<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>FFIEC Bank &#38; Credit Union Compliance Help presented by Safe Systems – Compliance Guru</title>
	<atom:link href="http://www.complianceguru.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.complianceguru.com</link>
	<description>Keeping Financial Institutions Informed</description>
	<lastBuildDate>Wed, 09 May 2012 13:09:46 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
		<item>
		<title>Updated Incident Response guidance expected</title>
		<link>http://www.complianceguru.com/2012/05/updated-incident-response-guidance-expected/</link>
		<comments>http://www.complianceguru.com/2012/05/updated-incident-response-guidance-expected/#comments</comments>
		<pubDate>Tue, 08 May 2012 18:32:59 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Hot Topics]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[incident management]]></category>
		<category><![CDATA[Incident response]]></category>
		<category><![CDATA[NIST]]></category>
		<category><![CDATA[SP 800-61]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2816</guid>
		<description><![CDATA[<p>Comments on draft 2 are closed, and the National Institute of Standards and Technology (NIST) is about to release an update to their <a href="http://csrc.nist.gov/publications/drafts/800-61-rev2/draft-sp800-61rev2.pdf" target="_blank">Computer Security Incident Handling Guide</a> (SP 800-61).   &#8230; <a href="http://www.complianceguru.com/2012/05/updated-incident-response-guidance-expected/" class="read_more"><br /><em>Read the rest of the article</em></a></p>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/05/updated-incident-response-guidance-expected/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FDIC Supervisory Letter Issued on Critical Service Provider</title>
		<link>http://www.complianceguru.com/2012/04/fdic-supervisory-letter-issued-on-critical-service-provider/</link>
		<comments>http://www.complianceguru.com/2012/04/fdic-supervisory-letter-issued-on-critical-service-provider/#comments</comments>
		<pubDate>Wed, 25 Apr 2012 21:46:20 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Hot Topics]]></category>
		<category><![CDATA[FDIC]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[FIS]]></category>
		<category><![CDATA[Supervisory Letter]]></category>
		<category><![CDATA[Vendor Management]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2773</guid>
		<description><![CDATA[<p><strong>(NOTE:  Although the vendor in question has been publicized by the <a href="http://www.cutimes.com/2012/04/10/citing-unsatisfactory-risk-management-ncua-asks-cr" target="_blank">NCUA</a>, I will not name it here because it is not relevant.  If you currently contract with the </strong>&#8230; <a href="http://www.complianceguru.com/2012/04/fdic-supervisory-letter-issued-on-critical-service-provider/" class="read_more"><br /><em>Read the rest of the article</em></a></p>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/04/fdic-supervisory-letter-issued-on-critical-service-provider/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FFIEC Handbook Update &#8211; Outsourcing</title>
		<link>http://www.complianceguru.com/2012/04/ffiec-handbook-update-outsourcing/</link>
		<comments>http://www.complianceguru.com/2012/04/ffiec-handbook-update-outsourcing/#comments</comments>
		<pubDate>Mon, 09 Apr 2012 23:08:47 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Hot Topics]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[IT Examination Handbooks]]></category>
		<category><![CDATA[Outsourcing]]></category>
		<category><![CDATA[Outsourcing technology]]></category>
		<category><![CDATA[technology service providers]]></category>
		<category><![CDATA[Vendor Management]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2758</guid>
		<description><![CDATA[<p>The FFIEC has just added a section to the Outsourcing Technology Services IT Examination Handbook, and it should be required reading for financial institutions as well as any managed service &#8230; <a href="http://www.complianceguru.com/2012/04/ffiec-handbook-update-outsourcing/" class="read_more"><br /><em>Read the rest of the article</em></a></p>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/04/ffiec-handbook-update-outsourcing/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>FFIEC Handbook Update &#8211; SAS 70 Transition</title>
		<link>http://www.complianceguru.com/2012/04/ffiec-handbook-update-sas-70-transition/</link>
		<comments>http://www.complianceguru.com/2012/04/ffiec-handbook-update-sas-70-transition/#comments</comments>
		<pubDate>Mon, 09 Apr 2012 15:53:37 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Hot Topics]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[SAS 70]]></category>
		<category><![CDATA[SOC 1]]></category>
		<category><![CDATA[SOC 2]]></category>
		<category><![CDATA[SOC 3]]></category>
		<category><![CDATA[Vendor Management]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2760</guid>
		<description><![CDATA[<p>The FFIEC has just updated their online <a href="http://ithandbook.ffiec.gov/it-booklets.aspx" target="_blank">IT Examination InfoBase</a> to address the AICPA phase-out of the SAS 70 reporting format.  All references to &#8220;SAS 70&#8243; have now been replaced, &#8230; <a href="http://www.complianceguru.com/2012/04/ffiec-handbook-update-sas-70-transition/" class="read_more"><br /><em>Read the rest of the article</em></a></p>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/04/ffiec-handbook-update-sas-70-transition/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>5 &#8220;random&#8221; facts</title>
		<link>http://www.complianceguru.com/2012/04/5-random-facts/</link>
		<comments>http://www.complianceguru.com/2012/04/5-random-facts/#comments</comments>
		<pubDate>Thu, 05 Apr 2012 15:25:23 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[From the Field]]></category>
		<category><![CDATA[Dodd-Frank]]></category>
		<category><![CDATA[Examination]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[H.R. 3461]]></category>
		<category><![CDATA[S. 2160]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2737</guid>
		<description><![CDATA[<p style="text-align: left;"><strong>Fact 1</strong> &#8211; According to the U.S. Bureau of Labor Statistics, the increasing complexity of financial regulations will spur employment growth of financial examiners.  In fact it is expected to &#8230; <a href="http://www.complianceguru.com/2012/04/5-random-facts/" class="read_more"><br /><em>Read the rest of the article</em></a></p>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/04/5-random-facts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>CFPB Examinations Are Coming &#8211; UPDATE</title>
		<link>http://www.complianceguru.com/2012/03/cfpb-examinations-are-coming/</link>
		<comments>http://www.complianceguru.com/2012/03/cfpb-examinations-are-coming/#comments</comments>
		<pubDate>Wed, 28 Mar 2012 13:51:42 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Hot Topics]]></category>
		<category><![CDATA[CFPB]]></category>
		<category><![CDATA[Consumer Financial Protection Bureau]]></category>
		<category><![CDATA[Examination]]></category>
		<category><![CDATA[Examination Procedures]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[Risk Assessment]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2661</guid>
		<description><![CDATA[Coming soon to your financial institution:

    Dear Board of Directors:

    Pursuant to the authority of the Dodd-Frank Wall Street Reform...<a href="http://www.complianceguru.com/2012/03/cfpb-examinations-are-coming/"> <br /><em>Read the rest of the article</em></a>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/03/cfpb-examinations-are-coming/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>FDIC issues FIL addressing proper use of Bank information</title>
		<link>http://www.complianceguru.com/2012/03/fdic-issues-fil-addressing-proper-use-of-bank-information/</link>
		<comments>http://www.complianceguru.com/2012/03/fdic-issues-fil-addressing-proper-use-of-bank-information/#comments</comments>
		<pubDate>Tue, 20 Mar 2012 20:18:26 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Hot Topics]]></category>
		<category><![CDATA[FDIC]]></category>
		<category><![CDATA[FIL]]></category>
		<category><![CDATA[FIL-14-2012]]></category>
		<category><![CDATA[officers and directors]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2671</guid>
		<description><![CDATA[Although a quick read of this FIL makes it seem that it only addresses the proper use of confidential information after the institution is placed into receivership,...<a href="http://www.complianceguru.com/2012/03/fdic-issues-fil-addressing-proper-use-of-bank-information/"><br /><em>Read the rest of the article</em></a>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/03/fdic-issues-fil-addressing-proper-use-of-bank-information/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Risk Managing BYOD (bring your own device)</title>
		<link>http://www.complianceguru.com/2012/03/risk-managing-byod-bring-your-own-device/</link>
		<comments>http://www.complianceguru.com/2012/03/risk-managing-byod-bring-your-own-device/#comments</comments>
		<pubDate>Mon, 12 Mar 2012 18:52:15 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Hot Topics]]></category>
		<category><![CDATA[employee training]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[information security]]></category>
		<category><![CDATA[Mobile devices]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2620</guid>
		<description><![CDATA[<p>Thanks in part to social media, users today often don&#8217;t differentiate between work and non-work activities, and they certainly don&#8217;t want to have to carry multiple work/non-work devices to keep &#8230; <a href="http://www.complianceguru.com/2012/03/risk-managing-byod-bring-your-own-device/" class="read_more"><br /><em>Read the rest of the article</em></a></p>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/03/risk-managing-byod-bring-your-own-device/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>&#8220;Data-flow diagrams&#8221;</title>
		<link>http://www.complianceguru.com/2012/03/data-flow-diagrams/</link>
		<comments>http://www.complianceguru.com/2012/03/data-flow-diagrams/#comments</comments>
		<pubDate>Fri, 02 Mar 2012 16:26:48 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[From the Field]]></category>
		<category><![CDATA[data flow]]></category>
		<category><![CDATA[Examination]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[IT Examination Handbooks]]></category>
		<category><![CDATA[Operations Handbook]]></category>
		<category><![CDATA[work flow]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2622</guid>
		<description><![CDATA[<p>This request was seen in a recent State examiners pre-examination questionnaire, and although I usually like to see a request a couple of times from different examiners before identifying it &#8230; <a href="http://www.complianceguru.com/2012/03/data-flow-diagrams/" class="read_more"><br /><em>Read the rest of the article</em></a></p>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/03/data-flow-diagrams/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The single most important vendor management control</title>
		<link>http://www.complianceguru.com/2012/02/single-most-important-control-in-the-outsorcing-process/</link>
		<comments>http://www.complianceguru.com/2012/02/single-most-important-control-in-the-outsorcing-process/#comments</comments>
		<pubDate>Wed, 22 Feb 2012 19:59:42 +0000</pubDate>
		<dc:creator>Tom</dc:creator>
				<category><![CDATA[Hot Topics]]></category>
		<category><![CDATA[FFIEC]]></category>
		<category><![CDATA[Outsourcing technology]]></category>
		<category><![CDATA[technology service providers]]></category>
		<category><![CDATA[vendor contracts]]></category>
		<category><![CDATA[Vendor Management]]></category>

		<guid isPermaLink="false">http://www.complianceguru.com/?p=2600</guid>
		<description><![CDATA[<p>Pop quiz&#8230;according to the FFIEC Handbook on <a href="http://ithandbook.ffiec.gov/it-booklets/outsourcing-technology-services.aspx" target="_blank">Outsourcing Technology Services</a>&#8230;</p>
<p>&#8220;The ________ is the single most important control in the outsourcing process&#8221;:</p>
<ol type="A">
<li>Initial due diligence process</li>
<li>Review of third-party </li>&#8230; <a href="http://www.complianceguru.com/2012/02/single-most-important-control-in-the-outsorcing-process/" class="read_more"><br /><em>Read the rest of the article</em></a></ol>]]></description>
		<wfw:commentRss>http://www.complianceguru.com/2012/02/single-most-important-control-in-the-outsorcing-process/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

