Frameworks
EU banking governance with EBA ICT
Complex EBA requirements across your entire institution without clear governance leave you exposed to regulatory findings.
Tidal brings clarity and control. Implement ICT governance, manage security risks systematically, and exceed EBA expectations across all required areas.

EBA ICT Guidelines in depth
The EBA ICT Guidelines are established by the European Banking Authority and describe how financial institutions should manage ICT risks within the European supervisory context. The guidelines focus on governance, risk management, and control over ICT and information security.
In practice, EBA ICT Guidelines are often seen as abstract European regulations. This leads to interpretation differences and fragmented implementation within organisations, especially when national and European frameworks overlap.
By applying EBA ICT Guidelines as a coherent framework, clarity emerges. ICT risks, responsibilities, and decision-making are uniformly organised and align with European supervisory expectations.
How Tidal helps you get certified
Hit the ground running
Start with our pre-built controls, policies, and risk assessment templates.
Our platform guides you through establishing your ISMS scope, identifying assets, and implementing right-sized controls that match your business needs.


Why Tidal Control
We understand your challenges because we've been there. Our team of GRC experts and security professionals built Tidal to solve the real problems compliance teams face every day.
Made in Europe
Built and hosted in Europe. Your compliance data stays in the EU for full control and peace of mind.
Continuous automation
Automated evidence collection from cloud providers and development tools working 24/7 for you.
Real security
Build secure systems that protect your business and satisfy auditors, not just check compliance boxes.
Go beyond EBA ICT Guidelines
Explore complementary frameworks that strengthen your EU banking institution's ICT governance.
DORA
Meeting digital resilience requirements? DORA took over the general ICT risk management that these guidelines used to carry, and adds operational resilience testing and incident reporting on top.
ISO 27001
Building information security? ISO 27001 provides foundational security controls that complement EBA's ICT governance requirements.
NIST CSF
Aligning with international security standards? NIST Cybersecurity Framework provides complementary guidance for ICT risk management alongside EBA requirements.
RVIT
Securing telecommunications infrastructure? RVIT protects the telecom systems your banking operations depend on.
Integrate with your existing tools

Testimonials
What our customers say
With a single click, one Tidal test checks dozens of disks for encryption. Doing that manually would take a lot of time.


























