27 April 2017
visit http://events.sap.com/gb/fsi-forum-2017/en/home

BofE unveils cyber-security framework

10 June 2014  |  7346 views  |  0 Bank of england

The Bank of England has set out a new framework designed to test for cyber vulnerabilities at financial institutions.

Several UK banks have been hit by cyber-attacks over the last year, pushing the issue up the agenda both for institutions and regulators, with the BofE telling firms to put concrete action plans in place to protect themselves.

Now the central bank has also unveiled the CBEST framework, which uses intelligence from government and accredited commercial providers to identify potential attackers to a particular financial institution.

It then replicates the techniques these potential attackers use in order to test the extent to which they may be successful in penetrating the defences of the institution. When the tests are completed, there will be workshops for the firms involved to work through the results with the testers and supervisors.

The BofE says that by using real threat intelligence, CBEST will help banks, infrastructure providers and regulators improve their understanding of the types of cyber-attacks that could undermine the UK's financial stability and how vulnerable the industry is to them.

In a speech unveiling the framework, Andrew Gracie, executive director, resolution, BofE, says: "The results should provide a direct readout on a firm's capability to withstand cyber-attacks that on the basis of current intelligence have the most potential, combining probability and impact, to have an adverse impact on financial stability."

The framework, which banks can sign up to on a voluntary basis, was put together by the BofE with the Council for Registered Ethical Security Testers (Crest), a not-for-profit organisation that represents the technical information security industry and Digital Shadows, a cyber-intelligence vendor.

Comments: (0)

Comment on this story (membership required)

Finextra news in your inbox

For Finextra's free daily newsletter, breaking news flashes and weekly jobs board: sign up now

Related stories

New York to step up assessment of bank cyber-security plans

New York to step up assessment of bank cyber-security plans

08 May 2014  |  10525 views  |  0 comments | 10 tweets | 8 linkedin
SEC to conduct market-wide cyber-security checks

SEC to conduct market-wide cyber-security checks

16 April 2014  |  5627 views  |  0 comments | 3 tweets | 3 linkedin
As cyber threat grows, EU regulators warn FS firms on IT budgets

As cyber threat grows, EU regulators warn FS firms on IT budgets

03 April 2014  |  6472 views  |  0 comments | 9 tweets | 2 linkedin
White House sets out voluntary cybersecurity framework

White House sets out voluntary cybersecurity framework

13 February 2014  |  5555 views  |  0 comments | 12 tweets | 8 linkedin
BofE says banks under cyber-attack

BofE says banks under cyber-attack

29 November 2013  |  5785 views  |  0 comments | 10 tweets | 7 linkedin
London banks embark on 'Waking Shark 2' cyber war games

London banks embark on 'Waking Shark 2' cyber war games

12 November 2013  |  5125 views  |  0 comments | 3 linkedin

Related company news

 

Related blogs

Create a blog about this story (membership required)
visit dh.comFind out moreVisit capgemini.com

Top topics

Most viewed Most shared
hands typing furiouslyBitcoin ETF Bites the Dust, Needs More Sec...
13685 views 0 | 7 tweets | 7 linkedin
BBVA runs live funds transfers over RippleBBVA runs live funds transfers over Ripple
11860 views comments | 31 tweets | 20 linkedin
Alipay and WeChat near $3 trillion payments milestoneAlipay and WeChat near $3 trillion payment...
10011 views comments | 35 tweets | 38 linkedin
Coinbase plans Ethereum messaging appCoinbase plans Ethereum messaging app
9082 views comments | 14 tweets | 15 linkedin
EC plans blockchain 'observatory'EC plans blockchain 'observatory'
8440 views comments | 9 tweets | 16 linkedin

Featured job

to 120K base, £300K ote, stock options
London, UK

Find your next job