21.12.2012 Views

Banking and Finance Sector-Specific Plan - U.S. Department of ...

Banking and Finance Sector-Specific Plan - U.S. Department of ...

Banking and Finance Sector-Specific Plan - U.S. Department of ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

• Underst<strong>and</strong>ing <strong>and</strong> Avoiding <strong>of</strong> the Insider Threat;<br />

• Financial Information Tracing <strong>and</strong> Policy Enforcement;<br />

• Testing; <strong>and</strong><br />

• St<strong>and</strong>ards for Measuring Return on Investment <strong>of</strong> CIP <strong>and</strong> Security Technology.<br />

The impact <strong>and</strong> timing <strong>of</strong> trends contributing to the challenges was assessed <strong>and</strong> recommendations made for research that<br />

would support the financial services industry through these challenges.<br />

7.3 <strong>Sector</strong> R&D <strong>Plan</strong><br />

In 2006, the FSSCC R&D Committee began an effort to build on the sector’s research challenges. The committee drafted a<br />

financial services sector research agenda demonstrating how FSSCC research challenges relate to the NIPP. It is intended that<br />

DHS should use this research agenda as input to prioritize CI/KR research supporting the <strong>Banking</strong> <strong>and</strong> <strong>Finance</strong> <strong>Sector</strong>.<br />

An analysis <strong>of</strong> both documents indicates that there are many areas common to the NIPP <strong>and</strong> FSSCC R&D research programs<br />

<strong>and</strong> that, with minor modifications, the two programs can be synchronized to mutual benefit. Especially noteworthy are the<br />

following national R&D themes that would have the most impact on the financial services sector:<br />

• Protection <strong>and</strong> Prevention Systems;<br />

• Advanced Infrastructure Architecture; <strong>and</strong><br />

• Human <strong>and</strong> Social Issues.<br />

The FSSCC R&D Committee recommends that research in these areas be given national priority <strong>and</strong> st<strong>and</strong>s ready to assist<br />

in developing a coordinated plan through the Treasury <strong>Department</strong> <strong>and</strong> critical sectors, <strong>and</strong> the overall NIPP program. (See<br />

appendix on the FSSCC R&D Agenda.)<br />

7.4 R&D Management Processes<br />

The Treasury <strong>Department</strong> has been working with the Critical Information Infrastructure Protection Interagency Working<br />

Group to draft the physical <strong>and</strong> cyber portion <strong>of</strong> the national CIP R&D strategy. The Treasury continues to exchange facts <strong>and</strong><br />

information with numerous individuals <strong>and</strong> organizations both inside <strong>and</strong> outside the sector to identify R&D projects that will<br />

benefit the financial services sector with the goal <strong>of</strong> making the sector more resilient against external <strong>and</strong> internal threats. The<br />

Treasury <strong>Department</strong> believes that this pragmatic approach is the best method <strong>of</strong> making the sector more secure.<br />

The FSSCC R&D Committee is organized to support R&D initiatives to ensure the protection <strong>and</strong> resilience <strong>of</strong> the physical <strong>and</strong><br />

electronic infrastructure <strong>of</strong> the <strong>Banking</strong> <strong>and</strong> <strong>Finance</strong> <strong>Sector</strong>’s activities that are vital to the Nation’s economic well-being. The<br />

committee provides guidance for the creation <strong>of</strong> a FSSCC R&D Agenda to identify <strong>and</strong> prioritize areas <strong>of</strong> need. The committee<br />

also provides industry, research/academia, <strong>and</strong> the public with insights into the opportunities <strong>and</strong> requirements. Further,<br />

the committee facilitates the coordination <strong>of</strong> financial services sector-wide R&D voluntary activities <strong>and</strong> initiatives designed to<br />

improve the sector’s critical infrastructure protection <strong>and</strong> homel<strong>and</strong> security.<br />

The FSSCC R&D Committee operates with the following charter:<br />

• Create a FSSCC R&D Agenda to identify <strong>and</strong> prioritize the areas <strong>of</strong> need so that the most promising opportunities can be<br />

found for R&D initiatives to improve the financial services sector’s critical infrastructure protection significantly;<br />

<strong>Banking</strong> <strong>and</strong> <strong>Finance</strong> <strong>Sector</strong>-<strong>Specific</strong> <strong>Plan</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!