March 9, 2018 By Shane Schick 2 min read

The World Economic Forum (WEF) enlisted several large corporations to join its fintech cybersecurity consortium, which will develop a system to evaluate the way emerging technology companies and data aggregators in the financial services sector protect sensitive information.

In an interview with Reuters, a WEF executive said that increased collaboration between large banks, insurance companies and financial services startups could put consumers at risk. The consortium, which includes well-known companies such as Citigroup, Zurich Insurance Group and Hewlett Packard Enterprise, will work to reduce the threat of cybercrime by creating a framework to assess firms’ preparedness and offering guidance on how to improve their score.

WEF Aims to Improve Fintech Cybersecurity

The infiltration of digital technologies in financial services is not limited to apps that check bank balances or move funds around. As CISO Magazine pointed out, the WEF recently warned that biometric authentication credentials and robotics are increasing the amount of information that fraudsters might seek to manipulate or steal. This can include not only credit card data, but addresses, detailed purchase histories, location data and even access to other online accounts that integrate with various fintech services. This makes the sector highly attractive to cybercriminals looking for lucrative targets.

While it may take time for the consortium to develop its framework, there are already some indications of the key areas that need to be addressed. In its white paper, “Innovation-Driven Cyber-Risk to Customer Data in Financial Services,” the WEF detailed a series of 19 overarching recommendations to improve the way fintech firms and their incumbent counterparts address security issues. These include guidelines on how they collect data, containment procedures, threat information sharing and more.

Fintech Security Requires a Global Effort

The consortium will be aligned with a Geneva-based Global Centre for Cybersecurity, which the WEF announced in January, SecurityWeek reported. While not a formal regulatory body, the group aims to help fintechs navigate new laws regulating security and privacy that are set to take effect this year.

Although fintech firms represent a new area of IT security concern, it’s certainly not the only one the WEF is focused on. ComputerWeekly noted that the organization recently called for greater intergovernmental partnerships to boost cybersecurity in the face of attacks that could cripple entire economies. The WEF’s new initiatives aim to increase collaboration among governments and private institutions in the worldwide effort to combat increasingly interconnected cybersecurity risks.

More from

NIST’s role in the global tech race against AI

4 min read - Last year, the United States Secretary of Commerce announced that the National Institute of Standards and Technology (NIST) has been put in charge of launching a new public working group on artificial intelligence (AI) that will build on the success of the NIST AI Risk Management Framework to address this rapidly advancing technology.However, recent budget cuts at NIST, along with a lack of strategy implementation, have called into question the agency’s ability to lead this critical effort. Ultimately, the success…

Researchers develop malicious AI ‘worm’ targeting generative AI systems

2 min read - Researchers have created a new, never-seen-before kind of malware they call the "Morris II" worm, which uses popular AI services to spread itself, infect new systems and steal data. The name references the original Morris computer worm that wreaked havoc on the internet in 1988.The worm demonstrates the potential dangers of AI security threats and creates a new urgency around securing AI models.New worm utilizes adversarial self-replicating promptThe researchers from Cornell Tech, the Israel Institute of Technology and Intuit, used what’s…

Passwords, passkeys and familiarity bias

5 min read - As passkey (passwordless authentication) adoption proceeds, misconceptions abound. There appears to be a widespread impression that passkeys may be more convenient and less secure than passwords. The reality is that they are both more secure and more convenient — possibly a first in cybersecurity.Most of us could be forgiven for not realizing passwordless authentication is more secure than passwords. Thinking back to the first couple of use cases I was exposed to — a phone operating system (OS) and a…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today