Network Security

Cybersecurity Compliance Update

FinTech innovations worry federal regulators while state officials create a new enforcement team. The US Office of the Comptroller of the Currency (OCC) is out with new guidance that warns banks about the risks and rewards of FinTech and related innovations. Meanwhile, New York financial regulators have launched a cybersecurity compliance division responsible for enforcing the state’s year-old cybersecurity regulations.

Federal Actions

Twice each year, the OCC reports on trends in the US financial sector that could be a “strategic risk” to the financial health and stability of banks. The most recent guidance includes a specific section on the risks associated with the rapid rise of FinTech and other innovations that complicate the way banks operate.

Not only does the OCC acknowledge tech-related security risks, but regulators also nod to the business risks of failing to adapt to changing market conditions that drive innovation such as customer expectations and the popularity of mobile banking: “Operational risk is elevated as banks adapt to a changing and increasingly complex operating environment.

Key drivers for operational risk include persistent cybersecurity threats as well as innovation in financial products and services, and increasing use of third parties to provide and support operations that are not effectively understood, implemented, and controlled. “In advising banking executives on what steps to take, the OCC notes: “Banks that do not assess business relevancy and impacts from technological advancement or innovation, or are slow adopters to industry changes, may be exposed to increasing strategic risk.”

State Actions

On the state level, New York’s Department of Financial Services (DFS) has created a Cybersecurity Division to enforce the State’s first-in-the-nation cybersecurity regulations adopted in 2017. The new unit will focus on protecting consumers and industries from cyber threats, a first for a state banking or insurance regulator.

“As technology changes the financial services industry, regulation must evolve, and DFS is evolving to meet the challenges and opportunities of the new landscape, to protect consumers, safeguard the industry, and encourage innovation,” noted DFS Acting Superintendent Linda Lacewell said.

New York’s action comes at a time when numerous states have strengthened their data privacy and security laws in the wake of continuing security breaches and ground-breaking privacy laws in Europe and California.

Ron Samson

Recent Posts

What Apps Are Used in SIEM and How They Enhance Cybersecurity

Security Information and Event Management (SIEM) systems have become essential tools in today’s cybersecurity landscape.…

3 weeks ago

What You Need to Know About SIEM Integration with Your Existing Infrastructure

Today, organizations need a cybersecurity tool that will offer detection and response, among other services,…

4 weeks ago

SIEM Providers for Small Businesses: Affordable and Effective Options

The threat vectors in cybersecurity are increasing, and cyber attackers are targeting small businesses due…

4 weeks ago

What Affects EDR Pricing? Key Factors to Consider When Selecting Endpoint Protection

Sophisticated cyber threats have driven the demand for Endpoint Detection and Response (EDR) software, making…

4 weeks ago

The Benefits of EDR Software: A Deep Dive into Proactive Threat Detection

With cyber threats increasing in sophistication, businesses are under pressure to try and stay ahead…

1 month ago

EPP vs EDR: What You Need to Know About Endpoint Protection in 2025

Cybersecurity has become an ever-critical concern for businesses of all sizes. In 2025, as remote…

1 month ago