Singaporean regulator reiterates concerns about cyber security of financial institutions

Maria Nikolova

Financial services providers are encouraged to implement measures to secure data stored on the cloud and their network connections to the cloud service provider.

The Cyber Security Advisory Panel (CSAP) of the Monetary Authority of Singapore (MAS) has reiterated concerns about cyber resilience of financial services providers and has made clear some expectations that it has about these companies with regard to their cyber security.

Singapore’s financial institutions (FIs) are increasingly using public cloud services for cost savings, system scalability, and speed to market. CSAP members suggest that small and medium sized FIs, given their limited resources and capabilities, can improve their cybersecurity by using reputable cloud solution providers that have strong cybersecurity capabilities. There is no clarification, however, on how a small financial business can actually afford itself to use the services of reputable cloud solution provider.

CSAP members also acknowledge there are concentration risks stemming from a growing number of financial services relying on a limited pool of cloud service providers. For that matter, FIs are expected to implement measures to secure data stored on the cloud and their network connections to the cloud service provider. Members also said that cloud service providers should provide greater transparency to their customers on how they implement security measures to protect their systems and information.

FIs are actively making their APIs available to third parties such as service providers and business partners to enrich the quality and customization of their financial services. As APIs expose FIs to higher risks of cyber threat, CSAP members proposed measures which FIs may adopt when embarking on their open API journey. These measures include performing risk assessment of the third parties using their APIs and monitoring activities related to API services for suspicious events.

Talking of cyber security, let’s recall that last month MAS opened consultation on measures to strengthen cyber resilience of financial institutions. There are still a couple of days left to submit comments on the proposals.

Under the proposals, FIs will be required to implement six cyber security measures:

  • address system security flaws in a timely manner;
  • establish and implement robust security for systems;
  • deploy security devices to secure system connections;
  • install anti-virus software to mitigate the risk of malware infection;
  • restrict the use of system administrator accounts that can modify system configurations; and
  • strengthen user authentication for system administrator accounts on critical systems.

The consultation closes on October 5, 2018.

Read this next

Retail FX

Unusual Whales taps Tastytrade as exclusive options broker

“We’re huge fans of Unusual Whales and the transparency they bring to the markets, enabling traders to make informed decisions.”

Industry News

GenAI can help transform OTC derivatives markets, said ISDA whitepaper

The risks of GenAI, however, include data breaches, regulatory issues, bias, as well as sub-standard or simply false results.

Institutional FX

B2Broker ups leverage on major Forex pairs, BTC and ETH

“This strategic update not only enhances our clients’ competitive edge but also augments their capacity to cater to the evolving demands of their clientele, attract new business, and elevate their service standards by leveraging our liquidity solutions.”

Industry News

Avraham Eisenberg convicted of $110 million DEX manipulation

Avraham Eisenberg, 28, has been convicted of commodities fraud, commodities market manipulation, and wire fraud in connection with the manipulation of the Mango Markets decentralized cryptocurrency exchange.

blockdag

BlockDAG Attracts $18.1M In Presale, Drawing Investors From Dogecoin And UNUS SED LEO for Potential 30,000x ROI

As the markets for Dogecoin and UNUS SED LEO exhibit volatility, a significant number of investors are redirecting their focus towards BlockDAG during its Batch 9 presale, which has remarkably gathered $18.1 million.

Digital Assets

Coinbase launches perpetual futures trading for Dogwifhat memecoin

Coinbase International Exchange (CIE) will introduce perpetual futures trading for Solana-based memecoin dogwifhat ($WIF), starting April 25. These open-ended futures contracts can be traded using the USDC stablecoin.

Digital Assets

Kraken acquires TradeStation’s cryptocurrency business

Kraken, the second-largest U.S.-based cryptocurrency exchange, has acquired the cryptocurrency arm of online brokerage TradeStation.

Retail FX

The Funded Trader is back? Traders report account closures

Prop trading firm The Funded Trader has updated its website with a few banners, nearly three weeks after it ceased all operations, with claims for a relaunch in the near future. However, there was no official statement on the relaunch on its website, Discord channel, or social media accounts yet.

Executive Moves

NAGA lures former Tickmill compliance exec Loukia Matsia

NAGA Group, a provider of brokerage services, cryptocurrency platform NAGAX and neo-banking app NAGA Pay, appointed Loukia Matsia as their new Head of Compliance and Anti-Money Laundering (AML).

<