by Zach Duke | Nov 25, 2025 | Finosec CAT, Community Banking, Cybersecurity, Cybersecurity Assessment Toolkit, FFIEC
Why Inherent Risk Still Matters Even if You’ve Already Chosen Your Framework Many community banks have already selected a cybersecurity framework to replace the FFIEC Cybersecurity Assessment Tool (CAT). NIST CSF 2.0 is one of the most popular choices, and for good...
by Zach Duke | Nov 20, 2025 | Finosec CAT, Community Banking, Cybersecurity, Cybersecurity Assessment Toolkit, FFIEC, Financial Institutions, Risk Assessment
After the August 31st sunset of the FFIEC CAT, community banks have either started to transition away or are confirming their plan and evaluating frameworks such as the Cyber Risk Institute (CRI) Profile, NIST Cybersecurity Framework (CSF 2.0), or CIS Controls. Each...
by Zach Duke | Oct 23, 2025 | Vendor Management, Community Banking, Cybersecurity, Information Security, IT, IT Security
In today’s banking landscape, risk doesn’t just come from inside the building. Third-party vendors are now central to how financial institutions operate. They provide everything from core processing to cybersecurity tools. But with that reliance comes responsibility....
by Zach Duke | Oct 9, 2025 | Community Banking, Cybersecurity, Information Security, IT Security, Risk Management, Vendor Management
Information Security Officers wear a lot of hats: compliance coordinator, risk watchdog, IT translator, and sometimes the voice of reason in a room full of competing priorities. One of the toughest challenges? Convincing senior leadership that vendor management...
by Zach Duke | Sep 25, 2025 | Vendor Management, Community Banking, Cybersecurity, Cybersecurity Assessment Toolkit, FFIEC, Governance, IT, IT Security
With the FFIEC CAT officially sunset on August 2025, banks are rethinking how they manage cybersecurity oversight. But one area that can’t get lost in the shuffle? Vendor management. In fact, third-party risk is getting more scrutiny, not less, under new guidance. The...
by Zach Duke | Jul 24, 2025 | Information Security, Community Banking, Cybersecurity, Cybersecurity Assessment Toolkit, FFIEC
With the FFIEC Cybersecurity Assessment Tool (CAT) being sunset, financial institutions are evaluating their next move. Finosec’s modernized Cyber Assessment Tool offers a streamlined alternative that builds on the foundation of your existing work, without starting...