The Cybersecurity of Banking and Finance

The Cybersecurity of Banking and Finance

Daniel Burrus 05/12/2019 5

I’ve discussed the importance of cybersecurity in healthcare due to the extremely sensitive personal data and the loss of trust if hacked. If healthcare data and a patient’s trust is as sensitive as research shows, then it's no surprise that the banking and financial industry is in serious need for anticipatory cybersecurity and digital data protection.

Banking Evolution

Up until the early eighties, transactions at financial institutions were handwritten, calculated long-hand, and done without the aid of a computer or calculator. Fast forward many years and not only can we make deposits and automate our bills to be paid online, but many employees of financial institutions are starting to work remotely as well.

Additionally, cash out technology is replacing physical cash and check exchange. PayPal, Venmo, Zelle Pay, Apple Pay and many more make the exchange of money a social network of sorts with minimal or no fees, depositing straight into your bank account digitally without the bank’s physical presence or involvement.

A Breach of Banking Security

Whether you drive to a bank to withdraw cash or log into your Venmo account and deposit cash digitally, banking is a personal and serious subject. Keep in mind, a financial institution has every last little detail about our financial situations.

Historically, a security breach in a bank was a takeover robbery. These now pale in comparison to cyber crimes committed against financial institutions, where they take sensitive information and even your identity. Much like the healthcare industry, financial institutions are faced with thousands of cyberattacks every single day, with ]the financial reward much greater than cash.

One example of a big bank that suffered a massive attack was Capital One. A single weak spot in cybersecurity allowed for cyber criminals to capture the personal information of over 100 million people and leak it to the world.

In the past year, there have been over 3,000 known successful cyberattacks against financial institutions according to the Treasury Department’s Financial Crimes Enforcement Network. In the case of the Capital One hack, their system flaw was described as a “configuration vulnerability” in its security software that compares to the tellers and security guards in past banking years all going to lunch with the vault wide open and a lobby full of people.

Time for a Change!

Anticipatory cybersecurity measures should be elevated at financial institutions much like the healthcare industry. Capital One’s hack is not the only large scale financial institution that succumb to hacking, as we saw with companies like Equifax and Morgan Stanley being attacked as well.

Banks and financial institutions implement cyber protection, but are they really safe? I know of several cyber companies that test for vulnerabilities in this industry and within 48 hours they gain access to everything the bank “assumed” was protected and safe. But cyber protection is ever changing and in need of constant testing for new vulnerabilities, and unfortunately, the vast majority of current cyber security strategies is about reacting quickly after the problem occurs rather than an anticipatory one.

The Hard Trend that cyber criminals continuously find a way to outsmart the institutions should be used by banks to pre-solve hacking problems before they become a nationally reported disaster, and be anticipatory by using behavior analytics and other anticipatory tools to prevent a breach of security and the breach of trust.

Cyber Solutions

When hacking occurs repeatedly in an industry, trust breaks because the customer does not feel their personal information is truly valued by the institution.

Hackers love to take advantage of weak passwords or use emails loaded with malicious computer code that lets them get inside the network while others scan for out-of-date hardware and software missing the latest security fixes. Likewise, cyber criminals work around the clock, therefore the IT firm or internal IT department must be in place to do the same.

Anticipatory cyber strategies put the cyber education of employees as a priority, with an outside firm doing security scans on everything before the problem occurs, having all software scanned and updated regularly, and making sure spam filters are adequate in your company’s email system.

Free Perimeter Test

Because we see cybersecurity as a strategic imperative in protecting your future brand and reputation, we have identified best-in-class cyber testing companies that will provide a free perimeter test of your organization to check for vulnerabilities in your cybersecurity defense system, provide the results of their tests and recommend immediate actions that can be taken to stop any uncovered leaks in your system. If you would like a free perimeter test to check for vulnerabilities in your cybersecurity defense system, please contact us.

Ask for your free perimeter test at: https://www.burrus.com/perimteter-test-request/

Share this article

Leave your comments

Post comment as a guest

0
terms and condition.
  • Alex Cooper

    Cybersecurity is the most critical and immediate concern for banks.

  • Melanie Norris

    Despite the growing threat and increasing pressure from regulators to confront it, many financial institutions have failed to engage cyber risk effectively.

  • Daniel Galigalis

    Cyberattacks are becoming more numerous, ambitious, and effective.

  • Steve Haden

    Banks must use the information they garner on data to determine where they are most exposed.

  • Confidus Solutions

    You have touched upon a very important and relevant topic for today. Thank you for sharing your professional knowledge.

Share this article

Daniel Burrus

Innovation Expert

Daniel Burrus is considered one of the world’s leading futurists on global trends and innovation. The New York Times has referred to him as one of the top three business gurus in the highest demand as a speaker. He is a strategic advisor to executives from Fortune 500 companies, helping them to accelerate innovation and results by develop game-changing strategies based on his proven methodologies for capitalizing on technology innovations and their future impact. His client list includes companies such as Microsoft, GE, American Express, Google, Deloitte, Procter & Gamble, Honda, and IBM. He is the author of seven books, including The New York Times and Wall Street Journal best-seller Flash Foresight, and his latest book The Anticipatory Organization. He is a featured writer with millions of monthly readers on the topics of innovation, change and the future and has appeared in Harvard Business Review, Wired, CNBC, and Huffington Post to name a few. He has been the featured subject of several PBS television specials and has appeared on programs such as CNN, Fox Business, and Bloomberg, and is quoted in a variety of publications, including The Wall Street Journal, Financial Times, Fortune, and Forbes. He has founded six businesses, four of which were national leaders in the United States in the first year. He is the CEO of Burrus Research, a research and consulting firm that monitors global advancements in technology driven trends to help clients profit from technological, social and business forces that are converging to create enormous, untapped opportunities. In 1983 he became the first and only futurist to accurately identify the twenty technologies that would become the driving force of business and economic change for decades to come. He also linked exponential computing advances to economic value creation. His specialties are technology-driven trends, strategic innovation, strategic advising and planning, business keynote presentations.

   
Save
Cookies user prefences
We use cookies to ensure you to get the best experience on our website. If you decline the use of cookies, this website may not function as expected.
Accept all
Decline all
Read more
Analytics
Tools used to analyze the data to measure the effectiveness of a website and to understand how it works.
Google Analytics
Accept
Decline