
Barclays’ cyber chief: try to break your own IT defences
Banks “must go beyond vulnerability assessments”, conference hears

Vulnerability assessments are good as far as they go, but banks need to go beyond them to use ethical hacking, penetration testing and red-team physical testing, delegates at the OpRisk Asia conference in Singapore heard yesterday (April 25). Theo Nassiokas, Barclays’ director of cyber security for the Asia-Pacific region, warned vulnerability assessments could only be part of a proper cyber risk assessment.
“Ethical hacking – we go way beyond that,” he said. “We don’t just do vulnerability
Only users who have a paid subscription or are part of a corporate subscription are able to print or copy content.
To access these options, along with all other subscription benefits, please contact info@risk.net or view our subscription options here: http://subscriptions.risk.net/subscribe
You are currently unable to print this content. Please contact info@risk.net to find out more.
You are currently unable to copy this content. Please contact info@risk.net to find out more.
Copyright Infopro Digital Limited. All rights reserved.
As outlined in our terms and conditions, https://www.infopro-digital.com/terms-and-conditions/subscriptions/ (point 2.4), printing is limited to a single copy.
If you would like to purchase additional rights please email info@risk.net
Copyright Infopro Digital Limited. All rights reserved.
You may share this content using our article tools. As outlined in our terms and conditions, https://www.infopro-digital.com/terms-and-conditions/subscriptions/ (clause 2.4), an Authorised User may only make one copy of the materials for their own personal use. You must also comply with the restrictions in clause 2.5.
If you would like to purchase additional rights please email info@risk.net
More on Risk management
Wait in the Q: US banks hold back on tariff-related provisions
Lack of data on supply chain vulnerabilities creates challenges for early CECL adjustments
Rising systemic risk demands a new risk management paradigm
Reinsurers need insurance-linked securities to share burden of climate-related catastrophic risk
ECB removes need for governing council to approve CCP facility
New “automatic” facility will require safeguards that are “still being implemented”, bank says
Dodging a steamroller: how the basis trade survived the tariff tantrum
Higher margins, rising yields and stable repo funding helped avert another disruptive blow-up
BoE plans to link system-wide and individual stress tests
Meanwhile, ECB wants to broaden system-wide stress models to include central counterparties
Cyber insurance costs expected to rise as loss ratios worsen
Recent ransomware and tech failure events could feed through into higher premiums this year
The WWR in the tail: a Monte Carlo framework for CCR stress testing
A methodology to compute stressed exposures based on a Gaussian copula and mixture distributions is introduced
Repo clearing rule could raise SOFR volatility – OFR analysts
Analysis of 2022 data finds large divergence in tail rates but no change in median