By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Private Banks RankingPrivate Banks Ranking
Notification Show More
Latest News
4 Moderate-Risk, Long-Term Investments - NerdWallet
4 Moderate-Risk, Long-Term Investments – TBT
Personal Finance
Morning Bid: Fed’s hawkish pause keeps pressure on markets
Business
Airline SAS assesses final bids for its bail-out from bankruptcy
Banking
Goldman CEO dismisses calls to end ties to fossil-fuel firms
Goldman CEO dismisses calls to end ties to fossil-fuel firms
Banking
Low CRE Global Market Liquidities Are Likely a Result of Loss Aversion
Aa
  • Finance
  • Business
  • Banking
  • Investing
  • ETFs
  • Mutual Fund
  • Personal Finance
  • 2022 RANKING
Reading: FDIC cyber risk examinations need work: Inspector general
Share
Private Banks RankingPrivate Banks Ranking
Aa
  • Finance
  • Business
  • Banking
  • Investing
  • ETFs
  • Mutual Fund
  • Personal Finance
  • 2022 RANKING
Search
  • Finance
  • Business
  • Banking
  • Investing
  • ETFs
  • Mutual Fund
  • Personal Finance
  • 2022 RANKING
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Private Banks Ranking > Blog > Banking > FDIC cyber risk examinations need work: Inspector general
Banking

FDIC cyber risk examinations need work: Inspector general

By Private Banks Ranking 8 months ago
Share
5 Min Read
FDIC cyber risk examinations need work: Inspector general
SHARE

WASHINGTON — The Office of Inspector General for the Federal Deposit Insurance Corp. issued a report Wednesday detailing shortcomings in the FDIC’s cybersecurity risk mitigation program.

The inspector general identified a number of issues with FDIC’s program for Internet Technology risk examination at member banks — also known as InTREx — urging the agency “to take actions to ensure that its examiners effectively assess and address IT and cyber risks during IT examinations.”

Wednesday’s report identified weaknesses both in how the agency prepares its examination staff and in the agency’s risk examination procedure itself. The inspector general found FDIC’s InTREx program to be outdated, saying it fell short of current Federal guidance in three of its four IT examination modules. The report criticized the regulatory agency for not communicating with the inspector general when updates were made to its examination program, something required by the agency’s watchdog.

The Federal Deposit Insurance Corp.’s Office of the Inspector General found that the agency had some shortcomings in its implementation of a cybersecurity risk examination program it had developed for banks under its jurisdiction.

Bloomberg News

In addition to updating its program, the office criticized FDIC for failing to ensure its employees follow written procedures. Its report said the banking regulator did not closely review IT workpapers to ensure precise results, and that it needs to better train its employees on adherence to IT risk examination procedures. 

“FDIC examiners did not complete InTREx examination procedures and decision factors required to support examination findings and URSIT ratings” the office stated.

See also  FDIC plans to hit big banks with fees to refill Deposit Insurance Fund

The office also criticized the agency’s examination procedures themselves, saying they lacked clarity, and led examiners to submit “inconsistent and untimely” IT examinations. 

The report said that FDIC needs to provide more guidance to examination staff around reviewing threat information so they are up-to-date on relevant emerging cyber threats. The report also noted that the regulator is not utilizing all available tools to improve their InTREx program, and fails to construct adequate performance metrics to measure its progress in examining banks’ IT risks.

The inspector general office provided 19 recommendations to the FDIC, including that they generally update their IT examination program, inform examiners of the need to adhere to written procedures and deadlines, and ensure that examiners stay up to date on emerging cyber threats. They also recommended that the agency review and correct those IT examinations identified as deficient, and use them as a teaching tool to ensure examiners are adhering to written rules.

The report also recommends that the FDIC review problem IT examinations and take corrective actions as necessary, and provide employees with new InTREx training to promote consistent and compliant risk assessments. The inspector general suggested the FDIC look into using a tool to conduct analysis of unstructured data from examinations, AlphaRex — which FDIC developed in 2017 — to improve examination quality. Finally, the report recommended the FDIC create a self-evaluating rubric for measuring the effectiveness of its InTREx assessments.

After concurring with 16 of the inspector general’s 19 recommendations and partially concurring with three, the FDIC proposed taking corrective actions by Dec. 31, 2023 — actions that the inspector general said satisfied 14 infractions. However, the office says the FDIC’s proposed corrective actions for the remaining 5 issues were unsatisfactory, meaning the two agencies must continue working at resolving these five deficiencies in the future. 

See also  Dollar General Launches Mobile Health Clinic Pilot

Those unresolved issues include the inspector general’s request that FDIC establish set examination goals, and a rubric to measure InTREx’s effectiveness towards them, enhanced data collection, corrective actions to fix past inadequacies, and internal control measures to compel examiners’ adherence to stated InTREx policy.

Source link

You Might Also Like

Airline SAS assesses final bids for its bail-out from bankruptcy

Goldman CEO dismisses calls to end ties to fossil-fuel firms

SEC, FINRA each fine Goldman $6M for sending inaccurate data

Hedge funds boost bearish bets on US equities amid market jitters

Judge approves TD Bank’s $8.7 million settlement with NYPD officers

TAGGED: cyber, examinations, FDIC, General, Inspector, Risk, Work
Private Banks Ranking February 1, 2023
Share this Article
Facebook Twitter Email Print
Share
Previous Article AI and Robots Come to Construction Wood Reclamation
Next Article Exclusive: Grupo Mexico clears major Citi deal hurdle with $5 bln debt package -sources
Leave a comment

Leave a Reply Cancel reply

You must be logged in to post a comment.

Private Banks RankingPrivate Banks Ranking
Follow US

© 2022 Private Banks Ranking- 85 Great Portland Street,W1W 7LT, London. All Rights Reserved.

  • Blog
  • Contact
  • Privacy Policy
  • Terms & Conditions
Join Us!

Subscribe to our newsletter and never miss our latest news, podcasts etc..

I have read and agree to the terms & conditions
Zero spam, Unsubscribe at any time.

Removed from reading list

Undo
Welcome Back!

Sign in to your account

Lost your password?