OPERATIONAL RISK

Cyber & Data Security

Prevention and risk mitigation are key components in every aspect of bank operations - the same holds true in the protection of customer data.

Cybersecurity is the prevention of damage to, protection of, and restoration of data, systems and processes. Cybersecurity has three main components, data security, user security, and infrastructure security.

Data security is the concepts or strategies used to keep data secure. Data security focuses on protecting personally identifiable information (PII) from unauthorized access as one would see during a cyber breach or other significant cyber incident.

Prevention and risk mitigation are key components in every aspect of bank operations - the same holds true in the protection of customer data.

Sector Initiatives

Sheltered Harbor

Sheltered Harbor promotes the stability and resiliency of the financial sector through industry-developed standards for protecting and recovering customer account data if a catastrophic event causes critical systems - including backups - to fail.

.BANK

.BANK is an evolution in relationship management, offering a trusted, verified, more secure, and easily identifiable location on the internet for your customers and your bank, regardless of size. .BANK provides a trustworthy stamp of approval for your online offerings.

Carnegie Endowment for International Peace

ICBA partnered with the Carnegie Endowment for International Peace and other industry experts to update “Cyber Resilience and Financial Organizations: A Capacity-building Tool Box.” Learn more about how your bank can leverage the tool box to create a more cyber resilient workplace.

Cyber and Data Security News

SEC’s Gensler to Congress: Securities laws apply to crypto industry

Sep 13, 2023 | NewsWatch Today
Securities and Exchange Commission Chair Gary Gensler told Congress that most crypto tokens and intermediaries are subject to U.S. securities laws despite the industry’s “wide-ranging noncompliance.”

FS-ISAC spotlights MinIO threat targeting corporate networks

Sep 13, 2023 | NewsWatch Today
The Financial Services Information Sharing and Analysis Center’s latest weekly risk summary covers an unknown threat actor exploiting vulnerabilities in the MinIO Object Storage system to remotely execute arbitrary code on vulnerable servers.