BaFin publishes ‘Guidance on ICT Risks in the Use of AI in FIs’, urging firms to strengthen operational resilience by managing AI ICT risks across governance, monitoring, and third-party dependencies

The guidance provides practical, non‑binding recommendations for embedding AI risk management across the entire AI lifecycle—from collecting and preparing data, developing and deploying systems, to monitoring performance and safely retiring them. It stresses the...

BaFin’s 2026-29 Strategic goals sets out a smarter, data-driven AML agenda tightening crypto oversight, boosting public–private collaboration, and aligning closely with EU’s AMLA for sharper enforcement

The plan emphasizes early detection of weak internal controls, greater use of data-driven supervision, and closer coordination with AMLA. BaFin also prioritizes digital identity systems for more effective KYC, stricter enforcement against market abuse, and oversight...