/security

News and resources on cyber and physical threats to banks and fintechs worldwide.

[Webinar] Reimagine Banking: How to effectively modernise your core and de-risk at the same timeFinextra Promoted[Webinar] Reimagine Banking: How to effectively modernise your core and de-risk at the same time

Join the Community

Learn, share and discuss the latest banking, payments and fintech innovations with the world’s largest fintech community.

Access unique research, content, and real-time alerts, services – free to registered members.

43,567 Members   21,538 Expert opinions

Join the community Sign in

253Reports  234Webinars

Find out more

/security

Expert opinions

Edvards Margevics

Edvards Margevics Co-partner at CONCRYT

Are truly frictionless payments a pipe dream?

Gone are the days of signing for a payment – even entering a pin number can prompt exasperated eyerolls from consumers accustomed to completing transactions with a single tap. That expectation has now made its way online, with Open Banking making it increasingly possible to pay without entering card details. But with authorised push payment (APP)

/security /payments

Konstantin Klyagin

Konstantin Klyagin Founder at Redwerk and QAwerk

5 Ideas to Keep SaaS Bugs Out of Sight

In 2024 the SaaS market started the year showing signs of recovery, with growth coming back, churn slowing down, businesses adapting to the new realities. The market is expected to reach $462 billion by 2028. As the market expands, competition is fierce. Some firms are shelling out more than 90% of their revenue just to attract new customers. If ...

/security /startups Fintech

Erica Andersen

Erica Andersen Marketing at smartR AI

The software ownership dilemma

Software ownership has undergone an interesting evolution. Traditionally, software producers retained ownership, through licensing or the use of Software as a Service (SaaS). However, the AI era provides an opportunity to bring about a significant shift. A key difference in the AI era is the increasing customization of software for individ

/ai /security Artificial Intelligence and Financial Services

Andrew Kays

Andrew Kays CEO at Socura

What D.O.R.A means for your security team

From January 2025, all UK financial organisations that do business in the EU must comply with the new Digital Operational Resilience Act (DORA). In all honesty, it’s a new regulation that forces organisations to do many things that they should have been doing for years. Most financial organisations will breeze through requirements such as red team...

/security /regulation Information Security

Will Glazier

Will Glazier Director - Threat Detection & ML at Cequence Security

Financial Organizations Can’t Stop at Security Frameworks to Protect Their APIs

In the world of financial services that encompasses banks, credit unions, payment card issuers, and insurance companies, safeguarding API security stands is a paramount concern. A single instance of a data breach or ongoing fraudulent activities resulting from API exploitation or misuse can significantly tarnish an organization's standing and draw...

/security API

/security

Trending

/security

Research

Impact Study

Microservices Architecture: Future-Proofing Payments Technology

It is high time for banks to move away from legacy thinking and embrace modernisation to remain competitive in the industry. Financial institutions have long been threatened by innovative, tech-savvy fintech firms that do not have to maintain decades-old back-office systems. Core banking systems within banks have evolved, but with additional pressure from incoming regulation and subsequent reporting, progression and modernisation has not kept pace with industry developments. In the US alone, the real-time payments market is expected to grow at a compound annual growth rate of 31% until 2030. An institution’s success in scaling their payment processing in response to this shift will rest heavily on how their systems are set up. Cloud-native payments processing is the most viable option to keep pace with innovation demand and competition; enabling banks to build upon flexibility, at low cost and risk. These enablers also make cloud infrastructure – both public and private – attractive for banks that have struggled to streamline, maintain and upgrade their legacy infrastructures. This research paper, produced in association with Diebold Nixdorf, explores the opportunities of microservices architecture. It discusses: Then & Now: Monolithic vs. microservices architecture Overcoming microservice challenges The benefits of a micro-approach Real-world examples and cases studies And more.

8 downloads

Impact Study

Payment Fraud in 2024: Who is Liable?

Fraud is a billion-dollar business in the Instant Payments era. Statistics show that ecommerce fraud is predicted to exceed $48 billion globally by the end of 2023 alone and could exceed $362 billion between 2023 and 2028.  In 2024, banks will not only contend with the changing liability landscape, but the upcoming adoption of ISO 20022 as well. Both represent a historical shift in the financial services industry. To prepare for a higher degree of liability in a data-rich environment, banks need to address the holistic landscape of fraud mitigation.  This Finextra impact study, produced in association with NICE Actimize, addresses the changing liability landscape and what banks need to do to prepare for regulatory changes and increased fraud protection.  We cover:  Shifting liability and the impact of new PSR regulation  ISO 20022’s impact on the financial industry  Financial industry priorities in 2024  And more. 

602 downloads

Impact Study

Fraud and AML Case Management: How to Operate at the Speed of Risk

The digital revolution has fuelled a surge in transactions, while economic turmoil, geopolitical tensions and shifting regulations have emboldened sophisticated financial criminals. As a result, fraud is costing financial institutions more than ever before.  Traditional siloed systems and manual process have left financial institutions vulnerable by drowning investigators and analysts in data, while starving them of actionable insights to stay ahead of risk.  This Finextra impact study, produced in association with NICE Actimize, explore how institutions can bolster their fraud management and anti-money laundering (AML) prevention systems to stay ahead of risk, reduce operational costs and investigations time, and meet changing business and regulatory requirements.  We cover:  How to resolve siloed case management  How to fix fractured data  How to create a faster, more intelligent workflow  And more. 

382 downloads

/security

FinextraTV

The Intersection of Wildlife Trafficking and Financial Crime

FinextraTV, Julia Thorn, Senior Marketing Manager, Financial Crime Compliance, LexisNexis® Risk Solutions and Robert Campbell, Programme Director of United for Wildlife, The Royal Foundation of The Prince and Princess of Wales, dive deep into their recently released report on how wildlife trafficking can be combatted with the power of collaboration. Exploring the objectives of the report, the pair doubled down on the importance of enforcement data and how this data can be used for good by looking for patterns that are more relevant to financial institutions than first thought. Further, financial institutions must consider wildlife trafficking as organised crime and as the money involved cannot be hidden under the bed - it moves through commercial entities such as airports and shipping ports - this form of money laundering must be mitigated.

/security

Long reads

Níamh Curran

Níamh Curran Senior Reporter at Finextra

How to pick a 3-D Secure provider

Amid increasing ecommerce sales, changing consumer expectations, and regulatory shifts, payments issuers and processors need to continually evolve to decrease risks from card not present (CNP) transactions and customer authentication process. As the number of online payments grows, organisations are at increased risk of loss as a result of CNP frau...

Retired Member

Retired Member

How FSI companies can leverage AI to enhance cybersecurity

With generative AI, UK financial services companies have an opportunity to unlock new possibilities through innovation, which can help them boost their resilience amid increasing cybersecurity threats. This will help them to better serve customers, increase growth and contribute to the country becoming an AI global leader. The financial services i...

Hamish Monk

Hamish Monk Reporter at Finextra

How to recover from a data breach

On 7th May, several China-sponsored cyber-attacks on the Ministry of Defence (MoD) compromised data from its outsourced payroll system, SSCL (a subsidiary of Paris-based Sopra Steria) – exposing the names and banking information of 270,000 past and present military personnel from the Royal Navy, Army, Royal Air Force. In the wake of this news, Fin...