HomeIP ArticlesIndustriesAbout Us
Events, Reports & NewsRisk ModelContact UsPress
Operational RisksOnline Brand RatingPrivacy Security RatingProtecting Consumers

Intellectual
Property and
Information Security
Governance

IP Governance Task Force

Standards for Safeguarding IPtm

Information Security Governance Model
Visit:
IS Governance

Reports, Public Comments, Articles, Seminars:

Date             Event/Report

Location

Contact

8-27-07

Intellectual Property Supervisory Guidances and Enforcement Cases from the FDIC, FFIEC, FINCEN, FTC, FRB, NCUA, OCC, and OTS on Preventing, Monitoring and Reporting Corporate Identity Theft, an Unfair and Deceptive Act per FTC ACT

 

Task Force

7-23-07

Information Security Governance Framework: 7 Key Questions for Audit Committees  

Task Force

7-23-07

Operational Risks: Information Security Governance: Ohio, Indiana and Michigan Banks and Credit Unions  

Task Force

7-23-07

Information Security Governance Framework (pdf file: 2.6 mb) a 45 page narrative of the Information Security Governance Framework and each of its Matrixes based on federal regulations of GLBA, FDICIA Section 112, FTC ACT, Sarbanes-Oxley for financial firms regulated by the FDIC, FRB, NCUA, OCC and OTS.

ISGovernance.com

 Task Force

5-29-07

Information Security Governance, Compliance and Metrics – Basel II & Model Privacy Form; Comments for Notices of Proposed Rules
Comments - Dated 5-29-07
Information Security Governance Framework: Matrixes A-E2
 

Task Force

3-27-07

Resolution on Identity Theft, Phishing and Consumer Confidence

Transatlantic Consumer Dialogue (TACD)

Task Force

3-6-07

IP Audit and Fraud Report V1 - Ohio Banks and Credit Unions
Press Release
Table of Contents and Metric Summary
IP Audit and Fraud Report V1 (5.25 mb)
IP Governance Dashboard
IP Governance Standards (extracted from report)
IP Governance Standard #1: Online Identity Theft Definition
  

Task Force

3-5-07

IP Governance Operational Risk Management, Quantification and Rating Model (Updated 3-5-07, 2 mb)  

Task Force

3-1-07

Article: "Perfect Storm", Published by Complinet

  Complinet

Task Force

10-26-06

Missouri Bankers Association - Bank Legal Issues Conference

Columbia, Mo.

Patrick J. Whalen,  Beck Miller

9-18-06

Public Comments by the Task Force for "Identity Theft Red Flags"

FDIC Public Comments

Task Force

4-17-06

Public Comments by the Task Force for the FTC's Technology Hearings   

   Task Force

News on Corporate Identity Fraud, Phishing, Identity Theft:
Link to news articles
Regulatory Fines
DateCountryFine
2-15-07UKFSA fines Capital One £175,000 for PPI sales failures. The Financial Services Authority has today fined Capital One Bank (Europe) Plc (Capital One) £175,000 for failing to have adequate systems and controls for selling Payment Protection Insurance (PPI) insurance and for failing to treat its customers fairly.
2-14-07UKFSA fines Nationwide £980,000 for information security lapses. The Financial Services Authority (FSA) has today fined Nationwide Building Society (Nationwide) £980,000 for failing to have effective systems and controls to manage its information security risks. The failings came to light following the theft of a laptop from a Nationwide employee's home last year.
1-30-07UKFSA fines GE Capital Bank: The Financial Services Authority has today fined GE Capital Bank Ltd (GECB) £610,000 for failing to have adequate systems and controls for selling insurance which includes Payment Protection Insurance (PPI) and for failing to treat its customers fairly.
1-18-07UKFSA fines W Deb MVL Plc (formerly Williams de Broe Plc) £560,000 for breaches of FSA principles.
12-20-06UKFSA fines home shopping company £270,000 for PPI selling failures
10-26-06UKFSA fines loan broker £455,000 for PPI selling failures
3-16-06UKFSA fines Capita Financial Administrators Limited £300,000 in first anti-fraud controls case. The FSA found that CFA had inadequately considered the risks posed by fraud and had not maintained effective systems and controls to mitigate the risk of fraud. This is the first time the FSA has fined a firm for failures of anti-fraud systems and controls.
   
 USAFTC: Privacy Initiatives: Unfairness and Deception
 USAFTC: Financial Privacy: Safeguards Rule (Gramm-Leach-Bliley Act)
1-19-05USAFRB Vs Huntington Bancshares, Inc., relating to its corporate governance, internal audit, risk management, and financial and regulatory reporting; FDICIA Section 112      
 USAFINCEN: Enforcement Actions
International Studies on Information Security Risks: Identity Theft & Phishing
4-2-07Can.CIPPIC: Release Working Papers on ID Theft - Canada, US, UK, Australia, France 
(The Canadian Internet Policy and Public Interest Clinic)
2-5-07UKFSA: Financial Risk Outlook 2007
7-31-06UKSOCA: UK Threat Assessment 2006/7
3-24-06UKSOCA: SOCA Annual Plan 2006/07
1-24-06UKFSA: Financial Risk Outlook 2006
11-04UKCountering Financial Crime Risks in Information Security Financial Crime Sector Report
Proposed & Pending Regulations on Identity Theft, Privacy, Operational Risks   
SourceIssued DateReply Deadline DateCommentsSubject
Senate

5/4/06

Section-by-section Analysis of the Financial Services Regulatory Relief Act of 2006
- Section 609: This section exempts certified public accountants from compliance with the disclosure requirements of section 503(a) of the Gramm-Leach-Bliley Act.
-Section 728: This section directs the agencies to finalize a proposal for a uniform simplified privacy notice to satisfy the requirements of the Gramm-Leach-Bliley Act.

FDIC      Link to FDIC Federal Register Citations
FDIC

3-21-07

  TBD

 

Federal Regulators Seek Public Comment on Model Privacy Notice
Federal Register

2-28-07

5-29-07

FDICProposed Supervisory Guidance for Internal Ratings-Based Systems for Credit Risk, Advanced Measurement Approaches for Operational Risk, and the Supervisory Review Process (Pillar 2) Related to Basel II Implementation.
Basel

2-7-07

4-18-07

BaselPrinciples for home-host supervisory cooperation and allocation mechanisms in the context of Advanced Measurement Approaches (AMA) – consultative document
Federal Register

12-26-07

3-26-07

FDICRisk-Based Capital Guidelines; Capital Adequacy Guidelines; Capital Maintenance: Domestic Capital Modifications. 12 CFR Part 325 - RIN 3064-AC96.
Federal Register

9-25-06

3-26-07

FDICRisk-Based Capital Standards: Advanced Capital Adequacy Framework. 12 CFR Part 325. RIN 3064-AC73.
Federal Register

7-18-06

9-18-06

FDICIdentity Theft Red Flags and Address Discrepancies Under the Fair and Accurate Credit Transactions Act of 2003; Proposed Rule