Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2026 GBAF Publications Ltd - All Rights Reserved. | Sitemap | Tags | Developed By eCorpIT

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Technology > Why the financial services industry’s biggest cyber threat may be closer to home
    Technology

    Why the financial services industry’s biggest cyber threat may be closer to home

    Published by Jessica Weisman-Pitts

    Posted on January 10, 2022

    5 min read

    Last updated: January 28, 2026

    This image illustrates the financial challenges faced by Thames Water, including its restructuring efforts and the conflict with Class B creditors. The article discusses how the utility company aims to stabilize its finances amid competing plans.
    Thames Water financial restructuring proposal amidst Class B creditor dispute - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Quick Summary

    Financial services face growing cyber threats, both external and internal, necessitating robust cybersecurity strategies to protect sensitive data.

    Financial Services Face Growing Internal Cyber Threats

    By Ian McShane, Field CTO, Arctic Wolf

    Whether it’s fundamental changes to their operations or ways of working, there is no doubt companies in the financial services industry have particularly felt the impact of the pandemic over the last two years. The accelerated shift into our now established hybrid way of working, coupled with the increased expectation from their customers wanting to transform their digital capabilities, means financial institutions have had to rapidly adapt, and are fast learning 2022 will bring more of the same.

    However, it is in fact these radical transformations that are now making financial services businesses a very attractive target for cybercrime. Whether it’s a high street bank or a large scale investment fund, cyber criminals are targeting companies within the sector in order to steal money, hijack client information or destroy critical information to disrupt services. According to a report from the DTCC, cyber attacks are now considered the number one threat to the financial markets, closely followed by COVID-19 and geopolitical tensions. In addition, recent research from Boston Consulting Group, also states banking and financial institutes are 300 times more susceptible to cyber attacks than other companies.

    Besides the obvious external cybersecurity threats coming from nation states such as Russia and China, there are a number of other forces closer to home that are driving this surge in security vulnerability for the financial services industry. It’s therefore critical that companies fully understand the extent of the threats they now face and use this information to raise effective defences against them.

    One of the key areas currently being overlooked is the vast amount of new software applications now being deployed by businesses in the sector. The rapid changes companies have needed to make means they are still trying to play catch-up to ensure their cybersecurity operations match the levels required to keep bad actors at bay. These software innovations, which support a more digital first working environment, are giving cybercriminals an open door into a company’s network, data and its infrastructure.

    Even when businesses have all the cybersecurity defences in place to protect them from external attacks, these can all be undone if the real threat is coming from the people within the business. This is another big challenge for the financial service sector as it grapples with insider rouge operators within their own organisations. Increasing numbers of their employees, fuelled by disgruntlement and poor pay, are deliberately attacking their own organisations using the sensitive knowledge they have accrued while being an employee. According to a 2020 IBM report, three quarters of insider attacks are in fact deliberate, while research from the Ponemon Institute shows there has been a 47 percent increase in insider threats within the last three years.

    Worse still, a 2020 study from cybersecurity insiders emphasises that these threats are becoming more frequent, trickier to detect, and more damaging. Recently, an undisclosed New York credit union faced a breach in sensitive information due to an insider. After being sacked, a former employee was able to login into company systems after termination and, within forty minutes, deleted 21.3 GB of company data and files. It’s plain to see financial organisations need to pay as much attention to the internal threats as they do the external ones.

    So what is the answer? In short, the internal cyber threats facing the financial services sector highlights just how important it is to have a cohesive and centralised approach to information security and cyber security.

    Every day, businesses rely on applications and platforms that serve as the system-of-record for critical functions like HR, CRM, and finance, but most lack an option for the same business outcomes in the cybersecurity space. This is because most organisations will discover that for them, even in the financial sector, a true 24×7 Security Operations approach is out of reach – they will find it too expensive, challenging, and ultimately ineffective to build, maintain, and run a 24×7 Security Operations Centre in-house.

    The fact remains that to mitigate catastrophic and costly financial losses, regulatory fines and devastating reputational impact, as well as loss in customers’ data and trust, financial institutions must ensure they invest in robust security operations in order to monitor, detect, and help their staff  respond to potential security risks, including insider threats, around the clock.

    The lack of available and experienced staff, the cost and time it takes to rip and replace their existing technology, and the sheer ineffectiveness of the tools available are accelerating the adoption of managed services like MDR, where businesses are quickly able to take advantage of their security vendor’s security analysts’ expertise, threat intelligence reports, and advanced technology to help address threats and cyber risk before consequential losses occur.

    Whilst ransomware continues to not only dominate the headlines but also blight many financial institutions, the threats presenting themselves to financial service institutions will continue well into 2022. IT leaders within this sector need to continue investing in the right blend of technology and talent to ensure they are protected as much as possible, not just from the external threats, but the internal ones as well. While there is no silver bullet to total cybersecurity, a managed service approach to Security Operations  can radically and rapidly bolster a company’s security posture. If this can be combined with a radical shift in culture, where all employees throughout the business – from the bank clerk to the CISO – understand the gravity of the cybersecurity threat they are facing, the financial services industry will feel better prepared for the next tide of threats coming their way.

    Sources:

    • https://www.computerweekly.com/news/252506646/Cost-of-ransomware-attack-in-financial-sector-exceeds-2m
    • https://www.reuters.com/business/finance/banks-ordered-promptly-flag-cybersecurity-incidents-under-new-rule-2021-11-18/
    • https://www.darkreading.com/attacks-breaches/new-financial-services-industry-report-reveals-major-gaps-in-storage-and-backup-security
    • https://www.finextra.com/pressarticle/90619/cyber-risk-seen-as-top-threat-to-financial-markets
    • https://arcticwolf.com/resources/blog/insider-threats-underscore-the-importance-of-managed-siem

    Key Takeaways

    • •Financial services are increasingly targeted by cybercriminals.
    • •Insider threats are a significant risk for financial institutions.
    • •Rapid digital transformation increases vulnerability.
    • •Effective cybersecurity strategies are essential.
    • •Internal threats require as much attention as external ones.

    Frequently Asked Questions about Why the financial services industry’s biggest cyber threat may be closer to home

    1What is the main topic?

    The article discusses the increasing cyber threats faced by the financial services industry, particularly from internal sources.

    2Another relevant question?

    How do insider threats impact financial institutions? Insider threats can lead to data breaches and financial losses.

    3Third question about the topic?

    What can financial services do to mitigate these threats? Implementing robust cybersecurity measures and monitoring internal activities are crucial.

    More from Technology

    Explore more articles in the Technology category

    Image for Debtist: Digital Debt Collection for Modern Businesses
    Debtist: Digital Debt Collection for Modern Businesses
    Image for Infosecurity Europe launches new Cyber Startup Programme to champion the next generation of cybersecurity innovators
    Infosecurity Europe launches new Cyber Startup Programme to champion the next generation of cybersecurity innovators
    Image for BLOXX Launches ĀRIKI BLOXX at Web Summit Qatar
    BLOXX Launches ĀRIKI BLOXX at Web Summit Qatar
    Image for Engineering Trust in the Age of Data: A Blueprint for Global Resilience
    Engineering Trust in the Age of Data: A Blueprint for Global Resilience
    Image for Over half of organisations predict their OT environments will be targeted by cyber attacks
    Over half of organisations predict their OT environments will be targeted by cyber attacks
    Image for Engineering Financial Innovation in Renewable Energy and Climate Technology
    Engineering Financial Innovation in Renewable Energy and Climate Technology
    Image for Industry 4.0 in 2025: Trends Shaping the New Industrial Reality
    Industry 4.0 in 2025: Trends Shaping the New Industrial Reality
    Image for Engineering Tomorrow’s Cities: On a Mission to Build Smarter, Safer, and Greener Mobility
    Engineering Tomorrow’s Cities: On a Mission to Build Smarter, Safer, and Greener Mobility
    Image for In Conversation with Faiz Khan: Architecting Enterprise Solutions at Scale
    In Conversation with Faiz Khan: Architecting Enterprise Solutions at Scale
    Image for Ballerine Launches Trusted Agentic Commerce Governance Platform
    Ballerine Launches Trusted Agentic Commerce Governance Platform
    Image for Maximising Corporate Visibility in a Digitally Driven Investment Landscape
    Maximising Corporate Visibility in a Digitally Driven Investment Landscape
    Image for The Digital Transformation of Small Business Lending: How Technology is Reshaping Credit Access
    The Digital Transformation of Small Business Lending: How Technology is Reshaping Credit Access
    View All Technology Posts
    Previous Technology PostUnderstanding your data to prevent data breaches
    Next Technology PostRe-Imagining Operational Risk Management through RegTech