Risk Horizon
Live

Intelligence generated by AI from public regulatory sources. Not investment or regulatory advice. Verify before relying on any output.

IncreasingMedium2026-08-02

ESAs urge consistent supervision of frontier AI ICT risks

MarketsOtherCyberCross-JurisdictionalEuropean UnionConf: High
Regulatory Event

EBA, EIOPA and ESMA issued a joint statement calling for cross-sectoral, risk-based supervision to mitigate ICT risks from frontier AI models in EU finance.

Analysis

The three ESAs are aligning supervisory expectations around frontier AI, emphasising ICT resilience, third-party dependency, and cybersecurity risks. The statement complements DORA, the EU AI Act and the Commission's Cybersecurity and AI Action Plan, signalling closer scrutiny of AI deployment in banking, insurance and markets.

Relevance

Signals convergence of AI, ICT and operational resilience supervision across EU financial sectors.

Required Action

Action Required

Review AI governance, model risk, and ICT third-party frameworks against evolving ESA supervisory expectations and DORA obligations.

Justification

Joint ESA action foreshadows harmonised supervisory reviews of AI and ICT controls across regulated entities.

Control Commentary

Assess AI model inventory, third-party ICT dependencies, and governance controls against ESA statement. Update AI risk taxonomy and integrate into DORA operational resilience testing.

Source

The ESAs (EBA, EIOPA, ESMA) published a statement calling for a cross-sectoral, risk-based and consistent supervisory approach to mitigate ICT risks stemming from frontier AI models, referencing the European Commission's Action Plan on Cybersecurity and AI and ESRB publications.

RH-2026-08-01-015