On 9 November 2023, the European Securities and Markets Authority (ESMA) announced that it is changing its Union strategic supervisory priorities (USSPs) to focus on cyber risk and digital resilience alongside ESG disclosures.

With this new priority, EU supervisors will put greater emphasis on reinforcing firms’ information communication technology risk management through close monitoring and supervisory actions, building new supervisory capacity and expertise. The aim is to keep pace with market and technological developments, and closely monitor potential contagion effects of attacks and disruptions across markets and firms.

The new USSPs will come into force in 2025, at the same time as the Digital Operational Resilience Act.