Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2026 GBAF Publications Ltd - All Rights Reserved. | Sitemap | Tags | Developed By eCorpIT

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Technology > Do messaging apps put the financial services industry at risk?
    Technology

    Do messaging apps put the financial services industry at risk?

    Published by linker 5

    Posted on July 13, 2020

    7 min read

    Last updated: January 21, 2026

    An illustration highlighting the risks of messaging apps in the financial services industry, emphasizing compliance with regulations such as GDPR. This image relates to the article's discussion on how messaging tools can jeopardize security and data privacy.
    Professional communication through messaging apps poses risks in finance - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    By Ashley Friedlein, founder and CEO of Guild, independent and ad-free messaging platform for professional groups, networks and communities.

    The use of messaging apps for professional communications has soared, in part, accelerated by the coronavirus pandemic as more and more people are forced to work from home. This increase has been seen across all industries.

    In highly-regulated environments, such as the financial sector, employees should be aware of financial regulations when using messaging apps, but also those relating to security, transparency, and data privacy laws, such as General Data Protection Regulation (EU GDPR).

    Not doing so puts organisations at risk of non-compliance, which can result in serious penalties.

    As far back as 2017, the Financial Conduct Authority (FCA) highlighted the risks of using WhatsApp. Following this, the Securities and Exchange Commission (SEC) issued guidance in December 2018 outlining that they were responsible for monitoring electronic messaging, including instant messaging apps.

    Despite regulators being clear about the risks of using messaging services, some financial firms seemingly failed to develop and implement robust guidelines around the use of messaging apps for professional purposes.

    In January 2020, a senior credit trader at JP Morgan was suspended for communication with colleagues via WhatsApp, with KPMG, Jefferies, and VTB Capital also being investigated after employees were found to be using messaging apps.

    Deutsche Bank took steps to ban all text messaging and communication apps to improve its compliance standards, but many are still yet to follow suit.

    So, what are the implications of failing to implement a robust policy around the tools used to communicate within a bank or other regulated entity?

    Privacy & Security

    Consumer messaging apps in the workplace are challenging for IT, HR, corporate governance and compliance teams due to data privacy laws such as the GDPR and CCPA. The financial and reputational cost of misuse in these ‘shadow communications’ channels can be significant.

    Taking WhatsApp, one of the most widely used consumer messaging apps as an example, any organisation using the platform could be non-compliant with the GDPR privacy regulation for the following reasons:

    • Lack of explicit consent – anyone can be added to a WhatsApp group without explicit consent. WhatsApp has added functionality to prevent specific users from doing this, but this is not enabled by default. Additionally, contacts can upload data to WhatsApp/Facebook if they give access to their contacts/address book, even though those contacts have not given consent.
    • Lack of ability to delete information – after a certain time content posted to WhatsApp cannot be deleted.
    • Lack of ability to get your own data back (SAR – Subject Access Request) – WhatsApp cannot provide an individual with messages they have posted, only profile info.
    • Data is transferred outside the EU zone – it is not very clear where exactly WhatsApp/Facebook moves the data it holds.

    In many different scenarios, the use of WhatsApp for business purposes potentially breaches GDPR. With consumer messaging apps, many companies do not even know what groups exist, let alone who is in them, or whether former employees or contractors still have access to corporate information that they should not, increasing the risk of data breaches from occurring.

    Transparency

    Following the global financial crisis more than 10 years ago, financial institutions have had to work hard to demonstrate transparency. Increased regulation, including EMIR, the Dodd Frank Act, and MiFID II, have been put in place to give regulators all the information they need to better identify risk and detect market abuse, meaning financial organisations can no longer claim that they had limited visibility, and therefore, no way of predicting another crisis from occurring.

    While regulation is helping to increase transparency in the sector, consumer messaging apps like WhatsApp, Signal and Telegram have provided unofficial communication channels that are difficult to monitor, resulting in a total lack of visibility for employers and regulators alike. This increases the risk of employees taking advantage of situations, whether this is to conduct business in a way that benefits them, or their clients in a way that could be considered immoral, or illegal.

    Like most businesses, Financial organisations have a legal obligation to keep a record of conversations between themselves and their employees, clients, or stakeholders. In the case of legal challenges, the organisation may need to provide a record of these conversations. However, many consumer messaging apps store data locally rather than centrally in the cloud, so there is no such record of conversations, putting firms at serious risk.

    Organisations also have legal obligations and a duty of care around protecting their employees and ensuring adequate levels of oversight, governance and control, for example, to protect against bullying, harassment, or inappropriate behaviours in the workplace. Again, a lack of visibility and transparency around consumer messaging apps, including the ability to delete messages, makes it difficult for HR departments and legal teams to act quickly, and may inhibit their ability to collect evidence.

    Terms of service

    Not only are consumer messaging apps not fit for purpose in a corporate setting, it is likely that it is against the platform’s own terms of service to utilise them for business purposes.

    WhatsApp is used by over 40% of UK workers for professional purposes. Aside from the privacy and other legal problems, this appears to violate WhatsApp’s own terms of service.

    “WhatsApp is committed to using the resources at its disposal–including legal action–to prevent abuse that violates our Terms of Service, such as automated or bulk messaging, or non-personal use.”

    Additionally, its terms state: “We make no representations or warranties that our Business Services meet the needs of entities regulated by laws and regulations with heightened confidentiality requirements for personal data, such as healthcare, financial, or legal services entities.”

    What can the financial service industry do to minimise risk when using messaging services?

    Companies operating in the financial services industry require a tailored approach to messaging to minimise risk. Messaging apps provide many benefits, such as increased productivity and collaboration, and so excluding them from communications completely can close off channels that improve operational efficiency.

    After Deutsche Bank banned all text messages and communication apps on work-issued

    devices in order to improve its compliance standards, it introduced Symphony – an instant messaging service aimed at highly regulated financial firms and integrated it with consumer messaging app, WeChat. This has enabled the bank to be able to communicate with clients in real time, while also maintaining thorough and rigorous standards of data security and privacy protection.

    There are also professional messaging apps, such as Hospify (developed for the healthcare sector) and Guild (used by all sectors), that have been built specifically to be GDPR-compliant alternatives to consumer messaging apps like WhatsApp and Telegram.

    Security, transparency, and compliance

    No-one would argue that security, transparency, and compliance are anything but paramount in the financial services industry, but it is easy for unregulated consumer messaging apps to slip under the radar unless an organisation specifically seeks to acknowledge and address their use.

    As workplaces, working practises and channels of communications have evolved more in the past few months than they had over the past few years, in order to adhere to these 3 fundamental principles, it’s critical that businesses address the issues and risks associated with messaging apps by implementing robust policies around workplace communication and seeking viable, compliant alternatives.

    More from Technology

    Explore more articles in the Technology category

    Image for Debtist: Digital Debt Collection for Modern Businesses
    Debtist: Digital Debt Collection for Modern Businesses
    Image for Infosecurity Europe launches new Cyber Startup Programme to champion the next generation of cybersecurity innovators
    Infosecurity Europe launches new Cyber Startup Programme to champion the next generation of cybersecurity innovators
    Image for BLOXX Launches ĀRIKI BLOXX at Web Summit Qatar
    BLOXX Launches ĀRIKI BLOXX at Web Summit Qatar
    Image for Engineering Trust in the Age of Data: A Blueprint for Global Resilience
    Engineering Trust in the Age of Data: A Blueprint for Global Resilience
    Image for Over half of organisations predict their OT environments will be targeted by cyber attacks
    Over half of organisations predict their OT environments will be targeted by cyber attacks
    Image for Engineering Financial Innovation in Renewable Energy and Climate Technology
    Engineering Financial Innovation in Renewable Energy and Climate Technology
    Image for Industry 4.0 in 2025: Trends Shaping the New Industrial Reality
    Industry 4.0 in 2025: Trends Shaping the New Industrial Reality
    Image for Engineering Tomorrow’s Cities: On a Mission to Build Smarter, Safer, and Greener Mobility
    Engineering Tomorrow’s Cities: On a Mission to Build Smarter, Safer, and Greener Mobility
    Image for In Conversation with Faiz Khan: Architecting Enterprise Solutions at Scale
    In Conversation with Faiz Khan: Architecting Enterprise Solutions at Scale
    Image for Ballerine Launches Trusted Agentic Commerce Governance Platform
    Ballerine Launches Trusted Agentic Commerce Governance Platform
    Image for Maximising Corporate Visibility in a Digitally Driven Investment Landscape
    Maximising Corporate Visibility in a Digitally Driven Investment Landscape
    Image for The Digital Transformation of Small Business Lending: How Technology is Reshaping Credit Access
    The Digital Transformation of Small Business Lending: How Technology is Reshaping Credit Access
    View All Technology Posts
    Previous Technology Post6,500 missed opportunities to stop cybercrime in the UK each day
    Next Technology Post64% of people want more regulation to make AI safer