SWIFT's payments community continues to suffer from a number of cyber-attacks and breaches, (some stemming from third parties). While all SWIFT customers remain primarily responsible for protecting their own environments, SWIFT aims to support its community in the fight against cyber-attacks and have identified 19 mandatory and 10 optional security controls for all its 11,000 customers worldwide.
For 2020, SWIFT promoted 2 existing advisory controls to mandatory and introduced 2 additional advisory controls resulting in 21 mandatory and 10 advisory controls in the CSCF v2020. All SWIFT users are required to undergo an “independent assessment” in support of their annual self-attestation in 2020 of their compliance with the SWIFT CSCF.
Perform an independent assessment to determine if your current controls satisfy SWIFT CSP requirements.
Develop workstreams to address identified controls gaps via both technology and process changes.
Work alongside your internal audit function to report on SWIFT CSP controls.
PwC understands SWIFT like no other as we have been performing an annual review of SWIFT under the internationally recognised ISAE3000 standard for over 10 years.
PwC have performed numerous SWIFT CSP security assessments worldwide and we have a proven approach and understanding of how to ensure the security of SWIFT infrastructure, while maintaining functionality.
PwC is the only ‘Big-4’ firm with a professional Certified Cyber Security Consultancy certificate from the NCSC. PwC are unique in our ability to leverage threat intelligence to build and simulate realistic cyber attack scenarios.
PwC will leverage inhouse accelerators and our extensive SWIFT CSP expertise to ensure that your needs are met ahead of SWIFTs required independent assessment due on 31 December 2020.