The National Institute of Standards and Technology has published a new guide for companies interested in participating in cyber threat information sharing. The publication — a voluntary resource — offers guidelines for establishing the goals and scope of information sharing initiatives, identifying cyber threat information sources, controlling the publication and distribution of threat information and working within the existing sharing communities. The guidance is consistent with the Financial Services Information Sharing and Analysis Center’s practices for information sharing.
OCC removes reputational risk from bank exams, guidance
The OCC announced it will no longer examine banks for reputational risk and will remove references to such risk from its Comptroller’s Handbook booklets and guidance.