{"id":35410,"date":"2025-11-26T17:05:28","date_gmt":"2025-11-26T17:05:28","guid":{"rendered":"https:\/\/naijaglobalnews.org\/?p=35410"},"modified":"2025-11-26T17:05:28","modified_gmt":"2025-11-26T17:05:28","slug":"november-global-regulatory-brief-digital-finance-insights","status":"publish","type":"post","link":"https:\/\/naijaglobalnews.org\/?p=35410","title":{"rendered":"November Global Regulatory Brief: Digital finance | Insights"},"content":{"rendered":"<p>\n<\/p>\n<p>In more detail<\/p>\n<p><span style=\"font-weight: 400;\">Summary of the guiding principles and the six pillar recommended under the guidelines include:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Regulatory stance: No separate AI law proposed; existing frameworks under the Information Technology Act, the Digital Personal Data Protection Act, consumer protection and sectoral laws to be used, with targeted amendments as necessary.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Guiding principles: Seven \u201csutras\u201d \u2014 Trust, People-First, Innovation over Restraint, Fairness &amp; Equity, Accountability, Understandable by Design, and Safety, Resilience &amp; Sustainability.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">The framework rests on six key pillars:<\/span>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Infrastructure \u2013 Expanding access to high-quality data, computing resources, and integration with India\u2019s Digital Public Infrastructure (DPI) to support inclusive and secure AI development.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Capacity Building \u2013 Promoting AI literacy, education, and skills development for professionals, regulators, and students to strengthen India\u2019s AI talent base.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Policy &amp; Regulation \u2013 Reviewing existing laws on data protection, copyright, and liability to address AI-specific risks through targeted amendments rather than a new AI law.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Risk Mitigation \u2013 Establishing India-specific risk and incident-reporting frameworks, encouraging voluntary codes, and deploying techno-legal tools such as content authentication and privacy-preserving technologies.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Accountability \u2013 Introducing graded liability, transparency reporting, and accessible grievance mechanisms to ensure responsible conduct across the AI value chain.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Institutions \u2013 Creating an AI Governance Group (AIGG) for coordination, a Technology &amp; Policy Expert Committee (TPEC) for technical advice, and an AI Safety Institute (AISI) for risk assessment and standard-setting.<\/span><\/li>\n<\/ul>\n<\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Implementation roadmap:<\/span>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Short term: Set up institutions (AIGG, TPEC, AISI), develop risk frameworks, and adopt voluntary commitments.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Medium term: Publish common standards, amend existing laws, pilot regulatory sandboxes, and operationalise an AI incident database.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"2\"><span style=\"font-weight: 400;\">Long term: Review and refine governance mechanisms, introduce new laws if required, and strengthen international cooperation on AI governance.<\/span><\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Industry and regulator guidance: Industry expected to comply with existing laws, adopt voluntary codes and transparency reports, and establish grievance mechanisms; regulators advised to avoid compliance-heavy regimes and focus on techno-legal and risk-proportionate measures.<\/span><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\">The guidelines position India\u2019s model as an iterative, evidence-based governance approach leveraging its digital public infrastructure and local datasets to promote inclusive, culturally aligned AI development.<\/span><\/p>\n<p>Next steps<\/p>\n<p><span style=\"font-weight: 400;\">Government would set up institutions as suggested in the report towards operationalizing the implementation roadmap.<\/span><\/p>\n<h2>Singapore bolsters national cybersecurity posture<\/h2>\n<p>Summary<\/p>\n<p><span style=\"font-weight: 400;\">Singapore is significantly <\/span><span style=\"font-weight: 400;\">bolstering<\/span><span style=\"font-weight: 400;\"> its national cybersecurity posture by initiating unprecedented classified intelligence sharing with financial institutions and critical infrastructure owners to strengthen defences against state-backed hackers. A new Cyber Resilience Centre will be established to support small and medium-sized enterprises (SMEs) with prevention and recovery. The government is also enhancing supply chain security requirements, and launching frameworks to address risks associated with emerging technologies like quantum computing, AI, and mobile apps.<\/span><\/p>\n<p>In more detail<\/p>\n<p><span style=\"font-weight: 400;\">Singapore is boosting its cyber defences with several key actions:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Proactive government powers: authorities will share classified threat intelligence directly with critical sectors and gain immediate investigation powers, moving beyond a traditional regulator-regulated relationship. Singapore will also partner with firms for threat-hunting and red-teaming exercises.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">SME support: A Cyber Resilience Centre, launching in 2026, will offer SMEs a one-stop hub for preventive workshops, incident response help, and recovery aid. This addresses a context where over 80% of Singaporean enterprises experienced a cyber incident last year.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Modernised standards and supply chain: Updated Cyber Essentials and Cyber Trust marks now cover cloud, operational technology, and AI. ICT vendor security requirements and cybersecurity service provider (CSP) licensing will be tightened.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Emerging tech governance: New frameworks and consultations address Quantum Security (Quantum-Safe Handbook, Quantum Readiness Index), Agentic AI (securing autonomous systems), and Mobile App Security (Safe App Portal pilot, App Defense Alliance MOU).<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Partnerships: Enhanced AI-driven threat intelligence sharing is being established via MOUs with TRM Labs (blockchain intelligence), Google, and AWS, focusing on areas like ransomware tracking. Singapore also renewed its UN-Singapore Cyber Programme for global capacity building.<\/span><\/li>\n<\/ul>\n<p>Next steps<\/p>\n<p><span style=\"font-weight: 400;\">Cyber Resilience Centre launch: The centre is expected to begin operations in 2026.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Public consultations: Consultations are open for the Quantum-Safe Handbook, Quantum Readiness Index (QRI), and the guidelines on securing agentic AI systems until December 31, 2025.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Safe App Portal pilot: The six-month pilot of the mobile app security scanning tool is underway.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">National strategy: A more comprehensive, long-term national cybersecurity strategy is expected later this year.<\/span><\/p>\n<h2>BNM issues discussion paper on asset tokenisation<\/h2>\n<p>Summary<\/p>\n<p><span style=\"font-weight: 400;\">On 30 Oct, Bank Negara Malaysia <\/span><span style=\"font-weight: 400;\">released<\/span><span style=\"font-weight: 400;\"> a discussion paper outlining its proposed approach to asset tokenisation in the Malaysian financial sector. The aim is to foster a collaborative, safe and sustainable roadmap for the development of tokenised financial services in Malaysia. BNM invites industry and stakeholder feedback on the key themes, issues for clarification, and alternative proposals. Responses are due by 1 March 2026.<\/span><\/p>\n<p>In more detail<\/p>\n<p><span style=\"font-weight: 400;\">The discussion paper reflects BNM\u2019s recognition that asset tokenisation \u2014 the representation of financial or real-world assets in token form on digital platforms \u2014 offers potential benefits for the Malaysian financial ecosystem, including greater efficiency, new business models, and broader financial inclusion. At the same time, BNM emphasises the need to manage risks and ensure financial stability, integrity and consumer protection.<\/span><\/p>\n<p><strong>Key elements of the proposed approach include:<\/strong><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">High-level principles and use cases: The paper will set out core principles for tokenisation (such as asset backing, transparency, separation of roles, custody, etc) and identify potential use cases \u2014 for example, tokenised deposits, programmable payments, supply-chain finance, and other real-world asset tokenisation.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Regulatory and developmental approach: BNM emphasises collaboration with industry and other regulators (such as the Securities Commission Malaysia) to co-create frameworks, pilot tokenisation projects and explore how tokenisation may integrate with existing systems (including central bank digital currency (CBDC) considerations) while preserving monetary and financial system stability.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Feedback and industry input: The discussion paper invites feedback from stakeholders, asking them to articulate clear rationale, supporting evidence or illustrative examples, and propose areas of clarification or alternative approaches.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Safeguards and risk considerations: While innovation is encouraged, BNM flags key risks involving operational technology (e.g., distributed-ledger-technology vulnerabilities), interoperability, anti-money-laundering \/ counter-terror-financing (AML\/CFT), custody, investor protection and system stability.<\/span><\/li>\n<\/ul>\n<p>Next steps<\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Interested parties should review the discussion paper and submit their feedback via email to tokenisation@bnm.gov.my by 1 March 2026.<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">The broader ecosystem (financial institutions, industry bodies, fintechs) may use this period to form pilot projects or collaborations with BNM\u2019s innovation or sandbox facilities to test tokenisation use cases in a controlled environment.<\/span><\/li>\n<\/ul>\n<h2>Australia\u2019s National AI Centre releases practical guidance<\/h2>\n<p><span style=\"font-weight: 400;\">The National AI Centre (NAIC), part of the Department of Industry, Science and Resources released Guidance for AI Adoption, a practical resource to help Australian business adopt artificial intelligence safely and responsibly.<\/span><\/p>\n<p>Further details<\/p>\n<p><span style=\"font-weight: 400;\">The guidance responded to feedback from industry seeking clearer, simpler and more actionable advice. It evolves the Voluntary AI Safety Standard and remains aligned with Australia\u2019s AI Ethics Principles, as well as international standards and best practices.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The guidance is designed to meet businesses where they are on their AI adoption journey:<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Foundations provides practical steps for organisations that are starting with AI, including small businesses. It focuses on aligning AI with business goals, establishing governance and managing risk across 6 practices.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Implementation Practices supports organisations that are scaling AI or managing more complex systems. It offers detailed technical information to strengthen governance, improve oversight and embed responsible AI across systems, processes and decision-making.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The guidance is the first update of the Voluntary AI Safety Standard (<\/span><span style=\"font-weight: 400;\">VAISS<\/span><span style=\"font-weight: 400;\">), which was published in September of last year. At time of release, it was communicated that NAIC would update the VAISS to extend best practices to AI developers as well as deployers. The update condensed 10 guardrails into 6 essential practices.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The <\/span><span style=\"font-weight: 400;\">2025 Responsible AI Index<\/span><span style=\"font-weight: 400;\">, released 26 August 2025 had found that only 29% had implemented relevant responsible AI practices.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>In more detail Summary of the guiding principles and the six pillar recommended under the guidelines include: Regulatory stance: No separate AI law proposed; existing frameworks under the Information Technology Act, the Digital Personal Data Protection Act, consumer protection and sectoral laws to be used, with targeted amendments as necessary. Guiding principles: Seven \u201csutras\u201d \u2014<\/p>\n","protected":false},"author":1,"featured_media":35411,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[49],"tags":[1136,7117,1123,12239,14591,12300],"class_list":{"0":"post-35410","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-business","8":"tag-digital","9":"tag-finance","10":"tag-global","11":"tag-insights","12":"tag-november","13":"tag-regulatory"},"_links":{"self":[{"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=\/wp\/v2\/posts\/35410","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=35410"}],"version-history":[{"count":0,"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=\/wp\/v2\/posts\/35410\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=\/wp\/v2\/media\/35411"}],"wp:attachment":[{"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=35410"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=35410"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/naijaglobalnews.org\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=35410"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}