You are here: silicon.com > Financial Services > News

FSA warns banks to wise up on security

Finance watchdog found gaps in security strategies

Tags: fsa, disclosure, bank

By Julian Goldsmith

Published: 25 April 2008 12:45 BST

The Financial Services Authority (FSA) has warned the banking industry to shape up their attitudes to securing sensitive data and customer information.

Following an audit of 39 banks, building societies, insurance companies and financial advisors, the regulatory watchdog called on financial services firms to adopt a more transparent stance towards customers, rather than fearing adverse media coverage when data breaches occur.

As a result of the audit, one firm has been referred to enforcement.

Full Disclosure campaign

silicon.com is aiming to make businesses and government take data security more seriously. Read more here.

Instances of bad security practice found in the audit included a lack of due diligence in checking third-party suppliers vet their employees or have adequate security arrangements, too much emphasis on IT controls at the expense of staff awareness and training; and in some areas, an over reliance on compliance consultants who did not understand the importance of data security.

One of the recommendations the FSA made as a result of the audit was that finance firms should appoint a senior manager with overall responsibility for data security.

Speaking at the FSA annual conference on financial crime, FSA director, financial crime and intelligence division Philip Robinson said: "It is worrying that despite increased public awareness of the impact that identity theft can have on customers, many firms are still not taking this risk seriously. Some firms have made progress by adopting good practice, while others need to do more in the area… we expect the industry to raise its standards. We will follow up on this [audit] with firms and will not hesitate to take action if future breaches are found."

The FSA audit is in conflict with another survey conducted by BT and YouGov on staff awareness about what to do when things go wrong. This report found staff in financial sector companies were 27 percentage points more likely to have a high awareness of their company's business continuity strategy than the cross-industry average.

BT Global Services finance industry sector MD Andy Nicholson said in a statement: "With an ever increasing regulatory environment, operational risk and business continuity planning must extend to every employee, business process and ICT asset."

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

silicon.com Financial Services
Get the latest financial services news straight to your inbox. Sign up for the FS newsletter today!


  • Jobs
Front office 2nd 3rdline commodities support- tier1 investment banking

Technically tests Business Continuity plans and provides consultative advice to developments streams for the production of failover plans and ...

Systems Administrator - Investment Management - London City - 27k

You'll also have responsibility from a technical point of view for the local Business Continuity process. Wonderful opportunity for a Systems ...

Pricing Analyst Global Oil Major - London

Key Responsibilities will include: - Maintain the firms bespoke pricing System and Processes - Assemble Price Forecast (price set) as needed for the ...

Steve Boyle
Does Obama want the US to be the new India?
Comment: Presidential candidates battle it out on outsourcing

Steve Boyle
Woolly risk analysis is hastening a housing crash
Comment: Lenders need a sane approach to avert a crisis

Carol Wheatcroft
Will consumers always want free banking?
Targeted, bundled services will be the way to profit...

Steve Boyle
Are rogue traders an inevitable evil?
Opinion: Managers must increase diligence to beat fraud

Julian Goldsmith
Profile: Nottingham Building Society head of IT Jack Cutts
'On the wide accountancy'...

Steve Boyle
Why you should be outsourcing your data centres
Concentrate on the core business...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.




Quick Sitemap Links: