General Information & Client Services
  • Americas: +1.212.553.1653
  • Asia: +852.3551.3077
  • China: +86.10.6319.6580
  • EMEA: +44.20.7772.5454
  • Japan: +81.3.5408.4100
Media Relations
  • New York: +1.212.553.0376
  • London: +44.20.7772.5456
  • Hong Kong: +852.3758.1350
  • Tokyo: +813.5408.4110
  • Sydney: +61.2.9270.8141
  • Mexico City: +001.888.779.5833
  • Buenos Aires: +0800.666.3506
  • São Paulo: +0800.891.2518
June 28, 2017

EBA published a report presenting the conclusions of its assessment on the topic of innovative uses of consumer data by financial institutions. The report concludes that no additional, industry-specific legislative or regulatory requirements are needed at present, but EBA will continue to closely monitor this innovation.

The report looks at both the risks and potential benefits of the innovative uses of data and identifies a number of requirements applying to financial institutions under the EU law, which mitigate many of the risks identified by EBA. The report encourages cooperation between supervisory authorities across all relevant policy areas and contributes to fostering a consistent supervisory approach to innovation in the financial sector. The report acknowledges that further work will be carried out in 2017, jointly with ESMA and EIOPA, on the topic of Big Data and that the three ESAs (EBA, EIOPA, and ESMA) will publish their conclusions on this particular topic within the context of the Joint Committee work.


EBA had observed that a growing number of financial institutions use consumer data in innovative ways, often combining data that they hold internally with data obtained from external data vendors, social media, or other external sources. After assessing the responses to a discussion paper it had published last year and having conducted an extensive review of a number of EU directives and regulations that apply to the use of consumer data, EBA considers that there is already an extensive set of legal requirements financial institutions must comply with, which mitigate many of the risks identified by EBA. Among these, the General Data Protection Regulation (GDPR) will provide a comprehensive legal framework on the processing of personal data applicable to all providers that process personal data of EU individuals. Financial institutions are expected to take all necessary measures to comply with the provisions of GDPR by the date of its application (May 25, 2018). EBA is mandated under Article 9 of its founding Regulation to monitor financial innovation across the EU and to foster a consistent supervisory approach to innovation in the financial sector.


Related Link: Report on Innovative Uses of Data (PDF)

Keywords: Europe, EBA, ESA, Banking, Securities, Insurance, Consumer Data, Innovative Data Use

Related Insights

CBB Proposes and Finalizes Rulebook Modules for Banks in November 2018

CBB announced the issuance of new leverage ratio requirements under Module CA (Part 3) for Islamic (Chapter CA-10) and conventional bank licensees (Chapter CA-15).

November 15, 2018 WebPage Regulatory News

OFR on Financial Stability Risks in Its 2018 Annual Report to Congress

OFR released its 2018 Annual Report to Congress, which examines risks to the financial stability in the United States.

November 15, 2018 WebPage Regulatory News

IAIS Publishes Drafts of Revised ICP 8, ICP 15, ICP 16, and ICP 20

IAIS published the drafts of revised Insurance Core Principles on Public Disclosure (ICP 20), Investments (ICP 15), Enterprise Risk Management for Solvency Purposes (ICP 16), and Risk Management and Internal Controls (ICP 8), along with a revised draft of the glossary on enterprise risk management (ERM).

November 14, 2018 WebPage Regulatory News

MAS Amends Notice 637 on Capital Adequacy Requirements in Singapore

MAS published the final, revised Notice 637 on the risk-based capital adequacy requirements in Singapore.

November 13, 2018 WebPage Regulatory News

ESMA Updates Q&A on Implementation of CSD Regulation and MAR

ESMA updated questions and answers (Q&A) documents on the implementation of the Central Securities Depository (CSD) Regulation and Market Abuse Regulation (MAR).

November 12, 2018 WebPage Regulatory News

FSB Finalizes and Publishes the Cyber Lexicon

FSB published a cyber lexicon, following the public consultation earlier this year.

November 12, 2018 WebPage Regulatory News

SRB Updates Liability Data Reporting Template for 2019

SRB published version 2.7.1 of the Liability Data Reporting (LDR) Template.

November 12, 2018 WebPage Regulatory News

ECB to Conduct Comprehensive Assessment of Six Bulgarian Banks

ECB will undertake a comprehensive assessment of six Bulgarian banks. The exercise, comprising an asset quality review and a stress test, follows Bulgaria’s submission of a request to establish close cooperation with ECB on July 18, 2018.

November 12, 2018 WebPage Regulatory News

SRB Publishes the Work Program for 2019

SRB published the work program for 2019, which sets out its priorities and core tasks for the year ahead.

November 12, 2018 WebPage Regulatory News

IMF Publishes Reports on the 2018 Article IV Consultation with Chile

IMF published its staff report and selected issues report under the 2018 Article IV consultation with Chile.

November 09, 2018 WebPage Regulatory News
RESULTS 1 - 10 OF 2211