by Zach Duke | Oct 23, 2025 | Vendor Management, Community Banking, Cybersecurity, Information Security, IT, IT Security
In today’s banking landscape, risk doesn’t just come from inside the building. Third-party vendors are now central to how financial institutions operate. They provide everything from core processing to cybersecurity tools. But with that reliance comes responsibility....
by Zach Duke | Oct 9, 2025 | Community Banking, Cybersecurity, Information Security, IT Security, Risk Management, Vendor Management
Information Security Officers wear a lot of hats: compliance coordinator, risk watchdog, IT translator, and sometimes the voice of reason in a room full of competing priorities. One of the toughest challenges? Convincing senior leadership that vendor management...
by Zach Duke | Sep 25, 2025 | Vendor Management, Community Banking, Cybersecurity, Cybersecurity Assessment Toolkit, FFIEC, Governance, IT, IT Security
With the FFIEC CAT officially sunset on August 2025, banks are rethinking how they manage cybersecurity oversight. But one area that can’t get lost in the shuffle? Vendor management. In fact, third-party risk is getting more scrutiny, not less, under new guidance. The...
by Zach Duke | Jul 24, 2025 | Information Security, Community Banking, Cybersecurity, Cybersecurity Assessment Toolkit, FFIEC
With the FFIEC Cybersecurity Assessment Tool (CAT) being sunset, financial institutions are evaluating their next move. Finosec’s modernized Cyber Assessment Tool offers a streamlined alternative that builds on the foundation of your existing work, without starting...
by Zach Duke | Jul 10, 2025 | Cybersecurity Assessment Toolkit, Community Banking, Cybersecurity, FFIEC, Risk Assessment, Toolkit, Uncategorized
With the official sunset of the FFIEC Cybersecurity Assessment Tool (CAT) approaching, banks across the country are asking the same question: “What comes next?” For many institutions, the CAT has long served as the cornerstone of their cybersecurity self-assessment...
by Zach Duke | Jun 26, 2025 | Cybersecurity Assessment Toolkit, Community Banking, Cybersecurity, FFIEC, Uncategorized
One of the most overlooked challenges in cybersecurity governance isn’t the technology itself, it’s the communication. For many institutions, the gap between information security teams and executive leadership can lead to misunderstandings, misalignment, and missed...