FFIEC issued the Business Continuity Management (BCM) booklet, which is part of the FFIEC Information Technology Examination Handbook. The booklet focuses on assessing an entity's resilience through an enterprise risk management perspective that considers technology, business operations, communication strategies, training, testing, maintenance, and improvement—issues that are critical to business continuity. The booklet describes principles to help examiners determine whether management addresses risks related to the availability of critical financial products and services. The booklet uses common terms and builds on widely used standards to facilitate effective supervision. The booklet also addresses the topic of business continuity strategies for ensuring cyber resilience and managing third-party service providers. FFIEC members emphasized that examiners understand how management of banks and other regulated entities, including depository financial institutions, nonbank financial institutions, bank holding companies, and third-party service providers, have prepared their operations to avoid disruptions and to recover services.
Keywords: Americas, US, Business Continuity, Cyber Risk, Third-Party Service Providers, IT Examination Handbook, FFIEC, FDIC
The European Banking Authority (EBA) published four draft principles to support supervisory efforts in assessing the representativeness of COVID-19-impacted data for banks using the internal ratings based (IRB) credit risk models.
The European Council and the European Parliament (EP) reached a provisional political agreement on the Corporate Sustainability Reporting Directive (CSRD).
The Prudential Regulation Authority (PRA) launched a consultation (CP6/22) that sets out proposal for a new Supervisory Statement on expectations for management of model risk by banks.
The European Commission (EC) published the Delegated Regulation 2022/954, which amends regulatory technical standards on specification of the calculation of specific and general credit risk adjustments.
The Bank for International Settlements (BIS) Innovation Hub updated its work program, announcing a set of projects across various centers.
The European Insurance and Occupational Pensions Authority (EIOPA) published two consultation papers—one on the supervisory statement on exclusions related to systemic events and the other on the supervisory statement on the management of non-affirmative cyber exposures.
Certain members of the U.S. Senate Committee on Banking, Housing, and Urban Affairs issued a letter to the Securities and Exchange Commission (SEC)
The European Insurance and Occupational Pensions Authority (EIOPA) published a consultation paper on the advice on the review of the securitization prudential framework in Solvency II.
The Prudential Regulation Authority (PRA) issued a statement on PRA buffer adjustment while the Bank of England (BoE) published a notice on the statistical reporting requirements for banks.
The Basel Committee on Banking Supervision (BCBS) issued principles for the effective management and supervision of climate-related financial risks.