CompliverseAI
Banking cyber · Sri Lanka

Sri Lanka BSS

CBSL Baseline Security Standard

The Central Bank of Sri Lanka's Baseline Security Standard for licensed banks, a mandatory floor of cybersecurity controls.

79
controls
CBSL
mandated
Banks
in Sri Lanka
SL BSS
Governance
Access control
Network security
Data protection
Incident management
Business continuity
Domains

Why it matters

Mandatory for licensed banks in Sri Lanka, setting the minimum cybersecurity posture the regulator expects.

Who it's for

Licensed banks and financial institutions supervised by the Central Bank of Sri Lanka.

The journey

How you get to Sri Lanka BSS

  1. 1ScopeIn-scope systems
  2. 2Gap assessmentAgainst the BSS
  3. 3RemediateClose the gaps
  4. 4ImplementBaseline controls
  5. 5CBSL reviewRegulator reporting
  6. 6MaintainContinuous compliance
On Compliverse

Sri Lanka BSS, worked in the platform

Sri Lanka BSS · Assessment
Statement-level status
64% ready
Control areaAI evidence
GovernanceSecurity policy
Access controlSuggested
Network securityCreate
Data protectionSuggested

AI recommends evidence for 3 open controls, and flags what is still missing.

Create from standard template
PolicyAssessmentCharter
+Security policy+Risk register+Continuity plan

Get the evidence you need

The AI recommends which evidence answers each Sri Lanka BSS control, ready to confirm.

See what's missing

Gaps and missing artifacts surface on their own, not the week of the audit.

Create from templates

Spin up policies, assessments and charters from standard templates, then tailor them to your scope.

Collected once, reused

One artifact satisfies this framework and every other it maps to.

Get Sri Lanka BSS-ready on your own stack.

Demos are scoped to your frameworks. Pick a slot and we'll run Sri Lanka BSS live.