Marketpips
ADVERTISEMENT
  • Home
  • Banking
  • Investing
  • Insurance
  • Retirement
  • Taxes
Marketpips
No Result
View All Result
FDIC cyber risk exams need work: Inspector General

FDIC cyber risk exams need work: Inspector General

admin by admin
February 2, 2023
in Banking
0 0
0
0
SHARES
1
VIEWS
Share on FacebookShare on Twitter
ADVERTISEMENT

WASHINGTON — The Federal Deposit Insurance Corporation’s Office of Inspector General issued a report Wednesday detailing deficiencies in the FDIC’s cybersecurity risk mitigation program.

The inspector general identified a number of problems with the FDIC’s program for examining member banks’ Internet technology risks, also known as InTREx, urging the agency to “take steps to ensure that its examiners evaluate and address effectively address IT and cyber risks during IT exams”.

Wednesday’s report identified weaknesses both in the way the agency prepares its inspection staff and in the agency’s own hazard inspection procedure. The inspector general found the FDIC’s InTREx program to be out of date and said it did not meet current federal guidelines in three of its four IT exam modules. The report criticized the regulatory agency for failing to communicate with the inspector general when making updates to its testing schedule, something required by the agency’s watchdog.

The Federal Deposit Insurance Corporation’s Office of Inspector General found that the agency had some shortcomings in implementing a cybersecurity risk screening program it had developed for banks under its jurisdiction.

Bloomberg News

In addition to updating its program, the office criticized the FDIC for failing to ensure its employees follow written procedures. Their report says that the banking regulator did not closely review IT working papers to ensure accurate results and that it needs to better train its employees on compliance with IT risk examination procedures.

“FDIC examiners did not complete the necessary InTREx examination procedures and decision factors to support the examination findings and URSIT scores,” the office stated.

The office also criticized the agency’s own examination procedures, saying they lacked clarity and led examiners to submit “inconsistent and untimely” IT examinations.

The report said the FDIC should provide more guidance to inspection personnel on reviewing threat information so they are up-to-date on relevant emerging cyberthreats. The report also noted that the regulator is not using all available tools to improve its InTREx program and is not building proper performance metrics to measure its progress in examining banks’ IT risks.

The inspector general’s office provided 19 recommendations to the FDIC, including generally updating its IT examination program, informing examiners of the need to adhere to written procedures and deadlines, and ensuring that examiners are kept up to date on emerging cyber threats. They also recommended that the agency review and correct IT exams identified as deficient and use them as a teaching tool to ensure that examiners adhere to the written rules.

The report also recommends that the FDIC review IT problem reviews and take corrective action as necessary, and provide employees with new InTREx training to promote consistent and compliant risk assessments. The inspector general suggested that the FDIC consider using a tool for analyzing unstructured test data, AlphaRex, which the FDIC developed in 2017, to improve test quality. Finally, the report recommended that the FDIC create a self-assessment rubric to measure the effectiveness of its InTREx assessments.

After agreeing with 16 of the inspector general’s 19 recommendations and partially agreeing with three, the FDIC proposed to take corrective action by December 31, 2023, actions that the inspector general said satisfied 14 violations. However, the office says that the FDIC’s proposed corrective actions for the remaining 5 issues were not satisfactory, meaning the two agencies must continue to work to resolve these five deficiencies moving forward.

Those unresolved issues include the inspector general’s request that the FDIC establish established examination targets and a rubric to measure the effectiveness of InTREx toward them, improved data collection, corrective actions to address past weaknesses, and internal control measures to compel examiners to comply with established InTREx policy.

Tags: cyberexamsFDICGeneralInspectorRiskwork
ADVERTISEMENT

Related Posts

ABA, associations: CFPB must publish data on credit card fee regulation
Banking

ABA Report: Consumers Manage Credit Well Despite Continued Headwinds

March 29, 2023
It is time to implement the law that prohibits excessive compensation of bankers
Banking

It is time to implement the law that prohibits excessive compensation of bankers

March 29, 2023
NPCI recommends an interchange fee of up to 1.1% on UPI transactions over ₹2,000 via PPI
Banking

NPCI recommends an interchange fee of up to 1.1% on UPI transactions over ₹2,000 via PPI

March 29, 2023
FHFA Reduces Combined Values ​​Fee After Protest
Banking

Americans expect slower growth in home prices in 2023

March 29, 2023
BM Technologies revolutionizes its C-suite
Banking

BM Technologies revolutionizes its C-suite

March 29, 2023
Personal loans continue to drive credit expansion, says RBI
Banking

Personal loans continue to drive credit expansion, says RBI

March 29, 2023
Next Post
TaxProf Blog

TaxProf Blog

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • ABA Report: Consumers Manage Credit Well Despite Continued Headwinds March 29, 2023
  • Why you should use rent receipts as a landlord March 29, 2023
  • It is time to implement the law that prohibits excessive compensation of bankers March 29, 2023
  • Lecciones sobre el sesgo de comportamiento: los mercados de valores de COVID-19 March 29, 2023
  • NPCI recommends an interchange fee of up to 1.1% on UPI transactions over ₹2,000 via PPI March 29, 2023

Categories

  • Banking (1,097)
  • Insurance (612)
  • Investing (1,158)
  • Retirement (319)
  • Taxes (1,008)
ADVERTISEMENT
Marketpips

Follow us on social media

Categories

  • Banking
  • Insurance
  • Investing
  • Retirement
  • Taxes

Recent News

  • ABA Report: Consumers Manage Credit Well Despite Continued Headwinds
  • Why you should use rent receipts as a landlord
  • It is time to implement the law that prohibits excessive compensation of bankers
  • Home
  • Contact
  • About us
  • Privacy Policy

© 2023 Marketpips.com. All Copyright Reserved

No Result
View All Result
  • Home
  • Banking
  • Investing
  • Insurance
  • Retirement
  • Taxes

© 2023 Marketpips.com. All Copyright Reserved

Welcome Back!

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In