Featured Product

    MAS Issues Measures to Strengthen Cyber Resilience in Financial Sector

    August 06, 2019

    MAS has set out the measures that financial institutions must take to mitigate the growing risk of cyber threats. To this end, MAS issued a set of legally binding requirements to raise the cyber security standards and strengthen cyber resilience of the financial sector in Singapore. The measures will come into effect on August 06, 2020. MAS also published the frequently asked questions (FAQs) on these measures. These recently issued cyber hygiene measures are intended for financial holding companies (Notice 1119), all banks in Singapore pursuant to section 55(1) of the Banking Act (Notice 655), merchant banks (Notice 1118), financial advisers (Notice FAA-N21), capital market entities (Notice CMG-N03, insurance brokers (Notice 507), finance companies (Notice 834), and insurance agents (Notice 132).

    These measures make compulsory the key elements in the existing MAS Technology Risk Management guidelines. The technology risk management guidelines are a set of best practices that provide financial institutions with guidance on the oversight of technology risk management, security practices, and controls to address technology risks. MAS expects financial institutions to observe the technology risk management guidelines, as this will be taken into account in MAS’ risk assessment of the financial institutions. As per the now-published measures on cyber hygiene, financial institutions must:

    • Establish and implement robust security for IT systems
    • Ensure updates are applied to address system security flaws in a timely manner
    • Deploy security devices to restrict unauthorized network traffic
    • Implement measures to mitigate the risk of malware infection
    • Secure the use of system accounts with special privileges to prevent unauthorized access
    • Strengthen user authentication for critical systems as well as systems used to access customer information

    MAS, in September 2018, had sought feedback from the public on the proposal to make this suite of cyber security measures into legally binding requirements. Financial institutions generally welcomed these measures and provided some suggestions about implementation of the requirements. These suggestions include focusing on strengthening user access to systems that store or access customer data and allowing more time for financial institutions to design, acquire, and integrate robust user authentication technology into their critical systems.

     

    Keywords: Asia Pacific, Singapore, Banking, Insurance, Securities, Cyber Resilience, Cyber Security, Cyber Risk, Technology Risk, MAS

    Related Articles
    News

    BCBS Amends Capital Treatment of Non-Performing Loan Securitizations

    BCBS published a technical amendment to the capital treatment of securitizations of non-performing loans by banks.

    November 26, 2020 WebPage Regulatory News
    News

    BoE to Move Statistical Data Collection to BEEDs Portal

    BoE announced that the Data and Statistics Division is planning to move collection of statistical data to the BoE Electronic Data Submission (BEEDS) portal.

    November 25, 2020 WebPage Regulatory News
    News

    APRA Updates Reporting Standards and Guidance for EFS Data Collection

    APRA published the updated reporting standards and guidance for the collection of Economic and Financial Statistics (EFS), following a consultation process. Also published was a response letter to the feedback received on the proposal for amending the EFS reporting standards and guidance.

    November 24, 2020 WebPage Regulatory News
    News

    EC Consults on Criteria for Environmentally Sustainable Activities

    EC is consulting on a draft delegated regulation to supplement the Taxonomy Regulation (2020/852) by establishing the technical screening criteria for determining the conditions under which an economic activity qualifies as environmentally sustainable.

    November 20, 2020 WebPage Regulatory News
    News

    IFRS Examines Incorporation of Climate Risk Issues into IFRS Standards

    The IFRS Foundation published material highlighting the ways in which existing requirements in IFRS standards require companies to consider climate-related matters when their effect is material to the financial statements.

    November 20, 2020 WebPage Regulatory News
    News

    EBA Analyzes Impact of Unwind Mechanism of Liquidity Coverage Ratio

    EBA published a report analyzing the impact of the unwind mechanism of the liquidity coverage ratio (LCR) for a sample of European banks over a three-year period, from the end of 2016 to the first quarter of 2020.

    November 19, 2020 WebPage Regulatory News
    News

    ECB Outlines Views on Possible Changes to AnaCredit Rule and TLTROs

    In response to questions from a member of the European Parliament, the ECB President Christine Lagarde issued a letter clarifying the possibility of amending the AnaCredit Regulation and making targeted longer-term refinancing operations (TLTROs) dependent on the climate-related impact of bank loans.

    November 19, 2020 WebPage Regulatory News
    News

    IASB Begins First Phase of Post-Implementation Review of IFRS 9

    IASB started the post-implementation review of the classification and measurement requirements in IFRS 9 on financial instruments and added the review as a project to its work plan.

    November 18, 2020 WebPage Regulatory News
    News

    FSB Report Examines Progress in Resolvability of Systemic Institutions

    FSB published a report that examines progress in implementing policy measures to enhance the resolvability of systemically important financial institutions.

    November 18, 2020 WebPage Regulatory News
    News

    EBA Benchmarks National Insolvency Frameworks Across EU

    EBA published a report on the benchmarking of national loan enforcement frameworks across 27 EU member states, in response to the call for advice from EC.

    November 18, 2020 WebPage Regulatory News
    RESULTS 1 - 10 OF 6162