: „Xxxxxxx&xxxx;39x Xxxxxxxxxxxx xxxxxxxxxx 1.&xxxx;&xxxx;&xxxx;Xxxx xxx XXXXXX xxxxxx is operational xxx XXXXXX2 has xxxxxx xxxxxxxxx, XX xxxxxxx xxxxxxxx xxxxx xx transferred to xxx xxxxxxx holder’s xxxxxxxxxxxxx xxxxxxxxx accounts xx xxx XXXXXX xxxxxx. 2.&xxxx;&xxxx;&xxxx;Xxx requirement that XX xxxxxxx xxxxxxx, xxxxxxxx Xxxxxxxxxxxx xxx xxxxxxxxxxx XXX xxxxxxx xxxxxxxx to xxx XXX Inst xxxxxx xx reachable xx xxx XXXX Xxxxxxxx xxxxxxxx xx Xxxxxxx&xxxx;5 xxxxx xxxxx as xx 25 February 2022.“; |
|
8. |
X&xxxx;xxxxxxx X&xxxx;xx v odst. 8 xxxxxxx. 4 xxxxxxxxx xxxxxxx x) xxxxx:
|
|
9. |
V dodatku XX xx x&xxxx;xxxxxxxx 6 xxxxxxxxx xxxxxxx x) tímto:
|
|
10. |
Xxxxxxxx xx nový xxxxxxx VII, který xxx: „Xxxxxxxx XXX Xxxxxxxxxxxx regarding xxxxxxxxxxx xxxxxxxx management xxx xxxxxxxx xxxxxxxxxx xxxxxxxxxx Xxxxxxxxxxx xxxxxxxx xxxxxxxxxx Xxxxx xxxxxxxxxxxx xxx applicable xx xxxx participant, xxxxxx the xxxxxxxxxxx xxxxxxxxxxxx xxxx a specific xxxxxxxxxxx xx xxx xxxxxxxxxx to it. Xx xxxxxxxxxxxx xxx xxxxx of xxxxxxxxxxx xx xxx requirements xxxxxx xxx xxxxxxxxxxxxxx, xxx participant should xxxxxxxx xxx xxxxxxxx xxxx are xxxx xx xxx Payment Xxxxxxxxxxx Xxxxx (PTC). Xxxxxxxxxxxx, the PTC xxxxxx at x&xxxx;Xxxxx xx Entry (PoE), x.x. x&xxxx;xxxxxx xxxxxxxx xx xxx xxxxxxxx xx xxxxxxxxxxxx (e.g. xxxxxxxxxxxx, xxxxx-xxxxxx xxx xxxx-xxxxxx xxxxxxxxxxxx, middleware), xxx xxxx xx xxx xxxxxx xxxxxxxxxxx xx send xxx xxxxxxx xx XXXXX (x.x. XXXXX VPN Xxx) xx Xxxxxxxx (xxxx xxx latter xxxxxxxxxx to Xxxxxxxx-xxxxx Xxxxxx). Xxxxxxxxxxx 1.1: Xxxxxxxxxxx xxxxxxxx policy The management xxxxx xxx x&xxxx;xxxxx xxxxxx xxxxxxxxx xx xxxx xxxx xxxxxxxx xxxxxxxxxx and demonstrate xxxxxxx xxx xxx xxxxxxxxxx xx information xxxxxxxx xxxxxxx xxx xxxxxxxx, approval and xxxxxxxxxxx xx an xxxxxxxxxxx xxxxxxxx xxxxxx xxxxxx xx xxxxxxxx xxxxxxxxxxx xxxxxxxx xxx xxxxx xxxxxxxxxx across xxx xxxxxxxxxxxx in xxxxx xx identification, xxxxxxxxxx and xxxxxxxxx xx information xxxxxxxx xxx xxxxx resilience xxxxx. Xxx xxxxxx xxxxxx xxxxxxx at xxxxx the xxxxxxxxx xxxxxxxx: objectives, scope (xxxxxxxxx xxxxxxx xxxx xx xxxxxxxxxxxx, human xxxxxxxxx, xxxxx xxxxxxxxxx xxx.), xxxxxxxxxx and xxxxxxxxxx xx xxxxxxxxxxxxxxxx. Xxxxxxxxxxx 1.2: Xxxxxxxx xxxxxxxxxxxx Xx xxxxxxxxxxx xxxxxxxx xxxxxxxxx xxxxx xx established xx xxxxxxxxx the xxxxxxxxxxx xxxxxxxx policy xxxxxx xxx xxxxxxxxxxxx. Xxx management xxxxx xxxxxxxxxx xxx xxxxxx xxx establishment xx xxx xxxxxxxxxxx xxxxxxxx xxxxxxxxx xx xxxxxx xxx implementation xx xxx information xxxxxxxx xxxxxx (xx xxx Xxxxxxxxxxx 1.1) xxxxxx xxx xxxxxxxxxxxx, xxxxxxxxx xxx xxxxxxxxxx xx xxxxxxxxxx resources and xxxxxxxxxx xx xxxxxxxx xxxxxxxxxxxxxxxx for xxxx xxxxxxx. Xxxxxxxxxxx 1.3: Xxxxxxxx xxxxxxx Xxx xxxxxxxx xx xxx xxxxxxxxxxxx’x information xxx xxxxxxxxxxx processing xxxxxxxxxx should not xx xxxxxxx xx xxx xxxxxxxxxxxx xx, xxx/xx xxx xxxxxxxxxx xx, an external xxxxx/xxxxxxx xx products/services xxxxxxxx xx xxxx. Xxx access xx xxx xxxxxxxxxxxx’x xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx xx xxxxxxxx parties xxxxx xx controlled. Xxxx xxxxxxxx xxxxxxx or xxxxxxxx/xxxxxxxx xx xxxxxxxx xxxxxxx are xxxxxxxx xx access the xxxxxxxxxxxx’x xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx, x&xxxx;xxxx xxxxxxxxxx xxxxx be xxxxxxx xxx xx xxxxxxxxx xxx xxxxxxxx xxxxxxxxxxxx xxx control xxxxxxxxxxxx. Xxxxxxxx shall xx xxxxxx xxx xxxxxxx xx xx xxxxxxxxx xxxx each xxxxxxxx xxxxxxxx xxxxx. Xxxxxxxxxxx 1.4: Xxxxx xxxxxxxxxx Xxx information xxxxxx, xxx business xxxxxxxxx and xxx xxxxxxxxxx information xxxxxxx, xxxx xx xxxxxxxxx xxxxxxx, infrastructures, xxxxxxxx xxxxxxxxxxxx, xxx-xxx-xxxxx xxxxxxxx, xxxxxxxx xxx xxxx-xxxxxxxxx xxxxxxxxxxxx, xx xxx xxxxx xx the Xxxxxxx Xxxxxxxxxxx Xxxxx xxxxx xx accounted xxx xxx have x&xxxx;xxxxxxxxx xxxxx. The xxxxxxxxxxxxxx for the xxxxxxxxxxx xxx xxx xxxxxxxxx of xxxxxxxxxxx xxxxxxxx xx xxx xxxxxxxx processes xxx xxx xxxxxxx XX xxxxxxxxxx xx xxxxxxxxx xxx xxxxxxxxxxx xxxxxx xxxxx be assigned. Xxxx: the xxxxx xxx xxxxxxxx xxx xxxxxxxxxxxxxx xx specific xxxxxxxx xx xxxxxxxxxxx, xxx remains xxxxxxxxxxx xxx the proper xxxxxxxxxx xx xxx xxxxxx. Xxxxxxxxxxx 1.5: Xxxxxxxxxxx xxxxxx xxxxxxxxxxxxxx Xxxxxxxxxxx xxxxxx xxxxx be xxxxxxxxxx xx xxxxx of xxxxx xxxxxxxxxxx xx xxx xxxxxx delivery xx the xxxxxxx xx xxx participant. Xxx classification shall xxxxxxxx xxx need, xxxxxxxxxx xxx xxxxxx xx xxxxxxxxxx required xxxx handling the xxxxxxxxxxx xxxxx in xxx relevant xxxxxxxx xxxxxxxxx xxx xxxxx xxxx xxxx xxxx xxxxxxxxxxxxx xxx xxxxxxxxxx XX components. An xxxxxxxxxxx xxxxx xxxxxxxxxxxxxx xxxxxx approved xx xxx management shall xx xxxx to xxxxxx an xxxxxxxxxxx xxx of protection xxxxxxxx throughout xxx xxxxxxxxxxx xxxxx xxxxxxxxx (xxxxxxxxx xxxxxxx and xxxxxxxxxxx of information xxxxxx) xxx xx xxxxxxxxxxx the need xxx specific xxxxxxxx xxxxxxxx. Xxxxxxxxxxx 1.6: Human xxxxxxxxx xxxxxxxx Xxxxxxxx responsibilities xxxxx xx xxxxxxxxx xxxxx to xxxxxxxxxx xx xxxxxxxx xxx xxxxxxxxxxxx and in xxxxx and xxxxxxxxxx xx xxxxxxxxxx. Xxx xxxxxxxxxx xxx employment, xxxxxxxxxxx xxx third xxxxx xxxxx shall xx xxxxxxxxxx xxxxxxxx, xxxxxxxxxx xxx xxxxxxxxx xxxx. Xxxxxxxxx, xxxxxxxxxxx xxx third xxxxx xxxxx xx xxxxxxxxxxx xxxxxxxxxx xxxxxxxxxx xxxxx xxxx xx xxxxxxxxx xx their xxxxxxxx xxxxx xxx xxxxxxxxxxxxxxxx. Xx xxxxxxxx xxxxx xx xxxxxxxxx xxxxx xx ensured among xxx employees, xxxxxxxxxxx xxx third party xxxxx, xxx xxxxxxxxx xxx training in xxxxxxxx procedures and xxx correct use xx information processing xxxxxxxxxx shall xx xxxxxxxx xx xxxx xx xxxxxxxx xxxxxxxx xxxxxxxx xxxxx. X&xxxx;xxxxxx xxxxxxxxxxxx xxxxxxx xxx xxxxxxxx xxxxxxxx breaches xxxxx xx xxxxxxxxxxx xxx xxxxxxxxx. Xxxxxxxxxxxxxxxx xxxxx be xx xxxxx to xxxxxx xxxx xx employee’s, xxxxxxxxxx’x xx xxxxx xxxxx xxxx’x xxxx xxxx or xxxxxxxx xxxxxx the xxxxxxxxxxxx xx managed, xxx xxxx xxx xxxxxx xx xxx equipment xxx xxx removal xx xxx xxxxxx xxxxxx are xxxxxxxxx. Xxxxxxxxxxx 1.7: Physical xxx xxxxxxxxxxxxx xxxxxxxx Xxxxxxxx xx xxxxxxxxx information xxxxxxxxxx xxxxxxxxxx xxxxx xx xxxxxx in secure xxxxx, xxxxxxxxx xx xxxxxxx xxxxxxxx xxxxxxxxxx, xxxx xxxxxxxxxxx xxxxxxxx xxxxxxxx xxx entry xxxxxxxx. They xxxxx xx physically xxxxxxxxx xxxx xxxxxxxxxxxx access, xxxxxx xxx xxxxxxxxxxxx. Xxxxxx xxxxx xx xxxxxxx xxxx xx xxxxxxxxxxx who xxxx xxxxxx the xxxxx xx Xxxxxxxxxxx 1.6. Xxxxxxxxxx and standards xxxxx be xxxxxxxxxxx xx protect xxxxxxxx xxxxx xxxxxxxxxx xxxxxxxxxxx xxxxxx when xx xxxxxxx. Xxxxxxxxx xxxxx be xxxxxxxxx xxxx xxxxxxxx xxx xxxxxxxxxxxxx xxxxxxx. Xxxxxxxxxx of equipment (xxxxxxxxx xxxxxxxxx xxxx xxx-xxxx) and against xxx xxxxxxx xx xxxxxxxx xx xxxxxxxxx xx xxxxxx the xxxx xx unauthorised xxxxxx xx xxxxxxxxxxx xxx xx guard xxxxxxx loss xx xxxxxx xx xxxxxxxxx xx information. Xxxxxxx xxxxxxxx xxx be xxxxxxxx xx xxxxxxx xxxxxxx physical xxxxxxx xxx to safeguard xxxxxxxxxx xxxxxxxxxx such xx xxx xxxxxxxxxx xxxxxx xxx xxxxxxx xxxxxxxxxxxxxx. Xxxxxxxxxxx 1.8: Xxxxxxxxxx xxxxxxxxxx Xxxxxxxxxxxxxxxx and xxxxxxxxxx xxxxx xx xxxxxxxxxxx xxx xxx xxxxxxxxxx xxx xxxxxxxxx of xxxxxxxxxxx xxxxxxxxxx facilities xxxxxxxx xxx xxx xxxxxxxxxx xxxxxxx in xxx Xxxxxxx Xxxxxxxxxxx Xxxxx end-to-end. As regards xxxxxxxxx procedures, including xxxxxxxxx xxxxxxxxxxxxxx of XX xxxxxxx, xxxxxxxxxxx xx duties xxxxx xx implemented, xxxxx xxxxxxxxxxx, to xxxxxx xxx xxxx xx xxxxxxxxx or xxxxxxxxxx xxxxxx misuse. Xxxxx xxxxxxxxxxx of xxxxxx xxxxxx xx implemented xxx xx xxxxxxxxxx xxxxxxxxx xxxxxxx, xxxxxxxxxxxx xxxxxxxx xxxxx xx xxxxxxxxxxx xxxxxxxxx x&xxxx;xxxxxx xxxx xxxxxxxx. Xxxxxxxx xxxxx be xxxxxxxxxxx xx prevent xxx xxxxxx the xxxxxxxxxxxx xx xxxxxxxxx xxxx xxx xxxxxxx xx xxx Xxxxxxx Xxxxxxxxxxx Xxxxx. Xxxxxxxx xxxxx xx xxxx established (xxxxxxxxx xxxx xxxxxxxxx) xx xxxxxxx, xxxxxx xxx remove malicious xxxx. Xxxxxx code xxxxx xx used xxxx xxxx xxxxxxx xxxxxxx (x.x. xxxxxx Xxxxxxxxx COM xxxxxxxxxx xxx Xxxx Xxxxxxx). Xxx xxxxxxxxxxxxx of xxx xxxxxxx (x.x. xxx use xx xxxxxxxxxx xxx xxxxxxx) xxxxx be xxxxxxxx xxxxxxxxxx. Xxxx backup and xxxxxxxx xxxxxxxx xxxxx xx xxxxxxxxxxx xx xxx management; xxxxx xxxxxxxx xxxxxxxx xxxxx xxxxxxx x&xxxx;xxxx of xxx xxxxxxxxxxx xxxxxxx xxxxx xx xxxxxx xx regular xxxxxxxxx xx least xxxxxxxx. Xxxxxxx xxxx xxx xxxxxxxx xxx xxx xxxxxxxx xx xxxxxxxx shall xx monitored xxx xxxxxx xxxxxxxx xx xxxxxxxxxxx security shall xx xxxxxxxx. Xxxxxxxx xxxx shall be xxxx xx ensure xxxx information xxxxxx xxxxxxxx are xxxxxxxxxx. Xxxxxxxx logs shall xx regularly reviewed xx a sample xxxxx, xxxxx xx xxx xxxxxxxxxxx xx xxx xxxxxxxxxx. Xxxxxx xxxxxxxxxx xxxxx be xxxx xx xxxxx xxx xxxxxxxxxxxxx of xxxxxxxx xxxxx are xxxxxxxxxx xx xxxxxxxx for xxx xxxxxxxx xx xxxxxxxx xxx xx xxxxxx conformity to xx xxxxxx xxxxxx xxxxx. Xxxxxxxxx of information xxxxxxx xxxxxxxxxxxxx xxxxx xx xxxxx xx x&xxxx;xxxxxx xxxxxxxx xxxxxx, xxxxxxx xxx xx xxxx xxxx exchange xxxxxxxxxx xxxxx xxx xxxxxxxx parties xxx xxxxx xx xxxxxxxxx xxxx xxx xxxxxxxx xxxxxxxxxxx. Xxxxx xxxxx xxxxxxxx xxxxxxxxxx xxxxxxxx xx the xxxxxxxx xx xxxxxxxxxxx xxxx XXXXXX2 (xxxx xxxxxxxx xxxxxxxx xxxx a Service Xxxxxx in xxxxxxxx 2 of xxx xxxxx section xx xxx XXXXXX2 self-certification xxxxxxxxxxx document) must xx xxxx xxxxx x&xxxx;xxxxxx xxxxxxxxx xxxx xxx xxxxx xxxxx. Xxxxxxxxxxx 1.9: Xxxxxx control Access xx xxxxxxxxxxx xxxxxx xxxxx xx xxxxxxxxx xx xxx basis xx xxxxxxxx requirements (xxxx-xx-xxxx&xxxx;(1)) xxx xxxxxxxxx xx xxx established xxxxxxxxx xx xxxxxxxxx xxxxxxxx (including xxx xxxxxxxxxxx security xxxxxx). Xxxxx xxxxxx control xxxxx shall be xxxxxxx xxxxx xx xxx xxxxxxxxx of xxxxx privilege (2) xx xxxxxxx xxxxxxx xxx xxxxx of xxx xxxxxxxxxxxxx xxxxxxxx and XX xxxxxxxxx. Xxxxx xxxxxxxx (x.x. xxx xxxxxx xxxxxxxxxx) logical xxxxxx control xxxxxx xx consistent with xxxxxxxx xxxxxx xxxxxxx xxxxxx xxxxx xxx xxxxxxxx compensatory controls xx xxxxx (e.g. xxxxxxxxxx, xxxxxxxx data xxxxxxxxxxxxx). Xxxxxx xxx xxxxxxxxxx xxxxxxxxxx xxxxx be xx xxxxx to xxxxxxx the allocation xx xxxxxx rights xx xxxxxxxxxxx systems xxx xxxxxxxx that xxxx within xxx xxxxx of the Xxxxxxx Xxxxxxxxxxx Xxxxx. Xxx xxxxxxxxxx xxxxx xxxxx xxx xxxxxx xx the lifecycle xx xxxx access, xxxx the xxxxxxx xxxxxxxxxxxx xx new xxxxx to the xxxxx xxxxxxxxxxxxxx of xxxxx that no xxxxxx xxxxxxx xxxxxx. Xxxxxxx xxxxxxxxx xxxxx xx xxxxx, where appropriate, xx xxx xxxxxxxxxx xx xxxxxx xxxxxx xx xxxx xxxxxxxxxxx xxxx xxx abuse xx xxxxx access xxxxxx could xxxx xx a severe xxxxxxx xxxxxx xx xxx xxxxxxxxxx xx xxx xxxxxxxxxxx (x.x. xxxxxx xxxxxx xxxxxxxx xxxxxx xxxxxxxxxxxxxx, override of xxxxxx controls, xxxxxx xxxxxx xx xxxxxxxx xxxx). Xxxxxxxxxxx xxxxxxxx shall xx xxx in xxxxx xx identify, xxxxxxxxxxxx xxx xxxxxxxxx xxxxx xx xxxxxxxx xxxxxx xx xxx xxxxxxxxxxxx’x xxxxxxx, x.x. xxx local and xxxxxx access to xxxxxxx xx the Xxxxxxx Xxxxxxxxxxx Chain. Xxxxxxxx xxxxxxxx xxxxx xxx xx xxxxxx xx xxxxx to xxxxxx xxxxxxxxxxxxxx. Xxx passwords, xxxxx xxxxx xx xxxxxxxxxxx xxx xxxxxxxx xx xxxxxxxx xxxxxxxx xx xxxxxx xxxx xxxxxxxxx xxxxxx xx xxxxxx xxxxxxx, x.x. xxxxxxxxxx rules xxx xxxxxxx-xxxx xxxxxxxx. X&xxxx;xxxx xxxxxxxx recovery xxx/xx xxxxx xxxxxxxx xxxxx xx xxxxxxxxxxx. X&xxxx;xxxxxx shall xx developed and xxxxxxxxxxx on xxx xxx xx xxxxxxxxxxxxx xxxxxxxx to protect xxx xxxxxxxxxxxxxxx, xxxxxxxxxxxx xxx xxxxxxxxx of xxxxxxxxxxx. X&xxxx;xxx xxxxxxxxxx xxxxxx xxxxx xx xxxxxxxxxxx to xxxxxxx xxx xxx xx xxxxxxxxxxxxx xxxxxxxx. Xxxxx xxxxx xx xxxxxx xxx xxxxxxx xxxxxxxxxxxx xxxxxxxxxxx xx xxxxxx xx xx xxxxx (x.x. x&xxxx;xxxxx screen, a clear xxxx policy) xx xxxxxx xxx xxxx xx unauthorised xxxxxx. Xxxx xxxxxxx xxxxxxxx, xxx xxxxx of xxxxxxx xx xx unprotected xxxxxxxxxxx xxxxx be xxxxxxxxxx xxx xxxxxxxxxxx xxxxxxxxx and xxxxxxxxxxxxxx xxxxxxxx shall xx xxxxxxx. Xxxxxxxxxxx 1.10: Information xxxxxxx xxxxxxxxxxx, xxxxxxxxxxx xxx xxxxxxxxxxx Xxxxxxxx xxxxxxxxxxxx xxxxx xx xxxxxxxxxx xxx xxxxxx prior xx xxx xxxxxxxxxxx xxx/xx xxxxxxxxxxxxxx xx xxxxxxxxxxx systems. Appropriate xxxxxxxx xxxxx be xxxxx xxxx xxxxxxxxxxxx, xxxxxxxxx xxxx-xxxxxxxxx applications, to xxxxxx xxxxxxx xxxxxxxxxx. Xxxxx controls xxxxx xxxxxxx xxx validation xx xxxxx xxxx, xxxxxxxx processing and xxxxxx xxxx. Xxxxxxxxxx xxxxxxxx xxx be xxxxxxxx xxx systems xxxx xxxxxxx, xx xxxx an impact xx, xxxxxxxxx, valuable xx critical xxxxxxxxxxx. Xxxx xxxxxxxx xxxxx xx xxxxxxxxxx xx xxx xxxxx xx xxxxxxxx xxxxxxxxxxxx xxx xxxx assessment xxxxxxxxx xx the established xxxxxxxx (x.x. xxxxxxxxxxx xxxxxxxx xxxxxx, cryptographic xxxxxxx policy). The operational xxxxxxxxxxxx of new xxxxxxx xxxxx xx xxxxxxxxxxx, xxxxxxxxxx and xxxxxx prior xx xxxxx xxxxxxxxxx xxx xxx. As xxxxxxx xxxxxxx xxxxxxxx, xxxxxxxxxxx xxxxxxxx, including xxxxxxxxxxxx xxx xxxxxx xxxxxxxxxx, xxxxxx xx xxxxxxxxxxx xxxxx xx xxx xxxxxxxxxxx xx xxxx xxxxx xxx the xxxxx xx risk xx xxx xxxxxxx xxxxx in xxx xxxxxxxxxxxx. There shall xx specific xxxxxxxx xx xxxxxxx xxxxxxxxx xxxxxxxxxxx passing over xxxxxx xxxxxxxx. Xxxxxx xx xxxxxx xxxxx and xxxxxxx xxxxxx xxxx xxxxx be controlled xxx IT projects xxx xxxxxxx activities xxxxxxxxx xx x&xxxx;xxxxxx xxxxxx. Care xxxxx xx xxxxx xx xxxxx xxxxxxxx xx xxxxxxxxx xxxx xx xxxx xxxxxxxxxxxx. Xxxxxxx xxx support xxxxxxxxxxxx xxxxx be strictly xxxxxxxxxx. Deployment of xxxxxxx xx xxxxxxxxxx xxxxx be xxxxxxxx xxxxxxxxxx. A risk xxxxxxxxxx xx xxx xxxxx xxxxxxx to be xxxxxxxx xx xxxxxxxxxx xxxxx be xxxxxxxxx. Xxxxxxx xxxxxxxx xxxxxxx xxxxxxxxxx xx xxxxxxx xx xxxxxxxxxx xxxxx xxxx xx xxxxxxxxx xxxxxxxxx xx x&xxxx;xxxxxxxxxx plan xxxxx xx the xxxxxxx xx x&xxxx;xxxx xxxxxxxxxx, xxx xxxxxxxx xxxxxxx xxxxx xxxxxxx, xx xxxxx, xxxxxxxxxxxxx xxxxxxxxxxx. All of xxx xxxxxxxxxxxx xxxxxxxxxxx xxxxxx the xxxxxxxx xxxxxxx activities shall xx xxxxxxxx and xxxxxx plans xx xxxxx any xxxxxxxxxx xxx xxxxx xx xxxxxxxx and xxxxxxxx xx xx x&xxxx;xxxxxx xxxxxxx. Xxxxxxxxxxx 1.11: Xxxxxxxxxxx xxxxxxxx xx supplier (3) xxxxxxxxxxxxx Xx ensure protection xx the xxxxxxxxxxx’x xxxxxxxx information xxxxxxx xxxx are xxxxxxxxxx xx xxxxxxxxx, xxxxxxxxxxx xxxxxxxx xxxxxxxxxxxx xxx xxxxxxxxxx xxx xxxxx xxxxxxxxxx xxxx supplier’s xxxxxx shall xx xxxxxxxxxx xxx xxxxxxxx xxxxxx xxxx xxxx xxx xxxxxxxx. Xxxxxxxxxxx 1.12: Xxxxxxxxxx xx xxxxxxxxxxx xxxxxxxx xxxxxxxxx and xxxxxxxxxxxx Xx ensure x&xxxx;xxxxxxxxxx xxx xxxxxxxxx approach xx xxx xxxxxxxxxx xx xxxxxxxxxxx xxxxxxxx xxxxxxxxx, xxxxxxxxx xxxxxxxxxxxxx xx xxxxxxxx xxxxxx xxx xxxxxxxxxx, xxxxx, xxxxxxxxxxxxxxxx xxx xxxxxxxxxx, xx business xxx xxxxxxxxx xxxxx, xxxxx xx established xxx xxxxxx xx xxxxxx x&xxxx;xxxxx, effective xxx xxxxxxx and safely xxxxxxx from information xxxxxxxx incidents xxxxxxxxx xxxxxxxxx xxxxxxx to x&xxxx;xxxxx-xxxxxxx cause (x.x. x&xxxx;xxxxx xxxxxxx xx xx external xxxxxxxx xx xx xx xxxxxxx). Personnel xxxxxxxx xx xxxxx xxxxxxxxxx xxxxx xx xxxxxxxxxx xxxxxxx. Xxxxxxxxxxx 1.13: Technical xxxxxxxxxx review A participant’s internal xxxxxxxxxxx xxxxxxx (x.x. xxxx xxxxxx xxxxxxx, xxxxxxxx xxxxxxxx xxx xxxxxxxx xxxxxxx xxxxxxxxxxxx) xxxxx xx xxxxxxxxx xxxxxxxx xxx xxxxxxxxxx xxxx the xxxxxxxxxxxx’x xxxxxxxxxxx framework xx xxxxxxxx (x.x. information xxxxxxxx xxxxxx, xxxxxxxxxxxxx xxxxxxx xxxxxx). Xxxxxxxxxxx 1.14: Xxxxxxxxxxxxxx Xxxxx xxxxxxx xxxxxxxx xxxxx comply xxxx xxx xxx security xxxxxxxx xxxx xxx xxx xxx physical xxxxxxxx xxx xxxxxxx (x.x. xxxxxxxxx, xxxxxxx). Xxxxxxxx xxxxxxxx to xxxxxxxxxxx xxxx xxxxxxx: xxxxxxxxx xx xxx xxxxxxxxxx and xxx xxxxxxx xxxxxxxxx system, xxxxxxx xxxxxxxx, xxxxxx xxxxxxxxxx xx xxxxxxxxx xxxxxxxxxxxx (x.x. xxxxxxxxxx xxx xxxxxxxxxxx). Centralised xxxxxxxxxx, xxxxxxx xxx xxxxxxxxxx xx xxxx xx xxxxxxxx xx xxxxxx xxxxxx, xx xxxxxxxxxx xxx xxxx xxxxxxxxxx accounts, xxxxx xx implemented xxxxx xx a risk xxxxxxxxxx. Xxxxx xxxxxxx xxxxxxxx xxxxxxx xx the xxxx hypervisor shall xxxx a similar xxxx xxxxxxx. Xxxxxxxxxxx 1.15: Xxxxx xxxxxxxxx Xxx xxxxx of xxxxxx and/or hybrid xxxxx xxxxxxxxx xx xxx Xxxxxxx Xxxxxxxxxxx Xxxxx xxxx xx xxxxx xx x&xxxx;xxxxxx xxxx assessment, xxxxxx xxxx account xxx xxxxxxxxx xxxxxxxx xxx xxx xxxxxxxxxxx xxxxxxx xxxxxxx xx xxx xxxxx xxxxxxxx. Xx xxxxxx xxxxx solutions are xxxx, xx xx xxxxxxxxxx xxxx the xxxxxxxxxxx xxxxx xx xxx xxxxxxx system xx the highest xxx xx xxx xxxxxxxxx xxxxxxx. Xxx xx-xxxxxxxx xxxxxxxxxx xx xxx xxxxxx solutions xxxx xx segregated xxxx xxx xxxxx xx-xxxxxxxx xxxxxxx. Xxxxxxxx continuity xxxxxxxxxx (xxxxxxxxxx xxxx xx critical participants) The xxxxxxxxx requirements (2.1 xx 2.6) xxxxxx xx xxxxxxxx xxxxxxxxxx xxxxxxxxxx. Xxxx TARGET2 xxxxxxxxxxx xxxxxxxxxx by xxx Xxxxxxxxxx xx xxxxx xxxxxxxx xxx xxx xxxxxx functioning xx xxx XXXXXX2 xxxxxx xxxxx xxxx x&xxxx;xxxxxxxx xxxxxxxxxx xxxxxxxx xx place comprising xxx xxxxxxxxx xxxxxxxx.
|
(1)&xxxx;&xxxx;Xxx xxxx-xx-xxxx xxxxxxxxx xxxxxx xx xxx xxxxxxxxxxxxxx xx xxx set xx xxxxxxxxxxx xxxx xx xxxxxxxxxx xxxxx xxxxxx to in xxxxx to carry xxx her/his xxxxxx.
(2)&xxxx;&xxxx;Xxx xxxxxxxxx of xxxxx xxxxxxxxx xxxxxx to xxxxxxxxx a subject’s xxxxxx xxxxxxx xx an XX xxxxxx xx xxxxx to xxxxx xxx xxxxxxxxxxxxx business xxxx.
(3)&xxxx;&xxxx;X&xxxx;xxxxxxxx xx xxx xxxxxxx of xxxx xxxxxxxx should xx xxxxxxxxxx xx any xxxxx xxxxx (xxx xxx xxxxxxxxx) xxxxx xx under xxxxxxxx (xxxxxxxxx), with the xxxxxxxxxxx, xx xxxxxxx x&xxxx;xxxxxxx xxx xxxxx xxx xxxxxxx xxxxxxxxx xxx xxxxx xxxxx (xxx xxx personnel) xx xxxxxxx xxxxxx, xxxxxx xxxxxxxx or xx-xxxx, xx information xxx/xx xxxxxxxxxxx systems xxx/xx xxxxxxxxxxx processing xxxxxxxxxx xx xxx xxxxxxxxxxx in scope xx xxxxxxxxxx xx xxx scope xxxxxxx xxxxx xxx xxxxxxxx xx xxx TARGET2 xxxx-xxxxxxxxxxxxx.
PŘÍLOHA XX
Xxxxxxx XX xxxxxxxxxx XXX/2007/7 xx xxxx xxxxx:
|
1. |
Xxxxxx&xxxx;1 xx xxxx takto:
|
|
2. |
X&xxxx;xx.&xxxx;4 xxxx.&xxxx;2 xx xxxxxxx xx) xxxxxxxxx tímto:
|
|
3. |
X&xxxx;xx.&xxxx;4 xxxx.&xxxx;2 xx xxxxxx nové písmeno xx), xxxxx zní:
|
|
4. |
X&xxxx;xxxxxx&xxxx;4 xx odstavec 3 xxxxxxxxx tímto: „3. TARGET2 xxxxxxxx xxxx-xxxx xxxxx settlement xxx xxxxxxxx in xxxx, with settlement xx central xxxx xxxxx across XX xxxxxxxx, X2X DCAs xxx XXXX XXXx. XXXXXX2 xx xxxxxxxxxxx xxx xxxxxxxxx xx xxx xxxxx xx xxx XXX through xxxxx payment xxxxxx xxx xxxxxxxxx xxx xxxxxxxxx xxx through xxxxx payments xxx xxxxxxxxxx xxxxxxxx xx xxx xxxx xxxxxxxxx xxxxxx. Xx xxx xx xxx technical xxxxxxxxx of xxx X2X XXXx xx xxxxxxxxx, TARGET2 xx xxxxxxxxxxx xxxxxxxxxxx and xxxxxxxxx xx xxx xxxxx of xxx X2X Xxxxxxxx. Xx xxx as the xxxxxxxxx xxxxxxxxx xx xxx TIPS XXXx xxx XXXX XX xxxxxxxxx accounts is xxxxxxxxx, TARGET2 is xxxxxxxxxxx xxxxxxxxxxx xxx xxxxxxxxx on xxx xxxxx xx xxx XXXX Platform. Xxx XXX is xxx xxxxxxxx xx xxxxxxxx xxxxx these Xxxxxxxxxx. Xxxx xxx omissions xx xxx XXX-xxxxxxxxx XXXx xxx xxx 4XXx xxxxx be xxxxxxxxxx xxxx xxx xxxxxxxxx xx the XXX, xxx which xx xxxxx assume xxxxxxxxx xx accordance xxxx Article 21 of xxxx Annex. Xxxxxxxxxxxxx xxxxxxxx xx xxxxx Xxxxxxxxxx xxxxx not xxxxxx x&xxxx;xxxxxxxxxxx xxxxxxxxxxxx xxxxxxx X2X XXX xxxxxxx xxx xxx XXX-xxxxxxxxx XXXx or xxx 4XXx xxxx xxx of the xxxxxx acts in xxxx capacity. Instructions, xxxxxxxx or xxxxxxxxxxx xxxxx x&xxxx;X2X XXX xxxxxx xxxxxxxx xxxx, xx sends xx, xxx XXX xx X2X Xxxxxxxx xx xxxxxxxx xx xxx xxxxxxxx provided xxxxx xxxxx Xxxxxxxxxx are xxxxxx xx xx xxxxxxxx from, xx xxxx to, the XXX.“; |
|
5. |
X&xxxx;xxxxxx&xxxx;8 se xxxxxxxx 3 xxxxxxxxx xxxxx: „3.&xxxx;&xxxx;&xxxx;Xxxxx xxx ECB xxx xxxxxxx a request xx x&xxxx;X2X XXX xxxxxx xxxxxxxx xx xxxxxxxxx 1, that X2X XXX holder xx xxxxxx to xxxx xxxxx xxx participating XXX(x) x&xxxx;xxxxxxx to xxxxx xxx T2S XXX xxxx xxx xxxxxxx relating xx xxxxxxxxxx xxxxxxxxxxxx xxxxxxxx xx xxxxx xxxxxxxxxx xxxxxxxx.“; |
|
6. |
X&xxxx;xxxxxx&xxxx;28 se odstavec 1 xxxxxxxxx tímto: „1. T2S XXX xxxxxxx shall xx xxxxxx to xx xxxxx xx, xxxxx xxxxxx with, xxx shall be xxxx xx xxxxxxxxxxx xxxx xxxxxxxxxx to xxx relevant xxxxxxxxx xxxxxxxxxxx with xxx xxxxxxxxxxx xx xxxx xxxxxxxx xx legislation xx xxxx protection. Xxxx shall xx xxxxxx xx be xxxxx xx, xxx xxxxx xxxxxx with xxx obligations xx xxxx relating xx xxxxxxxxxxx on prevention xx money xxxxxxxxxx xxx the financing xx xxxxxxxxx, proliferation-sensitive xxxxxxx activities and xxx xxxxxxxxxxx of xxxxxxx weapons xxxxxxxx xxxxxxx, in xxxxxxxxxx xx xxxxx xx xxxxxxxxxxxx appropriate measures xxxxxxxxxx xxx payments xxxxxxx xx credited xx xxxxx X2X XXXx. Prior to xxxxxxxx into the xxxxxxxxxxx xxxxxxxxxxxx xxxx xxx T2S xxxxxxx xxxxxxx xxxxxxxx, T2S XXX holders xxxxx xxxxxx xxxx xxxx xxx xxxxxxxx xxxxx xxx xxxx retrieval xxxxxx.“; |
|
7. |
Xxxxxx&xxxx;30 xx xxxxxxxxx xxxxx: „Xxxxxxx&xxxx;30 Xxxxxxxxxxx xxxxxxxxxxxx xxxx xx NSP 1. T2S XXX xxxxxxx xxxxx xxxxxx:
2.&xxxx;&xxxx;&xxxx;Xxx xxxxx relationship xxxxxxx x&xxxx;X2X DCA holder xxx xxx NSP xxxxx xx exclusively xxxxxxxx xx xxx xxxxx xxx xxxxxxxxxx xx the xxxxxxxx xxxxxxxx xxxxxxxxx xxxx xx NSP as xxxxxxxx xx xx xxxxxxxxx 1(a). 3. The xxxxxxxx xx be xxxxxxxx xx xxx XXX xxxxx not form xxxx xx xxx xxxxxxxx xx xx xxxxxxxxx xx xxx XXX xx respect xx XXXXXX2. 4.&xxxx;&xxxx;&xxxx;Xxx ECB xxxxx xxx be xxxxxx xxx xxx xxxx, xxxxxx xx xxxxxxxxx xx the XXX (xxxxxxxxx xxx xxxxxxxxx, xxxxx xxx xxxxxxxxxxxxxx), or xxx xxx xxxx, errors xx xxxxxxxxx xx xxxxx xxxxxxx selected xx participants to xxxx xxxxxx xx xxx NSP’s xxxxxxx.“; |
|
8. |
Xxxxxx xx xxxx článek 34a, xxxxx xxx: „Xxxxxxx&xxxx;34x Xxxxxxxxxxxx xxxxxxxxxx Xxxx xxx XXXXXX system xx xxxxxxxxxxx xxx XXXXXX2 xxx xxxxxx xxxxxxxxx, X2X XXX xxxxxxx shall xxxxxx X2X XXX holders xx xxx TARGET xxxxxx.“; |
|
9. |
Xxxxxx xx pojem „X2X network service xxxxxxxx“ (v jednotném xxxx xxxxxxx čísle) v čl. 6 xxxx.&xxxx;1 písm. x) xxxx x), čl. 9 xxxx.&xxxx;5, xx.&xxxx;10 odst. 6, xx.&xxxx;14 odst. 1 písm. x), xx.&xxxx;22 xxxx.&xxxx;1, xx.&xxxx;22 xxxx.&xxxx;2, xx.&xxxx;22 xxxx.&xxxx;3, čl. 27 odst. 5, xx.&xxxx;28 xxxx.&xxxx;1, xx.&xxxx;29 xxxx.&xxxx;1 přílohy XX x&xxxx;x&xxxx;xxxxxxxx 1 xxxxxxx X&xxxx;xx xxxxxxxxx xxxxxxx „XXX“; |
|
10. |
X&xxxx;xxxxxxx X&xxxx;xx v odst. 8 xxxxxxx. 4 nahrazuje xxxxxxx x) tímto:
|
XXXXXXX III
Příloha XXX xxxxxxxxxx XXX/2007/7 xx xxxx takto:
|
1. |
Odkazy xx xxxxx „XXXX network xxxxxxx xxxxxxxx“ (x&xxxx;xxxxxxxxx xxxx množném xxxxx) x&xxxx;xxxx příloze se xxxxxxxxx xxxxxxx „XXX“; |
|
2. |
Xxxxxx&xxxx;1 xx mění takto:
|
|
3. |
X&xxxx;xx.&xxxx;3 xxxx.&xxxx;1 xx xxxxxxx xxxxx xx „Xxxxxxxx X: TIPS xxxxxxxxxxxx xxxxxxxxx xxxxxxxxxxxx“; |
|
4. |
Xxxxxx&xxxx;4 se xxxx takto:
|
|
5. |
X&xxxx;xx.&xxxx;6 odst. 1 xxxx. x) se xxx x) xxxxxxxxx xxxxx:
|
|
6. |
Xxxxxx&xxxx;9 se xxxxxxxxx xxxxx: „Xxxxxxx&xxxx;9 Xxxxxxxxxxx relationship xxxx xx XXX 1.&xxxx;&xxxx;&xxxx;Xxxxxxxxxxxx xxxxx xxxxxx:
2. The legal xxxxxxxxxxxx xxxxxxx a participant xxx xxx XXX xxxxx xx xxxxxxxxxxx xxxxxxxx xx xxx xxxxx and xxxxxxxxxx xx xxxxx xxxxxxxx xxxxxxxx xx xxxxxxxx xx xx xxxxxxxxx 1(x). 3.&xxxx;&xxxx;&xxxx;Xxx xxxxxxxx xx xx xxxxxxxx xx xxx NSP xxxxx xxx xxxx xxxx xx xxx services xx be xxxxxxxxx xx xxx ECB xx xxxxxxx xx XXXXXX2. 4.&xxxx;&xxxx;&xxxx;Xxx XXX shall xxx xx xxxxxx xxx xxx xxxx, xxxxxx xx omissions xx the NSP (xxxxxxxxx xxx xxxxxxxxx, xxxxx xxx xxxxxxxxxxxxxx), xx xxx any xxxx, xxxxxx xx xxxxxxxxx xx xxxxx xxxxxxx xxxxxxxx by xxxxxxxxxxxx xx xxxx xxxxxx to xxx XXX’x xxxxxxx.“; |
|
7. |
Xxxxxx&xxxx;10 xx xxxxxxx; |
|
8. |
Xxxxxx se xxxx xxxxxx&xxxx;11x, xxxxx xxx: „Xxxxxxx&xxxx;11x XXX xxxxxxxxxx 1.&xxxx;&xxxx;&xxxx;Xxx central MPL xxxxxxxxxx xxxxxxxx xxx xxxxx – IBAN xxxxxxx xxxxx xxx xxx xxxxxxxx xx xxx XXX xxxxxxx. 2.&xxxx;&xxxx;&xxxx;Xxxx xxxxx xxx xx xxxxxx xx only xxx IBAN. An XXXX may xx xxxxxx to one xx multiple xxxxxxx. 3.&xxxx;&xxxx;&xxxx;Xxxxxxx&xxxx;29 xxxxx xxxxx xx xxx xxxx contained xx xxx XXX xxxxxxxxxx.“; |
|
9. |
X&xxxx;xxxxxx&xxxx;12 se xxxxxxx xxxxxxxx 9; |
|
10. |
Článek 16 se xxxxxxxxx xxxxx: „Xxxxxxx&xxxx;16 Xxxxx xx xxxxxxx orders xx XXXX DCA The following xxx xxxxxxxxxx xx xxxxxxx xxxxxx xxx xxx xxxxxxxx xx xxx XXXX service:
|
|
11. |
X&xxxx;xxxxxx&xxxx;18 xx xxxxxxxx 6 nahrazuje xxxxx: „6.&xxxx;&xxxx;&xxxx;Xxxxx x&xxxx;XXXX DCA xx XX xxxxxxxxx xxxxxxxx xxxxx, a TIPS XXX xx XXXX XX technical xxxxxxx xxxxxxxxx xxxxxxxx order xx x&xxxx;XXXX XX xxxxxxxxx account xx XXXX XXX xxxxxxxxx xxxxxxxx order has xxxx accepted xx xxxxxxxx xx in Xxxxxxx&xxxx;17, the TARGET2-ECB xxxxx check xxxxxxx xxxxxxxxxx xxxxx xxx xxxxxxxxx xx xxx xxxxx'x xxxxxxx. If xxxxxxxxxx xxxxx are xxx available the xxxxxxxxx xxxxxxxx xxxxx xxxxx be xxxxxxxx. Xx sufficient xxxxx xxx available xxx xxxxxxxxx xxxxxxxx xxxxx xxxxx xx xxxxxxx xxxxxxxxxxx.“; |
|
12. |
X&xxxx;xx.&xxxx;20 xxxx.&xxxx;1 se xxxxxxx x) xxxxxxxxx xxxxx:
|
|
13. |
X&xxxx;xxxxxx&xxxx;30 xx odstavec 1 xxxxxxxxx tímto: „1. TIPS XXX xxxxxxx xxxxx xx deemed xx xx xxxxx of, xxxxx xxxxxx with xxx shall be xxxx xx demonstrate xxxx compliance xx xxx xxxxxxxx competent xxxxxxxxxxx xxxx xxx xxxxxxxxxxx xx them xxxxxxxx xx xxxxxxxxxxx xx xxxx protection. Xxxx xxxxx xx xxxxxx to xx xxxxx xx, xxx xxxxx xxxxxx xxxx xxx xxxxxxxxxxx xx xxxx xxxxxxxx xx xxxxxxxxxxx on xxxxxxxxxx xx xxxxx xxxxxxxxxx xxx xxx xxxxxxxxx xx terrorism, proliferation-sensitive xxxxxxx xxxxxxxxxx xxx xxx xxxxxxxxxxx xx xxxxxxx xxxxxxx xxxxxxxx xxxxxxx, in particular xx xxxxx of xxxxxxxxxxxx xxxxxxxxxxx xxxxxxxx xxxxxxxxxx any payments xxxxxxx xx xxxxxxxx xx xxxxx XXXX XXXx. XXXX XXX xxxxxxx xxxxxx xxxx xxxx xxx xxxxxxxx xxxxx their xxxxxx XXX'x xxxx xxxxxxxxx xxxxxx xxxxx xx xxxxxxxx xxxx a contractual xxxxxxxxxxxx xxxx xxxx XXX.“; |
|
14. |
Xxxxxx se nový xxxxxx&xxxx;35x, xxxxx xxx: „Xxxxxxx&xxxx;35x Xxxxxxxxxxxx xxxxxxxxx Xxxx the XXXXXX xxxxxx xx operational xxx xxx TARGET2 xxx xxxxxx operation, XXXX DCA holders xxxxx become XXXX XXX xxxxxxx xx xxx TARGET xxxxxx.“; |
|
15. |
X&xxxx;xxxxxxx X&xxxx;xx xxxxxxx x&xxxx;xxxxxxxx 2 xxxxxxxxx xxxxx:
|
|
16. |
X&xxxx;xxxxxxx X&xxxx;xx x&xxxx;xxxx.&xxxx;6 xxxxxxx. 1 xxxxxxxxx xxxxxxx x) xxxxx:
|
|
17. |
V dodatku XX xx xxxxxxx xxxxxxxx 2; |
|
18. |
Xxxxxxx X&xxxx;xx xxxxxxx. |