SOC Report Selection & Evaluation Aids
With the SAS 70 phasing out on 6/15, financial institutions have a dual challenge; determining the best report to request, and evaluating the report they are provided. To assist with …
Read the rest of the article
Frequency of key terms in FFIEC Handbooks
In preparation for an upcoming class on Audits & Examinations, I created an searchable index of all FFIEC IT Examination Handbooks. Out of curiosity, I ran frequency counts for some …
Read the rest of the article
CAMELS ratings and regulatory reform
The ability of management to respond to changing circumstances, and to address the risks that may arise from changing business conditions, has become an area of increased examiner scrutiny in …
Read the rest of the article
FFIEC Tier I and II Examination Procedures
A complete listing of ALL FFIEC Tier I and Tier II examination procedures in one place, courtesy of the BITS Shared Assessments project. Very handy!
New Guidance and New Challenges in Remote Payment Systems
This whitepaper talks about the recent FFIEC guidance on Retail Payment Systems.
Webinar: 2010 Trends, a Mid-year Assessment
Watch this educational webinar presented by the Compliance Guru and Attus.
Tom Hinkel (The Guru) is the Director of Compliance at Safe Systems, Inc.…
Read the rest of the article Safe Systems is the national leader
Disaster Recovery Webinar: Training Your Employees
During this presentation, we will suggest methods to build your employee training program to adhere with current regulatory guidance, as well as maximize its effectiveness.
Outsourcing – Rewards and Risks
There are twelve booklets in the FFIEC IT Examination Handbook series, and ten of them make reference to the importance of managing third-party relationships. Today, the vast majority of financial …
Read the rest of the article
Disaster Recovery & Strategic Planning: How alignment can reduce risk and cost
If it’s been done correctly, your business continuity program has been developed to support your Banks’ strategic plan. The capabilities of your hardware and software have been carefully selected to …
Read the rest of the article
Vendor Management – BITS and Pieces
The effective management of critical vendors is an essential risk control. The FFIEC mentions this several times in their Examination Handbooks, most recently in the “Information Security” Handbook from July, …
Read the rest of the article
