At the 2018 Curious Thinkers Conference in Sydney, the APRA Chairman Wayne Byres examined the potential impact of financial technologies on the financial sector. In this context, he believes that the task of APRA is to ensure that regulated entities are adequately managing change and not exposing customers to undue risks. APRA should also ensure that regulation and supervision are fit for the future and can adapt as the financial system and its participants evolve.
APRA Chair revealed that an APRA review of the systems hygiene in the banking sector, suggested that the issues identified reflect persistent underinvestment over a number of years. The reviews emphasize that, to facilitate new technology, investment budgets need to be increased, not just reprioritized. APRA released its first information security prudential standard for consultation in March and it wants cyber-soundness to be thought about in the same way as institutions think about financial soundness. Additionally, in the area of cloud computing, APRA released an updated version of its 2015 paper, which acknowledges advancements in the safety and security in using the cloud, along with the increased appetite for doing so, especially among new and aspiring entities that want to take a cloud-first approach to data storage and management. In addition to reinforcing steps to minimize the risks of cloud usage, the information paper also summarizes observed weaknesses that industry must continue to focus on. While cloud usage, as with all other shared service arrangements, involves a degree of shared responsibility, boards and senior management of regulated entities remain ultimately accountable for the security of their data. That accountability cannot be outsourced.
A major challenge that technology poses for regulators is the growing trend toward outsourcing and partnering, according to Mr. Byres. Outsourcing and partnering is increasingly occurring for business-critical functions, not just at the periphery of activities. Many of these new partners and providers of critical functions sit outside regulators’ reach. The prudential supervisors’ ability to “kick the tyres” will be much harder in future, without new tools and methods. This gives rise to the systemic risk of an ostensibly large and diverse number of entities all dependent on just a few unregulated providers for critical services, creating a substantial concentration risk and increasing the threat of contagion in the event of a service failure. Applicants for new banking licenses may not fit the traditional mold and that is another risk posed by technology. Consequently, APRA has established a new licensing regime to provide for easier entry—but not lower standards—to the banking system for applicants with unconventional or non-traditional business models. The goal of the new Restricted Authorized Deposit-taking Institution regime is to allow applicants to commence limited banking business while still developing their capabilities and resources. It also allows APRA to learn about, and gain comfort with, new ways of doing things.
APRA is increasing effort to ensure that it has the expertise, knowledge, and technology in place to monitor and interpret the changing nature of the financial sector. APRA has established an internal Fintech Council to examine developments and trends in the fintech sector. Guided by the Council, APRA has stepped up the engagement with a range of players from outside the regulated sphere, such as Fintech Australia, the RegTech Association, and InsureTech Australia. The purpose of this engagement is to create a dialog with players in these emerging sectors to ensure APRA is up-to-speed with developments and to keep ahead of emerging issues that may cause regulatory challenges. He also welcomed the valuable insights gained from participating in ASIC’s Digital Finance Advisory Committee. Finally, he said that one of APRA’s key strategic priorities over the coming years is to broaden its risk-based supervision.
Related Link: Speech
Previous ArticleAPRA Consults on Regulatory Framework for Stored-Value Facilities
Next ArticleBIS Publishes the Quarterly Review in September 2018
EU published Directive 2021/338, which amends the Markets in Financial Instruments Directive (MiFID) II and the Capital Requirements Directives (CRD 4 and 5) to facilitate recovery from the COVID-19 crisis.
The Standing Committee of the European Free Trade Association (EFTA) recommended that a systemic risk buffer level of 4.5% for domestic exposures can be considered appropriate for addressing the identified systemic risks to the stability of the financial system in Norway.
In a recent statement, PRA clarified its approach to the application of certain EU regulatory technical standards and EBA guidelines on standardized and internal ratings-based approaches to credit risk, following the end of the Brexit transition.
In a recently published letter addressed to the G20 finance ministers and central bank governors, the FSB Chair Randal K. Quarles has set out the key FSB priorities for 2021.
EU published, in the Official Journal of the European Union, a corrigendum to the revised Capital Requirements Regulation (CRR2 or Regulation 2019/876).
ESAs published a joint supervisory statement on the effective and consistent application and on national supervision of the regulation on sustainability-related disclosures in the financial services sector (SFDR).
EC published a public consultation on the review of crisis management and deposit insurance frameworks in EU.
HKMA announced that enhancements will be made to the Special 100% Loan Guarantee of the SME Financing Guarantee Scheme (SFGS) and the application period will be extended to December 31, 2021.
EBA launched consultations on the regulatory and implementing technical standards on cooperation and information exchange between competent authorities involved in prudential supervision of investment firms.
BoE issued a letter to the CEOs of eight major UK banks that are in scope of the first Resolvability Assessment Framework (RAF) reporting and disclosure cycle.