Glossary
| Term | Explanation |
|---|---|
| BaFin | Bundesanstalt für Finanzdienstleistungsaufsicht (Federal Financial Supervisory Authority, Germany) |
| BAIT | Bankaufsichtliche Anforderungen an die IT (Supervisory Requirements for IT in Financial Institutions, superseded by DORA) |
| BCP | Business Continuity Plan |
| CTPP | Critical Third-Party Provider – Critical ICT third-party service provider (Art. 31 ff.) |
| DRP | Disaster Recovery Plan |
| EBA | European Banking Authority |
| EIOPA | European Insurance and Occupational Pensions Authority |
| ESAs | European Supervisory Authorities (EBA + EIOPA + ESMA) |
| ESMA | European Securities and Markets Authority |
| EUID | European Unique Identifier |
| FinmadiG | Finanzmarktdigitalisierungsgesetz (Financial Markets Digitalisation Act, Germany) |
| ICT | Information and Communication Technology |
| ITS | Implementing Technical Standards |
| JET | Joint Examination Team |
| LEI | Legal Entity Identifier |
| MTTR | Mean Time to Repair/Resolve |
| RPO | Recovery Point Objective |
| RTO | Recovery Time Objective |
| RTS | Regulatory Technical Standards |
| TIBER-EU | Threat Intelligence-based Ethical Red Teaming |
| TLPT | Threat Led Penetration Testing |
| xAIT | Collective term for BAIT, KAIT, VAIT, ZAIT (German supervisory circulars for IT requirements) |