Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking and Finance Review - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2026 GBAF Publications Ltd - All Rights Reserved. | Sitemap | Tags | Developed By eCorpIT

    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Technology > Executive Strategies for Cyber-Resilient Banking
    Technology

    Executive Strategies for Cyber-Resilient Banking

    Published by Wanda Rich

    Posted on September 9, 2024

    6 min read

    Last updated: January 29, 2026

    An illustration depicting executive strategies for enhancing cyber resilience in banking. This image highlights the need for banks to address third-party risks and secure digital assets as emphasized in the article.
    Cyber resilience strategies for banking executives in the digital age - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Tags:cybersecurityDigital transformationrisk managementfinancial institutions

    Table of Contents

    • Increase Resilience Against Third-Party Risk with These 5 Strategies
    • Why Banks Need Cyber Resilience
    • How to Build Resiliency and Protect Against Cyber Risk
    • Building Cyber Resilience Today

    Increase Resilience Against Third-Party Risk with These 5 Strategies

    David Monnier, Chief Evangelist at Team Cymru

    Banks today are embracing Digital Transformation to expand capabilities, maximize profits, and increase customer offerings. In 2023, 74% of banks were accelerating their digital transformation. This expansion wouldn’t be possible without third-party platforms and providers, like cloud infrastructures.

    However, financial institutions may not be fully aware of the cyber risks from these third-party providers due to a lack of visibility. 61% of organizations lack a comprehensive inventory of third parties with whom they share sensitive information — meaning three out of five organizations aren’t sure what assets third parties can access. Unfortunately, most vulnerabilities in bank assets are associated with third parties, according to our new report on “The Digital Risk Landscape.” Even one compromised vulnerability can impact operations and cause financial and reputational loss.

    Yet, banks can take steps to ensure their data, assets, and customers stay safe from attack. Here’s how top-level banking executives can foster a culture of cyber resilience and navigate digital risks.

    Why Banks Need Cyber Resilience

    We often hear about large-scale data breaches and attacks, but how do malicious actors typically infiltrate organizations? Through vulnerabilities in their external digital assets, which include web domains and IP addresses that make up various global assets and extend to create third-party dependencies. You can build the strongest wall around your organization, but if there’s a door open, someone can get in—especially if you don’t secure that door yourself and rely on someone beyond your control.

    For our “The Digital Risk Landscape” report, we analyzed the internet-facing digital assets of five top financial institutions and found that many doors are open, inviting attack:

    • Upwards of 7% of a bank’s digital assets could contain vulnerabilities ready to be exploited.
    • 75% of those vulnerabilities are associated with third-party platforms, Amazon being the most prevalent.
    • There were 537 vulnerabilities across those digital assets, with 161 unique IDs.

    What does this mean for banking leaders? First, even the largest financial institutions have vulnerabilities in their assets that can be exploited. Second, many banks lack a way to detect and remediate these vulnerabilities in a timely fashion, leaving the window open for attackers. Finally, third parties are associated with three out of four vulnerabilities.

    The real story is the financial impact these vulnerabilities can lead to if exploited: unauthorized data access; attacks introducing malicious code to unused memory; server shutdowns or system disruptions; disruption of web communications; and attacks displaying old or sensitive data.

    These impacts can lead to more than financial losses, such as damaged reputation, legal implications, loss of trust, regulatory fines, direct revenue loss due to downtime, increased IT costs to restore services, and contractual penalties.

    Even one unremediated vulnerability poses a lot of risk. What can banks do to protect themselves against these business impacts?

    How to Build Resiliency and Protect Against Cyber Risk

    To reduce the potential of exploitation, financial institutions need a process through which they can know what vulnerabilities exist in what assets, and take steps to remedy those vulnerabilities — essentially finding the open doors in the fortress wall and closing them. Here are five ways to build resilience and proactive protection in your security.

    1. Inventory your assets, adding context and business risk

    Fewer than 1% of companies have visibility into 95% or more of their assets, meaning that most companies simply don’t know what assets are under their purview to protect. To safeguard your financial organization from potential threats, start by understanding what your digital assets are and where they are. You can do this with security tools designed to inventory your assets, measure your attack surface, and assess vulnerabilities in both your and your third-party assets.

    1. Understand your third-party risk and where it’s coming from

    Just discovering and inventorying all your external digital assets is a start. Next, analyze the potential business risk of these assets on your operations. Some may be harmless even if compromised, while others could be highly impactful to operations. Additionally, raise your awareness around where your third-party risks may be coming from, like during new integrations, and the extent of your corporate reliance on third parties.

    1. Use greater visibility into third-party risk to improve regulatory adherence

    Regulatory bodies are increasingly emphasizing the importance of third-party asset visibility, as compromised third-party and supply chain assets can impact compliance as well — especially when malicious attacks on software supply chains haveincreased by 742% since 2019. Again, investing in tools that monitor your third-party partners and supply chain can help you detect potential compromise before it causes damage.

    1. Increase transparent communication around cyber risk

    In addition to using security tools to build cyber risk resilience, increase your communication to build resilience as well. Regular internal discussions about security postures and risk mitigation can raise awareness around best practices and contribute to a unified front when it comes to security. Communicating business impact and risk of undetected and unremediated vulnerabilities to leadership can also build support and funding for security initiatives.

    1. Plan for incident response and recovery

    Finally, resilience isn’t just monitoring your attack surface and taking action to remediate vulnerabilities. It also includes creating a plan for a quick response when one of the vulnerabilities has been exploited. Draw up a clear incident response and recovery plan informed by insights from vulnerability assessments with a playbook that includes specific roles and actions for a prompt and effective response to any security breach.

    Building Cyber Resilience Today

    Banks are accelerating their Digital Transformation today, but they’re incurring more risk by using even the most common and trusted third-party platforms. To stay ahead of malicious actors looking to exploit vulnerabilities, banking leaders can build their cyber resiliency by knowing their assets and each one’s business risk, increasing communication within their organization about cybersecurity topics and preparedness, and ensuring they have a robust playbook for incident response. Let these cyber resilience strategies be a foundation for your digital acceleration into the future.

    Author:

    David Monnier, Chief Evangelist at Team Cymru, brings over two decades of cybersecurity expertise, particularly in cyber intelligence. His career began in the U.S. Marine Corps, transitioning to pivotal roles in cybersecurity where he shaped advanced threat analysis systems and network defenses. At Team Cymru, David has led key initiatives to standardize and enhance the security of threat intelligence infrastructure, significantly impacting global internet safety. His work as a keynote speaker has influenced top industry events worldwide.

    Frequently Asked Questions about Executive Strategies for Cyber-Resilient Banking

    1What is cyber resilience?

    Cyber resilience refers to an organization's ability to prepare for, respond to, and recover from cyber attacks, ensuring that critical operations can continue even in the face of security incidents.

    2What is digital transformation?

    Digital transformation is the process of integrating digital technology into all areas of a business, fundamentally changing how it operates and delivers value to customers.

    3What is risk management?

    Risk management involves identifying, assessing, and prioritizing risks followed by coordinated efforts to minimize, monitor, and control the probability or impact of unfortunate events.

    4What are vulnerabilities in banking?

    Vulnerabilities in banking refer to weaknesses in systems or processes that can be exploited by cybercriminals, potentially leading to data breaches, financial loss, or operational disruptions.

    More from Technology

    Explore more articles in the Technology category

    Image for Engineering Trust in the Age of Data: A Blueprint for Global Resilience
    Engineering Trust in the Age of Data: A Blueprint for Global Resilience
    Image for Over half of organisations predict their OT environments will be targeted by cyber attacks
    Over half of organisations predict their OT environments will be targeted by cyber attacks
    Image for Engineering Financial Innovation in Renewable Energy and Climate Technology
    Engineering Financial Innovation in Renewable Energy and Climate Technology
    Image for Industry 4.0 in 2025: Trends Shaping the New Industrial Reality
    Industry 4.0 in 2025: Trends Shaping the New Industrial Reality
    Image for Engineering Tomorrow’s Cities: On a Mission to Build Smarter, Safer, and Greener Mobility
    Engineering Tomorrow’s Cities: On a Mission to Build Smarter, Safer, and Greener Mobility
    Image for In Conversation with Faiz Khan: Architecting Enterprise Solutions at Scale
    In Conversation with Faiz Khan: Architecting Enterprise Solutions at Scale
    Image for Ballerine Launches Trusted Agentic Commerce Governance Platform
    Ballerine Launches Trusted Agentic Commerce Governance Platform
    Image for Maximising Corporate Visibility in a Digitally Driven Investment Landscape
    Maximising Corporate Visibility in a Digitally Driven Investment Landscape
    Image for The Digital Transformation of Small Business Lending: How Technology is Reshaping Credit Access
    The Digital Transformation of Small Business Lending: How Technology is Reshaping Credit Access
    Image for Navigating Data and AI Challenges in Payments: Expert Analysis by Himanshu Shah
    Navigating Data and AI Challenges in Payments: Expert Analysis by Himanshu Shah
    Image for Unified Namespace: A Practical 5-Step Approach to Scalable Data Architecture in Manufacturing
    Unified Namespace: A Practical 5-Step Approach to Scalable Data Architecture in Manufacturing
    Image for Designing AI Agents That Don’t Misbehave
    Designing AI Agents That Don’t Misbehave
    View All Technology Posts
    Previous Technology PostHow the Proposed U.S. “Protecting Consumers from Payment Scams Act” Could Impact Financial Institutions’ Fraud Prevention Efforts
    Next Technology PostFactbox-Carmakers adjust electrification plans as EV demand slows