Glossary
Directive 364
Stands forBank of Israel Proper Conduct of Banking Business Directive 364 — Management of IT Risks, Information Security and Cyber Defence
The Bank of Israel directive covering IT risk, information security and cyber defence. It consolidates and replaces Directives 357, 361 and 363.
Also calledProper Conduct of Banking Business 364 · PCBB 364 · הוראה 364
The Proper Conduct of Banking Business directive that gathers the Bank of Israel's requirements on IT risk management, information security and cyber defence. It consolidates and replaces Directives 357, 361 and 363 — so an internal policy still citing those is citing a superseded document.
The clauses that bear on patching
| Clause | Subject |
|---|---|
| 61.3 | EOL/EOS identification and risk assessment |
| 61.4 | Patch management |
| 97 | Emergency changes |
| 98 | Audit trail |
| 114.2 | Configuration management |
| 114.7 | Vulnerability management |
| 114.8 | Patch-management control |
Scope is defined in clause 10.