Biden hosts cybersecurity summit, indicates strong need for authentication mechanisms
President Joe Biden Wednesday met with several private sector stakeholders to discuss the need for expanding cybersecurity protections, enhancing critical infrastructure resilience, and cultivating cybersecurity talent across all sectors of the economy. Financial institutions are currently supervised by entities that regularly examine technical safeguards and federal financial regulators have already started a transition towards multi-factor authentication as a best practice at financial institutions.
Of note, the Federal Financial Institutions Examination Council (FFIEC) issued new guidance that provides financial institutions with examples of effective authentication and access risk management practices for customers, employees, and third parties accessing digital banking services and information systems.
The guidance highlights the current cybersecurity threat environment and replaces previous documents issued in 2005 and 2011.
In addition, the FFIEC recently retired its Operations Booklet – originally published in 2004 – and replaced it with a much more extensive Architecture, Infrastructure, and Operations (AIO) Booklet in its Information Technology (IT) Examination Handbook.
The AIO Booklet sets forth expectations for financial institutions to manage evolving technologies. For more information on updates from the FFIEC, the NAFCU Compliance Team has issued previous blog posts to outline the new AIO Booklet and detail the authentication and access guidance.
Add to Calendar 2021-10-21 14:00:00 2021-10-21 14:00:00 FFIEC IT Examination Handbook Update - Deconstructing the Architecture, Infrastructure & Operations Booklet If you have ever wanted to know what’s new in the Federal Financial Institutions Examination Council (FFIEC) IT Examination Handbook, this is the session for you. In this webinar we will deconstruct the Architecture, Infrastructure & Operations (AIO) booklet by comparing the AIO booklet to the Operations booklet which it replaces. We dig into what’s new to AIO, including how the principles, design and content could impact your credit union during future IT exams. If you are a CISO, ISO, responsible for IT governance, or just want to stay on top of changes to IT regulatory guidelines, this session is for you. Key Takeaways Discover the key differences between the AIO booklet and the Operations booklet it replaces. Identify new principles in the AIO booklet as they relate to IT safety and soundness. Compare and contrast principles and concepts that overlap with the IT Security booklet. Review ideas on how to implement the AIO into your credit union’s Information Security Program. Purchase Now$295 Members | $395 Nonmembers (Additional $50 for CD)One registration gives your entire team access to the live webinar and on-demand recording until October 21, 2022.Go to the Online Training Center to access the webinar after purchase » Who Should Attend? NAFCU Certified Compliance Officers (NCCOs) NAFCU Certified Risk Managers (NCRMS) Chief Executive Officers Chief Financial Officers Chief Information Officers Chief Technology Officers Compliance, risk, and audit titles Education Credits NCRMs will receive 1.0 CEUs for participating in this webinar NCCOs will receive 1.0 CEUs for participating in this webinar CPA credit information is below; recommended 1.0 CPE credits. CPA Certification Credit Information Reviewer: Josie Collins, Associate Director of Education, NAFCU Learning Objectives: See key takeaways Program Level: Basic Prerequisites Needed: None Advance Preparation Needed: None Delivery Method: Group Internet-Based Recommended CPE Credits: 1.0 credits Recommended Field of Study: Regulatory Ethics – Technical About Our Webinars Our webinars are streamed live from NAFCU headquarters near Washington, D.C. Your audio/video feed of the presenters includes presentation slides and downloadable handouts. You can easily submit your questions to the presenters at any time during the live broadcast, with no dialing over the phone! The audio and video stream directly through your computer. Web NAFCU email@example.com America/New_York public
FFIEC IT Examination Handbook Update - Deconstructing the Architecture, Infrastructure & Operations Booklet
Credits: NCRM, NCCO, CPE
Strategy, FinTech, Web/Tech, Technology, Cloud Computing
Get daily updates.
Subscribe to NAFCU today.