ECCT’s Regulatory Compliance Assessment Service is a "friendly audit" that determines
your credit union’s level of compliance with the latest NCUA and FFIEC regulations.
When an NCUA examiner performs a "Safeness and Soundness Review", they assess
and grade your credit union using virtually the same regulations specified by our service.
By assessing the credit union’s level of regulatory compliance prior to an actual
audit, appropriate actions can be taken in advance. ECCT simplifies the process
of interpreting regulations and how they apply to your credit union. A level of compliance
for each regulation is determined by an ECCT Security Engineer, who makes recommendations
and generates a report detailing all results.
Any or all of the items reviewed could be a part of your next audit. Knowing what
areas will be looked at, what questions may be asked, and where the credit union
environment could use improvement is extremely valuable.
Gramm Leech Bliley Act
ECCT includes NCUA, FFIEC and other regulations in our own Best Practices Compliance
Standards. By testing your organization's network using this comprehensive approach, you will
know down to the exact regulation what your regulatory compliance issues are.
ECCT has worked with most credit union data processors and understands the security
requirements necessary to maintain comprehensive security integrity throughout your
credit union network. Since every network is unique, understanding
how your data processor affects the rest of your network allows ECCT to make
qualified recommendations to further enhance your network's security.
FFIEC REGULATORY COMPLIANCE
PHYSICAL
- Access Prevention
- Media Controls
- Data Center
- Visitors
- Terminal Security
OPERATIONS
- Access Control
- Auditing
- Change Management
- Classification
- BCP/DRP
TECHNICAL
- Remote Access
- Configuration Management
- Data Security
- Vendor Security
- Incident Response
- Intrusion Prevention
MANAGEMENT
- Personnel Security
- Risk Management
- Security Program
|
|
NCUA REGULATORY COMPLIANCE
PHYSICAL
OPERATIONS
- Access Control
- BCP/DRP
- Change Management
TECHNICAL
- Data Security
- Incident Response
- Intrusion Prevention
MANAGEMENT
- Personnel Security
- Risk Management
- Security Program
|