January 04, 2007
What Are Those Examiners Thinking?
Check out the Winter edition of FDIC's Supervisory Insights, released Jan. 3, 2007. Highlights of this issue include:
- Creating an effective incident response program to mitigate a data security breach;
- Understanding Commercial Real Estate Lending nationwide -- as well as tips for best practices for identifying, monitoring and controlling risk in CRE concentrations.
- Combating unfair and deceptive practices -- and how examiners identify and address these violations; and
- Reviewing recent USA PATRIOT Act changes and the types of BSA-related violations bank examiners are currently citing.
Link: http://www.fdic.gov/news/news/press/2007/pr07001.html
(ag) Jan. 4, 2007, in FDIC/Examination
January 4, 2007 in Examination | Permalink | Comments (0) | TrackBack
Exam Heads Up: Full Compliance Required for FFIEC Authentication Requirements
Examiners will be checking for compliance with the FFIEC Guidelines for Authentication in an Internet Banking Environment which were fully effective Dec. 31, 2006. Each of the Federal Banking Agencies sent out their own announcements of these new requirements in Oct. 2005 -- plenty of lead-time to implement them, but now the compliance examiners will get serious. These measures offer additional protection from identity theft for banks and their customers.
Key components of the new requirements:
- Risk assessment
- Customer education
- A statement that single-factor authentication will no longer be adequate for high-risk transactions involving access to customer information or funds transfers.
Link to FFIEC Announcement: http://www.ffiec.gov/press/pr101205.htm
FFIEC Guidance: http://www.ffiec.gov/pdf/authentication_guidance.pdf
FDIC FIL: http://www.ffiec.gov/ffiecinfobase/resources/info_sec/2006/fdi-fil-103-2005.pdf
OCC: http://www.ffiec.gov/ffiecinfobase/resources/info_sec/2006/occ-bul_2005-35.pdf
FRB, OTS, and NCUA have similar announcements.
(ag) Jan. 4, 2007, in Examination, Federal Banking Agencies, Identity Theft, Internet Banking
January 4, 2007 in Examination, Federal Banking Agencies, Identity Theft, Internet Banking | Permalink | Comments (0) | TrackBack