SBS enables client banks to have successful IT exams by guiding the bank through our..... more Our chief concern every day for our clients is what needs to be done to ensure successful IT..... more The SBS team is one of the largest teams of bank information security professionals..... more

Links

Regulating Agencies

FDIC

Federal Deposit Insurance Corporation

Federal Reserve

Board of Governors of the Federal Reserve System

OCC

Comptroller of the Currency

NCUA

National Credit Union Administration

OTS

Office of Thrift Supervision

Guidance

FDIC IT Officer Questionnaire Changes - UPDATED 12/4/07

FIL-105-2007
The FDIC has updated its risk-focused Information Technology (IT) examination procedures for FDIC-supervised financial institutions. As part of the revision, the IT Officer's Questionnaire was enhanced to provide greater coverage of vendor management and outsourcing topics, credit card and ACH (automated clearing house) payment system risks, and an institution's overall information security program.

FDIC Information Technology Examination Officer's Questionnaire

Go here to download a PDF or Word version of the questionnaire.

FDIC Information Technology Risk Management Program

FIL-81-2005

Federal Financial Institutions Examination Council

The Council is a formal interagency body empowered to prescribe uniform principles, standards, and report forms for the federal examination of financial institutions by the Board of Governors of the Federal Reserve System (FRB), the Federal Deposit Insurance Corporation (FDIC), the National Credit Union Administration (NCUA), the Office of the Comptroller of the Currency (OCC), and the Office of Thrift Supervision (OTS) and to make recommendations to promote uniformity in the supervision of financial institutions.

FFIEC Information Technology Examination Handbook

Go here to download booklets in Audit, Business Continuity Planning, Development and Acquisition, E-Banking, FedLine, Information Security, Management, Operations, Outsourcing Technology Services, Retail Payment Systems, Supervision of Technology Service Providers, and Wholesale Payment Systems.

FFIEC Regulatory Resources
GLBA Appendix B to Part 364

Interagency Guidelines Establishing Information Security Standards

RSA Data Encryption Best Practices Kit

Download the Data Encryption Best Practices Kit and get expert views on how protecting data at all points of use ensures the security of individuals' personal information, sensitive corporate data, and intellectual property.

Security Articles & Information

Financial Institutions Begin Sending Bills to TJX

HarborOne Credit Union in Brockton, Mass., has sent The TJX Companies Inc. an invoice for $590,000 for what the financial institution says it incurred in actual costs and reputational damage as a result of the data compromise disclosed by the retailer in January.

Two Charged with Swiping ATM Info

Two charged with swiping ATM info, then ccash. Two Romanian nationals were indicted by a federal grand jury this week on charges of using counterfeit ATM cards to withdraw more than $14,000 from local banks.....

Improving Security from the Inside Out

A business case for corporate security awareness prepared by the National Security Institute (NSI).

The 25 Most Common Mistakes in E-Mail Security

25 tips to bring Internet and E-Mail users up to speed so they stop compromising your network security.

Watchdog Issues ID Theft Warning

People are risking identity theft by not protecting their personal details, an information watchdog says. Click for more...