25 Baseline Controls Banks Struggle to Implement
The FFIEC Cybersecurity Assessment process is here to stay. At a minimum, most regulators are requiring financial institutions to complete an assessment on an annual basis. This process includes a review of an institution’s Inherent Risk Level, identification of currently implemented controls to reduce risk, and a gap analysis to identify additional controls needed to reach the institutions desired risk appetite.
Read more...