{"id":30007,"date":"2017-11-06T12:08:25","date_gmt":"2017-11-06T04:08:25","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=30007"},"modified":"2017-11-06T12:08:25","modified_gmt":"2017-11-06T04:08:25","slug":"bsp-circular-aims-to-reinforce-resilience-of-banks-against-cyber-attacks","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2017\/11\/06\/bsp-circular-aims-to-reinforce-resilience-of-banks-against-cyber-attacks\/","title":{"rendered":"BSP Circular aims to reinforce resilience of banks against cyber attacks"},"content":{"rendered":"<div id=\"attachment_29986\" style=\"width: 310px\" class=\"wp-caption alignleft\"><a href=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2017\/10\/hacker-security.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-29986\" class=\"wp-image-29986 size-medium\" src=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2017\/10\/hacker-security-300x175.jpg\" alt=\"\" width=\"300\" height=\"175\" srcset=\"http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2017\/10\/hacker-security-300x175.jpg 300w, http:\/\/www.upgrademag.com\/web\/wp-content\/uploads\/2017\/10\/hacker-security.jpg 640w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><p id=\"caption-attachment-29986\" class=\"wp-caption-text\"><strong><em>Credit: The Digital Artist | Pixabay<\/em><\/strong><\/p><\/div>\n<p><strong>In order to promote cyber resilience of the entire banking industry, the Monetary Board (MB) recently approved pioneering guidelines on information security management that place a renewed focus on cybersecurity.\u00a0 This is to address the growing concerns on the fast-evolving cyber-threats that continue to confront global as well as domestic financial communities.\u00a0<\/strong><\/p>\n<p>The cyber-threat landscape has continuously evolved with more threats surfacing in the cyber realm in an increasingly complex and sophisticated fashion.\u00a0 Various researches and publications projected global cybercrime losses to increase exponentially with the financial services industry remaining to be a prime target across all industries.\u00a0 If not properly managed, cyber-threats and attacks launched against Bangko Sentral supervised financial institutions (BSFIs) may result in operational, legal, reputational, and systemic risks.<\/p>\n<p>The amendments highlight the role of the BSFIs\u2019 Board and senior management in spearheading sound information security governance and strong security culture within their respective networks.\u00a0 Likewise, BSFIs are mandated to manage information security risks and exposures within acceptable levels through a dynamic interplay of people, policies, processes, and technologies following a continuing cycle (i.e. identify, prevent, detect, respond, recover and test phases).<\/p>\n<p>The Circular also encompasses key elements of cyber resilience such as participation in information sharing and collaboration fora, enhancing situational awareness capabilities as well as adoption of advanced cybersecurity controls and countermeasures.\u00a0 A good example is the requirement to set-up a 24 by 7 security operations center (SOC) equipped with advanced technologies and manned by competent analysts to proactively monitor emerging and highly sophisticated cyber-threats and attacks.<\/p>\n<p>The new guidelines recognize that BSFIs are at varying levels of cyber-maturity and cyber-risk exposures which may render certain requirements restrictive and costly vis-\u00e0-vis expected benefits.\u00a0 Thus, the IT profile classification has been expanded from two (2) to three (3), namely: \u201cComplex\u201d, \u201cModerate\u201d and \u201cSimple\u201d to provide greater flexibility in complying with the requirements.\u00a0 BSFIs with complex IT profile classification would warrant adoption of advanced cybersecurity tools and processes such as the setting up of an SOC.<\/p>\n<p>While not a silver bullet, the new regulation serves as one of the critical components in BSP\u2019s Strategic Roadmap on cybersecurity.<\/p>\n<p>Considering the need to strike the right balance between promoting innovation and managing cyber-related risks, the new guidelines, one of the first in Southeast Asia, cover a holistic framework on information security risk management (ISRM) as an integral part of the BSFIs\u2019 information security program, enterprise risk management system and governance mechanisms.<\/p>\n<p>The new Circular incorporates, to the extent possible, key principles and concepts from leading standards, technology frameworks and global best practices on information security.<\/p>\n<p>BSFIs are given one (1) year from the effectivity date of the Circular to fully comply with the provisions therewith.\u00a0 Further, plan of actions with specific timelines, as well as the status of initiatives being undertaken to achieve full compliance, should be readily available upon request starting December 2017.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In order to promote cyber resilience of the entire banking industry, the Monetary Board (MB) recently approved pioneering guidelines on information security management that place a renewed focus on cybersecurity.\u00a0 This is to address the growing concerns on the fast-evolving cyber-threats that continue to confront global as well as domestic financial communities.\u00a0 The cyber-threat landscape [&hellip;]<\/p>\n","protected":false},"author":6,"featured_media":29986,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[3087,1185,495,286,5583,5584],"class_list":["post-30007","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-bangko-sentral-ng-pilipinas","tag-banking-and-finance","tag-cybersecurity-and-cybercrime","tag-it-security","tag-monetary-board","tag-regulations"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/30007","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=30007"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/30007\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/29986"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=30007"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=30007"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=30007"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}