ABA Banking Journal
No Result
View All Result
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive
SUBSCRIBE
ABA Banking Journal
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive
No Result
View All Result
No Result
View All Result
Home Cybersecurity

Cybersecurity Efforts Get a Boost with New FSSCC profile

November 26, 2018
Reading Time: 2 mins read

By Julie Knudson

Banks face significant operational risk challenges in the current climate, with a mix of cybersecurity threats vying for attention against increasing compliance mandates around risk assessment and mitigation. “We’re in a very complex regulatory landscape,” says Josh Magri, SVP at BITS, the Bank Policy Institute’s technology division. With each of the nine federal financial-sector regulators, along with other agencies at the state level, appropriately focused on cybersecurity, Magri says, “there hasn’t been a standardization of the way they talk about it, or issue regulations or develop guidance about it.”

Learn more about the free FSSCC cybersecurity profile at aba.com/cyberprofile.
Help may be on the way to simplify banks’ response to cyber confusion. Over the last two years, a Financial Services Sector Coordinating Council work group composed of global, regional, midsize and community banks—along with consultants and representatives from several key agencies—created a survey designed to help a financial services firm’s leaders determine the potential effects of a cyber event at their institution. “By the time you get through the survey questions, your impact is identified,” says Denyette DePierro, VP in ABA’s Center for Payments and Cybersecurity, who helped lead the profile’s development efforts.

Built around and keyed to the Cybersecurity Framework developed by the National Institute for Standards and Technology, the new profile also brings together the current principles around cybersecurity—federal, significant state and some international as well. “We took all these different requirements and we interpreted them and put them into a single common framework,” says Nadya Bartol, associate director at BCG Platinion, a division of the Boston Consulting Group. Over the course of their discussions within the industry, the work group saw that banks and regulators alike were faced with lean staffing and a lot to do. “The purpose of the profile is to increase efficiency and improve security by redirecting people and resources where they matter most,” says Bartol.

DePierro describes the profile as the first portion of a two-part analysis that “results in a common approach to cybersecurity compliance across regulators and across the financial companies, based on a credible cybersecurity framework.” The profile comprises a nine-question assessment that determines the potential impact of a cyber event happening at an individual bank, whether it’s an international, national, regional, or local community institution. “Once the impact level is determined, the bank is directed to those portions of the framework most relevant to the institution’s risk, size and business model,” DePierro says.

Like many banks, the team at First United Bank and Trust in Oakland, Md., relies heavily on third parties. Accurately assessing the cybersecurity position of each is a daunting task and the lack of standardization makes it even more difficult. “How are you absolutely sure your vendors are doing what they’re supposed to do?” asks Joyce A. Flinn, VP of information security and the bank’s disaster recovery officer. The new profile will help to put all that information into one understandable structure. “As a community bank, I can say, ‘What level are you at in this framework and have you met all the requirements of that level?’” Flinn says. She anticipates that being able to apply the same criteria across all of the bank’s vendors will not only provide a better assurance of everyone’s cybersecurity posture, but will also allow her team to deploy its security resources more effectively.

Tags: CybersecurityRisk management
ShareTweetPin

Author

Julie Knudson

Julie Knudson

A freelance writer in the Pacific Northwest, Julie Knudson is a frequent contributor to the ABA Banking Journal.

Related Posts

Report: Average data breach cost for financial sector tops $6M

ABA, associations release best practices for sharing sensitive data with regulators

Compliance and Risk
July 23, 2026

ABA joined other financial sector associations to release a guide for financial institutions in determining which data shared with federal regulators should be subject to heightened security standards, as the banking agencies recently announced new policies for handling...

Federal agencies warn of scams following hurricanes

House Republicans propose whole-of-ecosystem approach to combat fraud, scams

Compliance and Risk
July 22, 2026

Republicans on the House Financial Services Committee published a report calling for a coordinated national strategy to combat financial fraud and scams, saying that scams begin long before a customer contacts their bank and require stronger collaboration across...

Survey: Banks boosting cybersecurity due to AI while also investing in technology

ABA offers improvements for FSB’s ‘sound practices’ in AI adoption

Compliance and Risk
July 22, 2026

The Financial Stability Board’s draft list of 12 recommendations to guide the adoption of artificial intelligence by financial institutions is useful, but the document could use some further tweaks to make the recommendations even more effective, ABA said.

ABA, associations propose improvements to federal data privacy law

Banking agencies promise new approach for handling sensitive information

Compliance and Risk
July 16, 2026

The Federal Reserve, FDIC and OCC announced a “coordinated approach” for handling sensitive information used in bank examinations, including a new pledge to notify banks about data breaches that threaten to expose that information.

Trump orders creation of AI ‘action plan’

White House announces cybersecurity clearinghouse for software patches

Compliance and Risk
July 15, 2026

The White House has announced a cybersecurity “clearinghouse” that would coordinate scanning for software vulnerabilities and the distribution of vulnerability patches.

ABA, BPI support proposed process to create drone no-fly zones

ABA, BPI support proposed process to create drone no-fly zones

Compliance and Risk
July 7, 2026

In a joint letter to the FAA, ABA and BPI said that unauthorized unmanned aircraft activity near financial institution sites can create “obvious and legitimate risk” to physical security as well as cybersecurity, as the technology can be...

NEWSBYTES

Bankers: Local lending at risk if stablecoin payment of interest loophole isn’t closed

July 28, 2026

ABA, associations ask agencies to commit to reproposing conflicting Genius Act rules

July 28, 2026

Growth in home prices ticked up in May

July 28, 2026

SPONSORED CONTENT

Why Your Systems Keep Slowing Down — and What to Do About It

Examiners Are Now Looking at Your Non-Core Systems

June 11, 2026
Your Floorplan Audit and Your Credit Decision Are Weeks Apart. That Gap Has a Price.

Your Floorplan Audit and Your Credit Decision Are Weeks Apart. That Gap Has a Price.

June 1, 2026
A Modern Blueprint for Serving High-Net-Worth Families

A Modern Blueprint for Serving High-Net-Worth Families

May 28, 2026
Why Your Systems Keep Slowing Down — and What to Do About It

AI Is in Your Bank. Is Your Cloud Contract Governing It?

May 20, 2026

PODCASTS

Podcast: Tactics for meaningful strategic planning

July 28, 2026

Podcast: Why it might be time to revisit a key FDIC ratio

July 23, 2026

Is Your Bank’s Wealth Business Built to Last?

July 23, 2026

American Bankers Association
1333 New Hampshire Ave NW
Washington, DC 20036
1-800-BANKERS (800-226-5377)
www.aba.com
About ABA
Privacy Policy
Contact ABA

ABA Banking Journal
About ABA Banking Journal
Media Kit
Advertising
Subscribe

© 2026 American Bankers Association. All rights reserved.

No Result
View All Result
  • Topics
    • Ag Banking
    • Commercial Lending
    • Community Banking
    • Compliance and Risk
    • Cybersecurity
    • Economy
    • Human Resources
    • Insurance
    • Legal
    • Mortgage
    • Mutual Funds
    • Payments
    • Policy
    • Retail and Marketing
    • Tax and Accounting
    • Technology
    • Wealth Management
  • Newsbytes
  • Podcasts
  • Magazine
    • Subscribe
    • Advertise
    • Magazine Archive
    • Newsletter Archive
    • Podcast Archive
    • Sponsored Content Archive

© 2026 American Bankers Association. All rights reserved.