August 15, 2011 8:45 PM
Posted by: David Schneier
cdo,
compliance,
foreclosure,
NCUA,
regulations,
regulatory,
Regulatory ComplianceI had the good fortune to rediscover a recent favorite book while driving to a client engagement last week. It was the audio version of Michael Lewis’s “The Big Short”. I had first listened to it last year and thought at the time it was about as good a...
Comments are off for this post.
August 3, 2011 6:16 PM
Posted by: David Schneier
compliance,
GLBA,
NCUA,
NPPI,
PII,
regulatory,
Regulatory Compliance,
Security,
security awarenessWhen I first started blogging professionally a colleague of mine cautioned that I should avoid posting anything where a client might recognize themselves in any story or example I might relate, good or bad. And so in the years since I've gone to sometimes great length to anonymize my content to...
July 17, 2011 10:01 PM
Posted by: David Schneier
assessment,
Audit,
compliance,
exam,
examinations,
GLBA,
regulatory,
Regulatory Compliance,
riskI do a whole lot of work with vendor management, a fact which most of my regular readers are quite aware of. And while I typically recoil when somebody else says of themselves what I'm about to say, I'm going to say it anyway; I'm really something of an expert on the discipline, particularly as...
July 8, 2011 3:16 AM
Posted by: David Schneier
cloud,
cloud computing,
compliance,
regulatory,
Regulatory ComplianceYears ago while working on SOX in its early days the team I managed started getting just a little tired of hearing that very term. It seemed that everything was "SOX-this" or "SOX-that" as everyone was trying to attach themselves to the massively intrusive new regulation and establish that they...
June 24, 2011 2:43 PM
Posted by: David Schneier
cloud,
compliance,
compliant,
FDIC,
FFIEC,
guidance,
NCUA,
PCI,
regulatory,
Regulatory Compliance,
regulatory guidanceOh how the times have changed. Once upon a time I was part of a group of peers who waited for new album releases, camped out over night for concert tickets and once even waited on line for the annual release of Strat-O-Matic's baseball set (perhaps the nerdiest thing I've ever done). And all of...
June 15, 2011 4:52 PM
Posted by: David Schneier
assess,
assessment,
Audit,
bank,
banking,
community bank,
compliance,
credit union,
CU,
data center,
GLBA,
NCUA,
regulation,
regulatory,
Regulatory Compliance,
SecurityI've been visiting with my mother who lives in a gated retirement community. In order for me to gain access to the development I need to pass through a security check point at the main gate. They ask me who I'm visiting, I provide my mother's name and either they find my name on the pre-approved...
June 3, 2011 3:18 PM
Posted by: David Schneier
assess,
assessment,
Audit,
compliance,
enterprise risk,
enterprise risk management,
ERM,
GLBA,
NCUA,
regulations,
regulatory,
Regulatory Compliance,
risk managementLast week while attending a banking conference I found myself in a conversation about Enterprise Risk Management (ERM). I had made the comment that I was tired of constantly hearing different definitions of what the discipline is and how it should be applied. It’s the...
May 20, 2011 3:29 AM
Posted by: David Schneier
compliance,
FFIEC,
GLBA,
regulation,
regulations,
regulatory,
Regulatory Compliance,
risk,
risk assessment,
risk-basedYears ago I added an addition to my first house. After my second child arrived, we had simply run out of room and decided it was easier to expand our current living space rather than trying to find a bigger one. Plans were drawn up, work scheduled and money deposited. Two days before the first...
May 8, 2011 4:46 AM
Posted by: David Schneier
breach,
compliance,
data breach,
FDIC,
NCUA,
regulations,
regulatory,
Regulatory ComplianceThe other day I was watching my cat attempt to catch his own tail. Now I know that by itself it’s not unusual for cats or dogs to attempt such a feat but for this one in particular it was unusual as I’ve never seen him do it before. He’s a remarkably athletic animal and...