Complete MAS TRM · 357 Obligations

Every TRM Duty, Cited and Ready.

All 357 TRM obligations, each addressed, classified, and quoted byte-exactly, with the page evidence that proves it. The register itself, ready to build on.

$4,800one-time

One-Time Purchase · Single-Org License · Enterprise via Private Offer

GuidanceMAS TRM
MAS.TRM.2021.Sec13.1.1.p45.OBL1
VerbatimSHOULDrecommendation
The FI should establish a process to conduct regular vulnerability assessment (VA) on their IT systems to identify security vulnerabilities and ensure risk arising from these gaps are addressed in a timely manner.

MAS TRM Guidelines, Section 13.1.1, p. 45 (2021)

ActorFI
ActionEstablish a process to conduct regular vulnerability assessments
ObjectIT systems, to identify security vulnerabilities and address the risks in a timely manner
Tagscyber-securityvulnerability-assessment
Cyber Security Assessment · Vulnerability Assessment · p.45medium severitysupervisory sanction

Non-adherence may attract MAS supervisory action; the TRM Guidelines set out the standards MAS expects financial institutions to meet.

Source · Technology Risk Management Guidelines

One record, straight from the full dataset

Every TRM Theme

The Complete MAS TRM Guidelines, Ready to Cite.

All 15 Themes, One Register

From board oversight to IT audit, every TRM theme arrives in one consistent schema. Nothing falls between owners, nothing gets read twice.

357 Duties, Cited to the Page

Each obligation is quoted word for word and page-anchored, so a TRM exam finding traces back to the exact clause in a single step.

Stand It Up the Same Day

The months of reading the Guidelines and re-keying every duty are already done. Load the register and start assessing, not transcribing.

Evidence on Every Duty

MAS Approved

An annotated capture of the source page ships with every obligation, all 357 of them. When the examiner asks, you show them the page.

Product Details

What You License.

Coverage
357 obligations across all 15 TRM themes, from board oversight to IT audit.
Instrument
MAS Technology Risk Management Guidelines (2021).
Schema
42 documented columns, measured from the shipped file. Source anchors, byte-exact verbatim text, the reading window, and deontic classification.
Structure
On every record, the parsed duty with actor, action, modal, and conditions, plus regulatory context, hierarchy, and page-anchored citations into the official MAS PDF.
Evidence Captures
357 annotated source-page captures, one per obligation, each showing the duty highlighted on the page the regulator printed it on. Reproduced with MAS's written permission.MAS Approved
Formats
Excel workbook, JSON, and CSV, plus the evidence capture pack. Official source document linked, not redistributed.
Updates
Point-in-time and versioned. The licence is perpetual for the edition you purchase, with no updates. A new edition, when published, is a separate product sold separately.
License
Single-organization commercial licence, one-time purchase, delivered by instant download.

Who It Is For

Bank and fintech compliance teams, technology risk officers, internal audit, and the consultancies that advise them. It suits any institution that must evidence its posture against MAS technology risk expectations.

Why It Exists

Published regulation is authoritative but unstructured. Hundreds of duties sit buried in prose across a long PDF. Building a usable, cited register by hand is slow, fragile and hard to prove. This dataset does that work once, correctly, and ships it as structured data.

Expected Business Outcomes

The Register, Finished

Start from a complete, cited obligation set your team reviews rather than builds.

Proof Built In

Every record quotes the regulator byte-exactly and cites the exact pages of the published PDF. A certification script in the folder re-proves the whole package.

Audit-Ready Provenance

Every duty is quoted verbatim and page-anchored, so a finding traces to the source in one step.

Lower Key-Person Risk

The regulator's expectations are captured as structured data, not held in one analyst's spreadsheet.

The whole of the TRM Guidelines as a defensible register, so you start from finished, cited obligations rather than a blank page.

In Every Format

Excel

Cover, Obligations, Requirements and Checklist on intelligence tiers, Data Dictionary, Methodology, Change Log

JSON

Versioned, checksummed envelope for pipelines and AI

CSV

Flat table for spreadsheets, BI, and SQL

Evidence Pack

MAS Approved

One annotated source-page capture per obligation, stamped with its ID and citation

Official regulator source document linked, not redistributed.

Licensed Under the ProfytAI Commercial Data License · View Licensing Terms

What It Solves.

A Blank-Page TRM Register

Standing up a Technology Risk Management register from the Guidelines is weeks of reading and re-keying. This is the finished, cited set.

Themes Reviewed in Isolation

All 15 themes, from board oversight to IT audit, arrive in one consistent schema so nothing falls between owners.

Findings You Cannot Trace

Every obligation is quoted verbatim and page-anchored, so a TRM exam finding traces to the exact clause in one step.

Interpretation Bottlenecks

Regulatory intelligence on every record explains what a duty requires and how teams implement it, without waiting on one analyst.

A Real Record

A TRM Record, in Full.

A real record pulled straight from this dataset. The regulator's exact words beside the parsed duty, its classification, and the page-anchored citation, on every one of the 357.

Get 20 Records in the Free Sample

MAS.TRM.2021.Sec5.1.1.p15.OBL1

IT Project Management and Security-by-Design
SHOULDmedium priorityMAS TRMp.15
Source TextVerbatim · Guidance
A project management framework should be established to ensure consistency in project management practices, and delivery of outcomes that meets project objectives and requirements.
In Plain Language

A project management framework should be established that delivers consistent project management practice and outcomes meeting project objectives and requirements.

Parsed Duty
ActorFI
Actionestablish a project management framework
Objectproject management framework
Structured FieldsDeontic · recommendation

Deontic

recommendation

Type

Process

Strength

Recommended

Frequency

Ongoing

Status

In Force

Sanction

supervisory

IT & Technology RiskProject Management

MAS TRM, Section 5.1.1, p. 15 (2021)

Consequence. Non-adherence may attract MAS supervisory action; the TRM Guidelines set out the standards MAS expects financial institutions to meet.

Source · Technology Risk Management Guidelines

The record shows the key fields for readability. Foundation delivers the register layer on every record: verbatim, normalized, parsed, and context, each cited to the page.

Compare

Start Small, or Take the Whole Perimeter.

Every tier is the same structured data, cited the same way. The only question is how much of the Singapore technology-risk perimeter you need today.

You Are HereMAS TRM Foundation
$4,800
Obligations
357 (all TRM)
TRM Themes
All 15
Parsed Duty & Context
Evidence Captures
One per obligation
Regulatory Intelligence
Fulfillment (Requirements + Checklists)
Policy Statements
License
One-time
Formats
Excel · JSON · CSV
Compliance Intelligence
$15,000
Obligations
357 (all TRM)
TRM Themes
All 15
Parsed Duty & Context
Evidence Captures
One per obligation
Regulatory Intelligence
Fulfillment (Requirements + Checklists)
Policy Statements
License
One-time
Formats
Excel · JSON · CSV
View Compliance Intelligence
Policy Suite
$28,000
Obligations
357 (all TRM)
TRM Themes
All 15
Parsed Duty & Context
Evidence Captures
One per obligation
Regulatory Intelligence
Fulfillment (Requirements + Checklists)
Policy Statements
License
One-time
Formats
Excel · JSON · CSV
View Policy Suite

The Entire MAS TRM Guidelines, on Day One.

357 obligations across 15 themes, cited and structured. Buy the license, or prove the depth with the free sample first.

SampleConsultationRegisterPlatformSubscription