28
FFIEC FFIEC Cybersecurity Resource Guide External Use: General Public 1

FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

  • Upload
    others

  • View
    8

  • Download
    0

Embed Size (px)

Citation preview

Page 1: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

FFIEC

FFIEC Cybersecurity Resource Guide

External Use: General Public 1

Page 2: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Use of these materials by participants, including video and audio recording of this presentation, is strictly prohibited except by written permission of the FFIEC or its members.1 The views expressed in this presentation are individual views, intended for informational purposes, and are not formal opinions of, nor binding on, the FFIEC or its members.

1Board of Governors of the Federal Reserve System, Consumer Financial Protection Bureau, Federal Deposit Insurance Corporation, Office of the Comptroller of the Currency, National Credit Union Administration, and State Liaison Committee.

FFIEC External Use: General Public 2

Page 3: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

FFIEC

Introductory Remarks Mary Aiken

Federal Reserve Board of Governors

External Use: General Public 3

Page 4: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

FFIEC

The Cyber Security Resources Guide

Ernie Chambers

External Use: General Public 4

Page 5: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Description of the Guide

• Assessment Resources • Exercises Resources • Information Sharing Resources • Response and Reporting Resources

FFIEC External Use: General Public 5

Page 6: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Assessment Resources

• Department of Homeland Security’s (DHS) Nation Cybersecurity and Technical Services, (NCATS)

• DHS’s Cyber Resilience Review (CRR) • Center for Internet Security (CIS) Benchmarking

Resources

FFIEC External Use: General Public 6

Page 7: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

DHS National Cybersecurity Assessments and Technical Services • NCATS supports U.S. government

and industry critical infrastructure by providing proactive testing and assessment services.

• Its Cyber Hygiene program aims tosecure internet accessible systemsby continuously scanning for known vulnerabilities and configuration errors. • NCATS services are available at no

cost to financial institutions.

FFIEC 7External Use: General Public

Page 8: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

DHS Cyber Resilience Review

The Cyber Resilience Review(CRR) is a free, voluntary, andnon-technical tool for assessingan organization’s operational resilience and cybersecuritypractices.

FFIEC External Use: General Public 8

Page 9: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Center for Internet Security

• CIS Benchmarks: 100+ configuration guidelines for various technology groups to safeguard systems cyber threats. • CIS Configuration

Assessment Tool : A detailed assessment of systems in conformance with CIS Benchmarks.

FFIEC External Use: General Public 9

Page 10: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Exercise Resources

• FDIC Cyber Challenge: A Community Bank Cyber Exercise • Financial Sector Cyber Exercise Template • FS-ISAC Cyber Attack Against Payment Systems

(CAPS) Exercise

FFIEC External Use: General Public 10

Page 11: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

FDIC Cyber Challenge: A Community Bank Cyber Exercise

• The FDIC created unique scenarios, cyber challenges, to encourage community financial institutions to discuss operational risk issues and the potential impact of information technology disruptions on common banking functions.

FFIEC 11External Use: General Public

Page 12: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Financial Sector Cyber Exercise Template • The Financial Sector Cyber Exercise

Template is designed for smaller financial sector institutions to test their preparedness. • The template helps institutions run

their own internal cyber exercises and facilitates discussion on how best to engage with the national architecture for coordinating responses to significant cybersecurity incidents among government and industry.

FFIEC 12External Use: General Public

Page 13: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

FS-ISAC Cyber-Attack Against Payment Systems (CAPS) Exercise

• FS-ISAC CAPS exercise is a two-day, tabletop exercise held annually that simulates an attack on payment systems and processes. • The exercise is free and

open to non-FS-ISAC members.

FFIEC 13External Use: General Public

Page 14: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Information Sharing Resources

• DHS Automated Information Sharing Program • Financial Services Information Sharing and Analysis

Center (FS-ISAC) • Infragard • National Credit Union Information Sharing and Analysis

Organization (NCU-ISAO) • U.S. Secret Service Electronic Crimes Task Force • Financial Crimes Task Force • United States Computer Emergency Readiness Team

FFIEC External Use: General Public 14

Page 15: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

DHS Automated Information Sharing Program

• The Automated Information Sharing Program, or AIS, is a part of the DHS’s effort to create an ecosystem where as soon as a company or federal agency observes an attempted compromise, indicators can be shared in real time with all partners, protecting them from that particular threat.

FFIEC External Use: General Public 15

Page 16: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Financial Services Information Sharing and Analysis Center (FS-ISAC) • The FS-ISAC is a global

financial industry resource for cyber and physical threat intelligence analysis and sharing. • Membership in the FS-ISAC is

tiered and based upon institution size, but it also offers a free service to provide the most critical public alerts through its Critical Notification Only Participant (CNOP) program.

FFIEC 16External Use: General Public

Page 17: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Infragard

• InfraGard is a partnership between the FBI and members of the private sector. InfraGard provides a vehicle for seamless public-private collaboration that expedites the timely exchange of information and promotes mutual learning opportunities relevant to the protection of critical infrastructure.

FFIEC External Use: General Public 17

Page 18: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

National Credit Union Information Sharing and Analysis Organization • Presidential Executive Order 13691

directed DHS to encourage the development of ISAOs to address information sharing beyond the traditional infrastructure sectors.

• NCU-ISAO’s mission is to enable and sustain credit union critical infrastructure cyber resilience and preserve the public trust by advancingtrusted security coordination and collaboration to identify, protect, detect, respond, and recover from threats and vulnerabilities.

FFIEC External Use: General Public 18

Page 19: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Financial Crimes Task Force

• Electronic Crimes Task Forces: The mission of this national network is to prevent, detect, and investigateelectronic crimes, includingpotential terrorist attacks against critical infrastructure and financial payment systems.

• Financial Crimes Task Force: Combines the resources of the private sector and other law enforcement agencies in an organized effort to combat threats to U.S. financial payment systems and critical infrastructures.

FFIEC External Use: General Public 19

Page 20: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

United States Computer Emergency Readiness Team • As part of the NCCIC, the United

States Computer Emergency Readiness Team (US-CERT) respondsto major incidents, analyzing threats, and exchanging critical cybersecurity information with trusted partners around the world. • US-CERT regularly publishes timely

information about current vulnerabilities, exploits, and other security issues.

FFIEC External Use: General Public 20

Page 21: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Response and Reporting

• DHS Cyber Incident Reporting Guide • FBI’s Internet Crime Complaint Center (IC3) • Financial Crimes Enforcement Network (FinCEN) • Sheltered Harbor • Reporting to Primary Regulator

FFIEC External Use: General Public 21

Page 22: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

DHS Cyber Incident Reporting Guide

• The DHS Cyber Incident Reporting Guide provides information on the importance of reporting cyber incidents. • Victims of a cyber incidents can

receive assistance from government agencies, which ar

eprepared to investigate incidents, mitigate consequences, and help preventfuture incidents.

FFIEC External Use: General Public 22

Page 23: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

FBI’s Internet Crime Complaint Center (IC3) • The Internet Crime Complaint Center

provides the public with a reliable and convenient reporting mechanism to submit information to the FBI concerning suspected internet-facilitated criminal activity and to develop effective alliances with law enforcement and industry partners. Information is analyzed and disseminated for investigative and intelligence purposes to law enforcement and for public awareness.

FFIEC External Use: General Public 23

Page 24: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Financial Crimes Enforcement Network (FinCEN) • Financial institutions can play an

important role in protecting the U.S. financial system from these threats.

• Institutions should determine if filing a Suspicious Activity Report (SAR) is required or appropriate, as in the case of an unauthorized electronic intrusion intended to damage, disable, or otherwise affect critical systems.

• When filing is not required, institutions may file a SAR voluntarily to aid law enforcement in protecting the financial sector.

FFIEC 24External Use: General Public

Page 25: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Sheltered Harbor

• Sheltered Harbor is a voluntary industry initiative launched in 2015 following a series of cybersecurity simulation exercises between public and private sectors, known as the Hamilton Series. Its purpose is to promote the stability and resiliency of the financial sector and to preserve public confidence in the financial system.

FFIEC External Use: General Public 25

Page 26: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

Regulatory Reporting

• If a cyber incident results in unauthorized access to or use of sensitive customer information, the institution should notify its primary federal or state regulator(s). In all other instances where institutions are victims of cyber-attacks, they are encouraged to inform law enforcement authorities and notify their primary regulator(s).

FFIEC 26External Use: General Public

Page 27: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

DHS Introduction

• Rick Lichtenfels • Cyber Hygiene Branch Chief • DHS NCATS

FFIEC External Use: General Public 27

Page 28: FFIEC Cybersecurity Resource Guide Cyber Resources Guide Webinar...D HS Cyber Incident Reporting Guide • The DHS Cyber Incident Reporting Guide provides information on the importance

FFIEC

Questions

Patrick Kelly OCC

James Brignac FDIC

Tim Segerson NCUA

Jami Flynn CSBS

Chris Olson Federal Reserve Board

Jeff Perdue BCFP

External Use: General Public 28