OSFI issued a letter to the federally regulated financial institutions seeking their views on certain aspects of its approach to the operational risk and resilience framework. One aspect OSFI is seeking views on is how it can position its perspective on operational risk and resilience within its principles-based guidance framework (including Guideline E-21). Views are also being sought on ways to address connections to related risks within the OSFI approach to operational risk management and operational resilience; the related risks include technology and cyber risks; third-party risk; model risk; and culture, compliance, and reputational risks. Stakeholders can submit comments until September 10, 2021.
BCBS published guidance in March 2021 on operational risk and resilience and OSFI, as a BCBS member, had participated in the work that led to the publication of the revised principles for sound management of operational risk and the new principles for operational resilience. OSFI believes that the revisions to the principles for sound management of operational risk strengthen BCBS guidance on operational risk management while the principles of operational resilience introduce the concept of operational resilience. Earlier, on December 15, 2020, OSFI had concluded a consultation process on its September discussion paper titled "Developing financial sector resilience in a digital world," which highlighted certain aspects of operational resilience. OSFI views operational resilience as an important objective of operational risk management and believes that operational resilience encompasses a number of risk management practices and capabilities; these include articulating risk appetite and setting risk tolerances for operational risk; identifying and analyzing critical operations, interconnections, and interdependencies; using scenarios and testing to assess resilience capabilities; and preventing, responding, adapting, recovering and learning from operational disruptions. While the existing Guidelines and Advisories of OSFI cover many of these areas, there are opportunities to strengthen its guidance expectations to enhance operational resilience at financial institutions, including both deposit-taking institutions and insurance companies. As part of implementing any guidance on operational risk and resilience for financial institutions, OSFI will consider whether certain elements of this guidance could also be relevant to federally regulated pension plans.
Keywords: Americas, Canada, Banking, Insurance, Pensions, Operational Risk, Operational Resilience, Guideline E-21, Third Party Risk, Cyber Risk, Model Risk, Technology Risk, OSFI
Previous ArticleFSB Reports on LIBOR Transition, Urges Entities to Take Action
In a letter addressed to the industry, the Australian Prudential Regulation Authority (APRA) set out an updated schedule of policy priorities for the banking, insurance, and superannuation industries.
The European Commission (EC) adopted a comprehensive review package of Solvency II rules in the European Union.
The Office of the Comptroller of the Currency (OCC) issued Versions 1.0 of the "Earnings" and "Regulatory Reporting" booklets of the Comptroller's Handbook.
The European Central Bank (ECB) published results of its economy-wide climate stress test, which aimed to assess the resilience of non-financial corporates and euro area banks to climate risks.
The European Banking Authority (EBA) published a report on the use of digital platforms in the banking and payments sector in European Union.
The Hong Kong Monetary Authority (HKMA) published updates on the policy measures that were announced in context of the ongoing pandemic.
The International Swaps and Derivatives Association (ISDA), along with several other associations, submitted a joint response to the Basel Committee on Banking Supervision (BCBS) consultation on preliminary proposals for the prudential treatment of cryptoasset exposures.
BIS published the September issue of the Quarterly Review, which contains special features that analyze the rapid rise in equity funding for financial technology firms, the effectiveness of policy measures in response to pandemic, and the evolution of international banking.
The Basel Committee for Banking Supervision (BCBS) met in September 2021 and reviewed climate-related financial risks, discussed impact of digitalization, and welcomed efforts by the International Financial Reporting Standards (IFRS) Foundation to develop a common set of sustainability reporting standards
The Office of the Comptroller of the Currency (OCC) issued a Cease and Desist Order against MUFG Union Bank for deficiencies in technology and operational risk governance.