Bringing you news, views and analysis since 2013
Andrew Gray, DTCC

27237

New white paper calls for cross-industry coordination to mitigate impact of financial system cyber attack

RELATED TOPICS​

Cross-industry coordination around response and recovery mechanisms are essential to mitigating the systemic consequences of a large-scale attack on the global financial system, according to a white paper published by The Depository Trust & Clearing Corporation (DTCC) and Oliver Wyman, a global management consulting firm.

The white paper cites a need for additional efforts around specific cyber-scenarios and limited industry-wide testing as two key factors that could complicate the ability of banks and other financial institutions to react quickly to an attack.
 
The paper, which features extensive research and interviews with over 50 subject matter experts including financial services and non-financial services practitioners, recommends increased coordination across the industry, the development and implementation of standards to facilitate effective response and recovery and adherence to regulatory principles. Two key initiatives are suggested:
 
The industry currently lacks standards around key considerations, including the definition of resumption and recovery; the criteria for safe resumption of operations; the appropriate timeframes for resumption and recovery; and plans for communicating with the public during a large-scale cyber-attack. The proposed initiative would identify collective actions to be taken upon the detection of a large-scale cyber-attack, based on a set of standardised criteria that is tailored to specific cyber-attack scenarios. Results would be included in industry playbooks.
 
Given the complexity and broad scope of large-scale cyber-attacks, no single entity has all the required capabilities to address every possible attack and vulnerability. Regardless of the level of preparedness, there may be situations where a critical provider is unable to fulfil its services for an extended period, creating the need for contingent service arrangements. This initiative would explore arrangements to enable firms to continue critical operations if they or a partner suffer an outage from a cyber-attack.
 
Andrew Gray (pictured), Chief Risk Officer at DTCC, says: “An attack on one or more institutions or critical infrastructures could have a contagion effect across the financial system, especially as interconnectedness continues to grow. As a result, it is critically important that firms incorporate additional redundancies to ensure that the failure of any single institution can be contained and mitigated. To successfully achieve this, we must collectively prioritize resilience and recovery efforts across market participants, infrastructure providers, technology vendors and regulators.”
 
Paul Mee, Partner, Digital and Financial Services, Cyber Platform Lead at Oliver Wyman, says: “Mitigating the systemic consequences of the increasing threat of large-scale cyber-attacks on the financial system is matter of national and international security. In what is arguably a global cyber arms race, it is clear that major players need to be prepared, connected and coordinated in order to effectively respond to and rapidly recover from a large-scale cyber-attack.”
 
To move these efforts forward, the paper suggests identifying initiative owners, key stakeholders and responsibilities, as well as the further exploration of specific objectives and implementation plans.

Latest News

Tradeweb has announced that the FTSE UK Gilt and European Government Bond Benchmark Closing Prices..
BlackRock has announced the launch of the BlackRock BFM Brown to Green Materials Fund for..
Kepler Absolute’s Hedge report highlights the top performing macro funds in the liquid alternatives space..

Related Articles

Frontier
New research issued by the CFA Institute Research and Policy Center reviews the use of distributed ledger technology to tokenise financial and real-world assets...
New research issued by the CFA Institute Research and Policy Center reviews the use of distributed ledger technology to tokenise..
Waves
The European outpost of the Aussie-owned financial services companies solution provider firm, Bravura Solutions, is seeing a sea-change in their clients’ demands as the asset management sector evolves...
The European outpost of the Aussie-owned financial services companies solution provider firm, Bravura Solutions, is seeing a sea-change in their..
Martina Keane, EY
The gender pay gap across UK financial services boardrooms decreased five percentage points between 2019 and 2023, from 30 per cent to 25 per cent, according to the latest EY European Financial Services Boardroom Monitor, which incorporates new analysis on the most recently reported non-executive (non-exec) director remuneration...
The gender pay gap across UK financial services boardrooms decreased five percentage points between 2019 and 2023, from 30 per..
Artificial intelligence (AI) is inescapable, and the investment management industry has chosen to embrace it wholeheartedly...
Artificial intelligence (AI) is inescapable, and the investment management industry has chosen to embrace it wholeheartedly...
Subscribe to the Institutional Asset Manager newsletter

Subscribe for access to our weekly newsletter, newsletter archive, updates on the site and exclusive email content.

Marketing by