The Agency, within the framework of regulation and development of the banking sector, exercises control and supervision over the activities of second-tier banks and their affiliates, Development Bank of Kazakhstan JSC, banking conglomerates, mortgage companies, subsidiaries of the national managing holding in the field of agriculture, the national mail operator, credit bureaus, interim administrations and liquidation commissions of banks, by focusing supervisory resources on areas most at risk.
Performance of financial sector:
The following technologies and standards are used to protect data: OAUTH 2.0 for identification and authentication, the JWT (JSON Web Token) access key standard, the TLS cryptographic data transfer protocol and the use of dedicated data transfer channels. This approach allows to ensure the protection of transmitted data and transactions.
No, access to client data is possible only with their consent within the framework of the services provided to them. Records of consents are maintained centrally by the Operator. The client can view the list of his consents at any time and withdraw consent if it is necessary. Access to data with the client’s consent is determined by tokens issued with registering consent. Tokens are verified on every data request.
Open Banking - The concept of data exchange of clients between third-party financial institutions with clients’ consent. The exchange is facilitated through Application Programming Interfaces (APIs)