https://www.fintechfutures.com/wp-content/themes/fintech_child/assets/images/logo/fintech-logo-2.png
  • Home
  • News
  • Intelligence
    • Back
    • Features & Analysis
    • Interviews
    • Reports & Surveys
    • White Papers
    • Case Studies
    • Webinars
    • Podcasts
    • Videos
    • Library
    • Techwire
    • Browse
  • Publications
    • Back
    • Banking Technology Magazine
    • Subscribe to Banking Technology Magazine
    • Banking Technology Magazine Calendar
    • Daily News at Sibos
  • Content Hubs
    • Back
    • Diversity & Inclusion
    • Food for Thought
    • I’m Just Saying
    • The Heart of the Matter
    • ESG Comms Explained
    • State of Play
    • One More Thing
  • Videos
  • WTF? Podcast
  • Awards & Events
    • Back
    • Banking Tech Awards
    • Banking Tech Awards USA
    • PayTech Awards
    • PayTech Awards USA
    • All Events
  • Advertise
  • Jobs
  • More
    • Back
    • About us
    • Contact us
    • Advertising / Media Kit
    • FinTech Futures Newsletter
  • FinTech
  • BankingTech
  • PayTech
  • RegTech
  • WealthTech
  • LendTech
  • InsurTech
  • US Edition
    • Intl. Edition
Banking Technology
  • NEWSLETTER
  • Home
  • News
  • Intelligence
    • Back
    • Features & Analysis
    • Interviews
    • Reports & Surveys
    • White Papers
    • Case Studies
    • Webinars
    • Podcasts
    • Videos
    • Library
    • Techwire
    • Browse
  • Publications
    • Back
    • Banking Technology Magazine
    • Subscribe to Banking Technology Magazine
    • Banking Technology Magazine Calendar
    • Daily News at Sibos
  • Content Hubs
    • Back
    • Diversity & Inclusion
    • Food for Thought
    • I’m Just Saying
    • The Heart of the Matter
    • ESG Comms Explained
    • State of Play
    • One More Thing
  • Videos
  • WTF? Podcast
  • Awards & Events
    • Back
    • Banking Tech Awards
    • Banking Tech Awards USA
    • PayTech Awards
    • PayTech Awards USA
    • All Events
  • Advertise
  • Jobs
  • More
    • Back
    • About us
    • Contact us
    • Advertising / Media Kit
    • FinTech Futures Newsletter
  • Search
  • US Edition
    • Intl. Edition
  • newsletter
  • FinTech
  • BankingTech
  • PayTech
  • RegTech
  • WealthTech
  • LendTech
  • InsurTech
fintechfutures.com


How to fight cyber crime

  • Written by FinTech Futures
  • 20th October 2014
Nick Pollard is

Nick Pollard is senior director, professional services at Guidance Software

The recent nomination of the British Banker’s Association as an intelligence node and source of benchmarks and practices in the UK’s financial infrastructure, via CBEST, has pushed the role of the banking sector in detecting and remediating breaches into the spotlight, writes Nick Pollard.

Banks are formally plugged in to the intelligence community, for example, UK CERT and their peers, via CISP as both sources and consumers of intelligence. CBEST will use the latest threat intelligence so that defences can be put through their paces with tests resembling real-world incidents.

As with any collective pool of intelligence, organisations will get out what they put in. For security teams, a starting point for intelligence gathering is gaining a birds-eye level of visibility into anomalous or unusual activity where the data resides: at the endpoint. This can produce a clear picture of risk; from new threats to compromised accounts, back-channel communications and processes, suspicious patterns, commonalities and anomalies. Not only does this lay the foundation for improved intelligence on the origins and scope of an attack, it also provides for fast and efficient remediation and response to any breach.

The response plan 

Banks’ cyber response follows a generally accepted six phase pattern.  Each task should be invoked in a prepared IR plan within an agreed upon structure. Ultimately, senior management accountability is required  and is likely to be reinforced, including within the domain of Information Technology, within the short term.

The first post breach step is the technical identification of a compromise – identify and expose – and the invocation of the IR team. Gaining visibility into systems for indications of compromise is a critical, and as with any incident, speed is of the essence.  There are two ways proactively to validate cyber threats- endpoint security analytics and security automation:

  1. Endpoint Security Analytics: leveraging data from all servers and end-user devices, endpoint security analytics can give complete visibility of endpoint activities across the network, in order to detect anomalous behaviour, areas of potential risk, and security threats before damage can spread.
  2. Security Automation: integrating network-enabled endpoint cyber forensics tools with SIEM systems helps quickly to reveal and validate suspect or mutating software on any endpoint on the network. The cyber investigation tool should be able to work quickly across platforms, as speed is essential to finding and collecting actionable volatile data. 

Once a problem has been identified, the next step is triage. This requires identification of the potential harm, based on an appreciation of extent of the compromise, the ongoing capabilities and intent of an adversary.

Once a threat is triaged and recognised, an appropriate response can be formulated, both for containment and remediation (stages 4 and 5). The necessary experts can be identified and roles assigned from a personnel matrix, on the basis of a defined, process within the IR plan.  Sponsors will be from a variety of domains from IT remediation to legal and regulatory liaison and even marketing, who may be called upon to identify and notify potentially millions of customers. Forthcoming changes may require the apportionment of responsibilities to individuals deemed to be senior management to be revisited in the context of IR plans.

Collective Intelligence 

One existing requirement that the new CBEST may bring to the fore is the requirement to notify financial regulators of potential threats. That is, of potential threats and vulnerabilities notified under the framework that may then be recognized as applicable. This potentially adds to ‘Identify’  ‘Triage’ (stage 3) and even ‘Preparation’ (stage 1) workloads. If CBEST affords advance warning of an eventuality that “may occur in the foreseeable future, a firm should consider both the probability of the event happening and the severity of the outcome should it happen,” in order to decide on the need for notification. Early warning and intelligence may raise the requirement of notification at a very early stage indeed.

The fledgling intelligence sharing framework for banks is nonetheless valuable, given the corporate context. In fact, across the entire business world, a substantial proportion of the IT security community is concerned that they neither have internal intelligence of attacks, nor the means to communicate them. Recent data on this makes for salutary reading; a survey conducted by EMA suggests that a common frustration with IT security technology, shared by 36% of respondents, is that tools are unable to detect emerging threats or attacks. Nearly a third (29%) reported poor reporting for communication.

Therefore, in view of the concerns of IT security professionals the CBEST framework will help address some of the biggest  challenges – the invisibility of potential threats, or, as Rumsfeld had it, of a comparable intelligence problem ‘unknown unknowns.’ It pulls together the foundations for building a mature incident response plan; people, process and technology, providing intelligence and benchmarks including input from commercial and government external sources.  The insights that can be gained from institutions’ own systems and devices can help to inform this collective pool of intelligence and provide a route to faster and more efficient breach detection and remediation. The challenge will be to ensure that the organisation and pre-prepared plans can keep pace with accelerated threat intelligence and reporting.

Tags: Cybersecurity, Financial Crime & Fraud CBEST, crime, cyber crime Analysis, Industry Comment Worldwide

READ NEXT


  • The Co-operative Bank partners Onfido for customer onboarding solution
  • Oscilar LOGO
    Fraud and risk detection start-up Oscilar launches from stealth
  • Crypto exchange OKX readies for Hong Kong launch
  • FCA appoints two new joint executive directors for enforcement

Leave a comment Cancel reply

-or-

Log in with your FinTech Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Fintech Jobs


Related Content

  • PostFinance Switzerland picks FICO’s Falcon for fraud protection
  • Hanseatic Bank
    Hanseatic Bank to streamline transaction authentication with Netcetera
  • monese
    Monese partners Veriff to strengthen digital security
  • Stripe launches AI-based identity verification tool

Top stories

The hottest news this week

Click here to read

Upcoming events

Banking Tech Awards USA 2023

Find out more

PayTech Awards 2023

Find out more

Banking Tech Awards 2023

Find out more

PayTech Awards USA

Find out more

Webinars

Webinar: Digital lending 2.0 – fulfilling new customer expectations through technology

21st December 2022

Webinar: Achieving service excellence with Salesforce for retail banking – UMB Bank use case

21st December 2022

Webinar: From intuition to intelligence – fraud trends every risk leader must know for 2023

19th December 2022
view all

Fintech Jobs

White Papers

Case study: Powering corporate GSOCs with open-source intelligence

27th March 2023

IDC report: New data sources and innovative AI redefining the business of lending

5th January 2023

Guide: Life in 3D – using alternative data to power credit risk decisioning

5th January 2023
view all

Magazine

Banking Technology Magazine March 2023 issue out now

1st March 2023
view all

Reports & Surveys

Survey: Technology trends in wealth management

27th March 2023

Survey & report: The race to ISO 20022

1st December 2022

Research: Tech blockers 2022 – cutting the costs of AML compliance

17th November 2022
view all

Podcast

What the FinTech? | S.4 Episode 5 | Levelling up UK fintech

31st March 2023

What the FinTech? | S.4 Episode 4 | The rise of CBDCs

13th March 2023

What the FinTech? | S.4 Episode 3 | Generative AI in banking

28th February 2023
view all

Videos

Video: Infosys Finacle CEO Sanat Rao on the need for business model innovation in banking

30th March 2023

Video: N26 at FinovateEurope 2023 – The evolution of AI in banking

  • 1
29th March 2023

Video: ING at FinovateEurope 2023 – The power of partnerships

28th March 2023
view all

Content Hubs

One more thing – financial services, tech & human intersection

16th January 2023

FinovateEurope 2023 Content Hub

9th January 2023

Content Hub: Banking Tech Awards 2022 Winners

6th December 2022
view all

Media Packs

FinTech Futures Media Pack

Download

FinTech Futures Intelligence Media Pack

Download

Techwire

Investview, Inc. (“INVU”) Announces Financial Results for the Twelve Months Ended December 31, 2022

31st March 2023

Bangor Savings Bank Wins 2023 Celent Model Bank Award for Innovative Integration of Rewards and Payments with Fiserv

31st March 2023

Green Shield Risk Solutions Selects INSTANDA to Power Innovative E&S Loss Prevention Product

31st March 2023

Agent IQ’s Lynq Platform Recognized As A Highly Commended Finalist in FinTech Futures’ 2023 Banking Tech Awards USA

31st March 2023

Global FinTech Blockchain Strategic Business Report 2023: Digital Transformation of Financial Services Sector Drives Market Growth

31st March 2023

PacWest Bancorp Announces First Quarter Earnings Release Date and Conference Call

31st March 2023

Global Prepaid Card and Digital Wallet Market Databook 2023: A $ $2,540.68 Billion Market by 2027 from $1,533.37 Billion in 2022 – Access the Global Report and 20 Country Reports

31st March 2023

Ncontracts Ready for Section 1071

30th March 2023
view all

Twitter

FinTech_Futures

#US #fintech #funding round-up: @getStellarFi, @StratyfyInc , Beam and more fintechfutures.com/2023/03/us-fin… #AI, #Banking… twitter.com/i/web/status/1…

31st March 2023
FinTech_Futures

We're excited to reveal the finalists for the #BankingTechAwardsUSA 2023! 🏆✨ Click on the below link to find out m… twitter.com/i/web/status/1…

31st March 2023
FinTech_Futures

RT @CompoSecure: “As our lives continue to converge digitally, maintaining a #digital identity is paramount.” – @DrAdamLowe, CompoSecure’s…

31st March 2023
FinTech_Futures

#US challenger @VaroBank names Sachin Shetty as #new #CTO Shetty, who was most recently CTO at digital commerce fi… twitter.com/i/web/status/1…

31st March 2023
FinTech_Futures

Today is the final day to submit your nominations for the prestigious #PayTechAwards!⚡ Don't miss your chance to e… twitter.com/i/web/status/1…

31st March 2023
FinTech_Futures

#Survey: #Technology trends in #WealthManagement fintechfutures.com/2023/03/survey…

31st March 2023
FinTech_Futures

#Sustainable investment #fintech @clim8invest shutters Sustainable investment fintech Clim8 is shutting down and h… twitter.com/i/web/status/1…

31st March 2023
FinTech_Futures

🚨New episode alert!🚨 Join us on the latest episode of What the #Fintech? as we talk to Charlotte Crosswell OBE, ch… twitter.com/i/web/status/1…

31st March 2023

Nominations now open for PayTech Awards USA 2023

Deadline: June 2 2023

Finalists announced for Banking Tech Awards USA

Take a look at the shortlist

Sign up for the FinTech Futures newsletter

Receive updates straight to your inbox each day - free!

Banking Technology Magazine out now!

Read the latest issue here – the digital edition is free

Fintech Futures
  • About us
  • Advertise with us
  • Contact us
  • Fintech jobs
  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookies Policy
  • Terms
Copyright © 2023 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.