2 min read
The FDIC InTREX Gets Audited
While the FFIEC has released three major guidance updates since July 2019, the FDIC has not updated its examination program to include the newer...
2 min read
While the FFIEC has released three major guidance updates since July 2019, the FDIC has not updated its examination program to include the newer...
1 min read
Reviewing Complementary User Entity Controls (CUECs) is an important part of any financial institution’s third-party management program. However, we...
3 min read
Over the past month, many have written about the latest LastPass breach. If you have not kept up with the breach, you can see the disclosure from...
2 min read
A little over a year ago, banking regulators released the “Authentication and Access to Financial Institution Services and Systems” guidance. Since...
1 min read
What exactly is a user access review? In its simplest form, this review is a process that certifies that users’ (including vendors’) access within...
2 min read
A little over a year ago, bank regulators published new proposed guidance on managing third-party risk. One of the more controversial topics in this...
2 min read
News this week brought us word of something very disappointing, a breach in a large player in the identity services company, Okta. If I’m being 100%...
2 min read
In August, the FFIEC released new guidance titled “Authentication and Access to Financial Institution Services and Systems”. Because the guidance...