| Financial Institution Supervision FrameworkBOT |
Banks and financial institutions supervised by BOT |
Board governance, risk appetite, internal controls, operational risk, technology resilience and supervisory remediation. |
|
Source |
| Corporate Governance CodeSEC |
Thai listed companies and boards applying the code |
Board duties, risk governance, internal controls, audit oversight, disclosure and long-term accountability. |
|
Source |
| Cybersecurity Act B.E. 2562NCSA |
Critical information infrastructure organisations and other entities within scope |
Risk management, security measures, incident response, regulatory coordination, continuity and assessment. |
|
Source |
| Personal Data Protection Act B.E. 2562PDPC |
Data controllers and processors within scope |
Privacy governance, processing records, security controls, processor oversight, breach notification and remediation. |
|
Source |
| Regulatory Coordination on Personal Data ProtectionSEC and PDPC |
Capital-market operators handling personal data |
Coordinated privacy governance, sector supervision, issue escalation and practical alignment with the PDPA. |
|
Source |