The Lighter Side Of The Cloud – iPhone Anticipation
The Lighter Side Of The Cloud – Global Warming
The Lighter Side Of The Cloud – Information Highway
Security Trends In The Financial Services

Security Trends In The Financial Services

Security Trends In The Financial Services

Readers who subscribe to our newsletter will have already read Fridays news about Microsoft’s latest report into key security trends in financial services. The report is part of a series which looks at security trends in cloud computing across four specific industries – financial services, healthcare, retail, and public sector.

Microsoft chose to focus on financial services as one of their key industries because of its scale and omnipresence across all areas of society and business. Financial services organisations handle trillions of transactions each year, and have huge amounts of sensitive data about individuals, companies, and other parties. Protecting that information is a critical component in building trust with customers.

The Problem

Several countries use regulatory bodies to try and force financial services firms to take greater responsibility for data protection. The UK’s regulatory body – the ‘Financial Services Authority’ (FSA) – uses its ‘Principles for Business’ to state that a firm must conduct its business with “due skill, care and diligence, while taking reasonable care to organise and control its affairs responsibly and effectively”. Across the Atlantic, the American government takes a similarly hard-line approach, using its Securities and Exchange Commission to force some financial services firms to have a disaster recovery plan as a fiduciary responsibility. Sadly, in many cases, either companies do not heed their government’s advice, or they do not have strict government guidelines to adhere to.

Microsoft’s report highlights several shortcomings in firm’s security measures. 38 percent of financial services firms do not have budgeted disaster recovery plans, 22 percent have no formal risk management program, 23 percent have inadequate policies for secure data disposal, 29 percent do not have a plan for responding to security breaches, 37 percent do not use standardised data classification – the list goes on.

The financial industry appears susceptible to what an FSA report termed ‘The Five Fallacies’. They believe there are five key misconceptions amongst companies that serious impact on their security; 1) a belief that the customer data they held was too limited or too fragmented to be of value to fraudsters, 2) a belief that only individuals with a high net worth are attractive to hackers, 3) a belief that that only large firms with millions of customers are likely to be targeted, 4) an assumption that threats to data security are exclusively from external sources, and 5) a belief their security systems are already adequate and fool-proof.

These misconceptions feed poor decision-making with regard to security issues. Some firms regard data security as the sole responsibility of IT staff, whereas others fail to recognise that data security is their responsibility. Some firms that do recognise the risk t rate it so low that it never attracts the attention of senior management, nor is it allocated adequate financial or human resources.

All this creates a problem, especially as these institutions are now starting to move into the cloud. As the uptake of cloud services increases, so does the vulnerability of a firm’s data. Yet, perhaps the cloud is also the answer to the problem? Perhaps it can in fact help solve some of the vulnerabilities?

Microsoft’s Recommendations

Microsoft believe that hiring a cloud service provider can help financial organisations improve their data security profile.

They claim that switching to the cloud can shift the burden of regulatory compliance and managing risk to the cloud provider. Experienced providers typically employ large teams of IT security and compliance experts who can manage their customers’ systems more efficiently and troubleshoot when something goes wrong.

Cloud service providers already offer several solutions to the current security issues posed in the report – for example, they conduct regular pre-hire and post-hire background checks on their employees, they classify data and other assets according to well-defined policies, they maintain a data backup and recovery framework that is consistent with industry practices, and they conduct regular risk assessments that evaluate threats to the confidentiality, integrity, and availability of data under their control.

The Future

Do you agree with Microsoft’s findings? Do you work in a financial services firm and have experienced poor security practices? Do you think the cloud is the answer? Let us know in the comments below.

By Daniel Price

Follow Me!

Daniel Price

Daniel is a Manchester-born UK native who has abandoned cold and wet Northern Europe and currently lives on the Caribbean coast of Mexico. A former Financial Consultant, he now balances his time between writing articles for several industry-leading tech (CloudTweaks.com & MakeUseOf.com), sports, and travel sites and looking after his three dogs.
Follow Me!

Sorry, comments are closed for this post.

Popular Archives

Wearable Tech – Will It Ever Be Fashionable?

Wearable Tech – Will It Ever Be Fashionable?

Wearable Tech – Will It Ever Be Fashionable? Wearable tech is taking over the world, and in that sense, it’s already fashionable. As we noted last week, the sector is expected to grow from $14 billion in 2014 to $70+ billion in 2024. But what about ‘high-fashion’? The catwalks and runways of London, Paris, and Milan? Can…

Cloud Computing Services Perfect For Your Startup

Cloud Computing Services Perfect For Your Startup

Cloud Computing Services Perfect For Your Startup Chances are if you’re working for a startup or smaller company, you don’t have a robust IT department. You’d be lucky to even have a couple IT specialists. It’s not that smaller companies are ignoring the value and importance of IT, but with limited resources, they can’t afford…

5 Considerations You Need To Review Before Investing In Data Analytics

5 Considerations You Need To Review Before Investing In Data Analytics

Review Before Investing In Data Analytics Big data, when handled properly, can lead to big change. Companies in a wide variety of industries are partnering with data analytics companies to increase operational efficiency and make evidence-based business decisions. From Kraft Foods using business intelligence (BI) to cut customer satisfaction analysis time in half, to a…

Three Factors for Choosing Your Long-term Cloud Strategy

Three Factors for Choosing Your Long-term Cloud Strategy

Choosing Your Long-term Cloud Strategy A few weeks ago I visited the global headquarters of a large multi-national company to discuss cloud strategy with the CIO. I arrived 30 minutes early and took a tour of the area where the marketing team showcased their award winning brands. I was impressed by the digital marketing strategy…

5 Ways CIOs Can Tackle Cloud Fears

5 Ways CIOs Can Tackle Cloud Fears

5 Ways CIOs Can Tackle Cloud Fears  CIOs are tired of hearing about cloud computing concerns. They’ve spent years reading about how cloud resources are subject to risks, and wonder – what can they do to help people trust the cloud?  The truth is that despite being a hot issue for years, the topic of…

Recent

Considerations For Your Business’ Cloud Computing Plans

Considerations For Your Business’ Cloud Computing Plans

Your Business’ Cloud Computing Plans While you can easily access your cloud data from any spot in the world, you must be rather cautious when using it within your business. You must keep your access plans for your cloud network in check so you will not be at risk of having your data becoming compromised…

Gartner: CEOs Realize The Cloud Is Where New Disruptive Industry Platforms Get Created

Gartner: CEOs Realize The Cloud Is Where New Disruptive Industry Platforms Get Created

Gartner CEO and Senior Business Executive Survey Survey Points to Positive Business Conditions and Accelerating Technology Innovation in 2015 STAMFORD, Conn., April 21, 2015 — Most CEOs expect positive business conditions and accelerating technology innovation in 2015, according to a recent survey by Gartner, Inc. The 2015 Gartner CEO and senior business executive survey found…

The Importance Of Cloud Security For Wearable Technology

The Importance Of Cloud Security For Wearable Technology

Wearable Technology Starts With Cloud Security The integration of wearable technology into our society is all but inevitable. Today, major players in the wearable tech field include Google, Fitbit, Boston Scientific and Apple. As users continue to demand ever increasing availability and functionality from their devices, so do security concerns for wearable tech. The future…

Contact Us

Sending

Technology Sponsors

hp Logo CityCloud-PoweredByOpenstack-Bluesquare_logo_100x100-01
cisco_logo_100x100 vmware citrix100
Site 24x7 200px-KPMG

Established in 2009, CloudTweaks is recognized as one of the leading influencers in cloud computing, big data and internet of things (IoT) information. Our goal is to continue to build our growing information portal, by providing the best in-depth articles, interviews, event listings, whitepapers, infographics and much more.

Branded Content Programs

Advertising