ADVERTISEMENT

BSP: Cybersecurity standards are updated as soon 'as the need arises'

Published Jan 17, 2022 02:30 pm

The Bangko Sentral ng Pilipinas’s (BSP) Cybersecurity Oversight and Surveillance Group is regularly updating its standards and protocols against cybersecurity threats amid the mounting number of bank hacking and fraud incidents taking place within the banking industry in the last couple of years.

Melchor Plabasan, who heads the BSP’s Technology Risk and Innovation Supervision Department, made the assurance during the Senate Committee on Banks, Financial Institutions and Currencies’ hearing on Monday, January 16, on the various measures that seek to protect financial consumers against fraudulent online banking transactions.

The committee, headed by Sen. Grace Poe, is also looking into the case of the 700 plus online bank accounts that were reportedly hacked last December 2021 involving bank account holders of BDO Unibank.

“Technology risk, is I think, one of the most dynamic regulations in the BSP. If there is a need to update, we will update so far, since its issuance back in 2018 we have already issued seeral amendments to take into account the evolving cyberthreat landscape and even the best practices,” Plabasan said after being questioned by Sen. Sherwin Gatchalian.

“So, if there are best pratices that need to be incorporated, we will definitely consider that in the amendment of our rules... It’s not (done) periodically, but as soon as the need arises,” Plabasan added.

“As soon as we get hold of the latest standards or as soon as information is available to us. Let’s say from our offsite supervision, then we will issue the necessary amendments. So there’s really no timeline, (but) as the need arises,” the BSP official stressed.

A victim of digital fraud himself, Gatchalian stressed the need to put up a stronger financial protection for financial consumers noting how the use of online financial services and the use of electronic payments have accelerated during the pandemic.

“We see that hackers and fraudsters have become more sophisticated and emboldened. It’s time we put this in place so that our promotion of financial digital payments would be more robust and consumer confidence will increase thereafter,” Gatchalian said.

Gatchalian lost P1-million to hackers when they hacked his credit card last year. He thanked the National Bureau of Investigation (NBI) for apprehending the perpetrators.

But the BSP’s cybersecurity team assured Gatchalian that the BSP operates a “dynamic policy framework on cyber resilience.”

“That’s the standards being established, and what banks are required to adhere to. Of course, we have on-site, off-site supervision program. It’s not only periodic on-site examination, but we have also ongoing off-site supervision of these institutions to ensure that they are compliant with our standards on cybersecurity,” Plabasan told Gatchalian.

“If some standards are not followed...we have an enforcement framework naman eh, so we can impose monetary or non-monetary sanctions for those banks or other financial institutions (FIs) that are not complying with cybersecurity standards being espoused by the BSP,” he assured the lawmaker.

Related Tags

Bangko Sentral ng Pilipinas BDO Unibank Sherwin Gatchalian bank hacking incident
ADVERTISEMENT
.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1561_widget.title }}

.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1562_widget.title }}

.most-popular .layout-ratio{ padding-bottom: 79.13%; } @media (min-width: 768px) and (max-width: 1024px) { .widget-title { font-size: 15px !important; } }

{{ articles_filter_1563_widget.title }}

{{ articles_filter_1564_widget.title }}

.mb-article-details { position: relative; } .mb-article-details .article-body-preview, .mb-article-details .article-body-summary{ font-size: 17px; line-height: 30px; font-family: "Libre Caslon Text", serif; color: #000; } .mb-article-details .article-body-preview iframe , .mb-article-details .article-body-summary iframe{ width: 100%; margin: auto; } .read-more-background { background: linear-gradient(180deg, color(display-p3 1.000 1.000 1.000 / 0) 13.75%, color(display-p3 1.000 1.000 1.000 / 0.8) 30.79%, color(display-p3 1.000 1.000 1.000) 72.5%); position: absolute; height: 200px; width: 100%; bottom: 0; display: flex; justify-content: center; align-items: center; padding: 0; } .read-more-background a{ color: #000; } .read-more-btn { padding: 17px 45px; font-family: Inter; font-weight: 700; font-size: 18px; line-height: 16px; text-align: center; vertical-align: middle; border: 1px solid black; background-color: white; } .hidden { display: none; }
function initializeAllSwipers() { // Get all hidden inputs with cms_article_id document.querySelectorAll('[id^="cms_article_id_"]').forEach(function (input) { const cmsArticleId = input.value; const articleSelector = '#article-' + cmsArticleId + ' .body_images'; const swiperElement = document.querySelector(articleSelector); if (swiperElement && !swiperElement.classList.contains('swiper-initialized')) { new Swiper(articleSelector, { loop: true, pagination: false, navigation: { nextEl: '#article-' + cmsArticleId + ' .swiper-button-next', prevEl: '#article-' + cmsArticleId + ' .swiper-button-prev', }, }); } }); } setTimeout(initializeAllSwipers, 3000); const intersectionObserver = new IntersectionObserver( (entries) => { entries.forEach((entry) => { if (entry.isIntersecting) { const newUrl = entry.target.getAttribute("data-url"); if (newUrl) { history.pushState(null, null, newUrl); let article = entry.target; // Extract metadata const author = article.querySelector('.author-section').textContent.replace('By', '').trim(); const section = article.querySelector('.section-info ').textContent.replace(' ', ' '); const title = article.querySelector('.article-title h1').textContent; // Parse URL for Chartbeat path format const parsedUrl = new URL(newUrl, window.location.origin); const cleanUrl = parsedUrl.host + parsedUrl.pathname; // Update Chartbeat configuration if (typeof window._sf_async_config !== 'undefined') { window._sf_async_config.path = cleanUrl; window._sf_async_config.sections = section; window._sf_async_config.authors = author; } // Track virtual page view with Chartbeat if (typeof pSUPERFLY !== 'undefined' && typeof pSUPERFLY.virtualPage === 'function') { try { pSUPERFLY.virtualPage({ path: cleanUrl, title: title, sections: section, authors: author }); } catch (error) { console.error('ping error', error); } } // Optional: Update document title if (title && title !== document.title) { document.title = title; } } } }); }, { threshold: 0.1 } ); function showArticleBody(button) { const article = button.closest("article"); const summary = article.querySelector(".article-body-summary"); const body = article.querySelector(".article-body-preview"); const readMoreSection = article.querySelector(".read-more-background"); // Hide summary and read-more section summary.style.display = "none"; readMoreSection.style.display = "none"; // Show the full article body body.classList.remove("hidden"); } document.addEventListener("DOMContentLoaded", () => { let loadCount = 0; // Track how many times articles are loaded const offset = [1, 2, 3, 4, 5, 6, 7, 8, 9, 10]; // Offset values const currentUrl = window.location.pathname.substring(1); let isLoading = false; // Prevent multiple calls if (!currentUrl) { console.log("Current URL is invalid."); return; } const sentinel = document.getElementById("load-more-sentinel"); if (!sentinel) { console.log("Sentinel element not found."); return; } function isSentinelVisible() { const rect = sentinel.getBoundingClientRect(); return ( rect.top < window.innerHeight && rect.bottom >= 0 ); } function onScroll() { if (isLoading) return; if (isSentinelVisible()) { if (loadCount >= offset.length) { console.log("Maximum load attempts reached."); window.removeEventListener("scroll", onScroll); return; } isLoading = true; const currentOffset = offset[loadCount]; window.loadMoreItems().then(() => { let article = document.querySelector('#widget_1690 > div:nth-last-of-type(2) article'); intersectionObserver.observe(article) loadCount++; }).catch(error => { console.error("Error loading more items:", error); }).finally(() => { isLoading = false; }); } } window.addEventListener("scroll", onScroll); });

Sign up by email to receive news.