Skip to content
BOL Conferences
Thread Options
#1415891 - 07/16/10 02:21 PM Areas requiring Risk Assessment
diputs
Unregistered

Does any one have a list of area requiring a risk assessment for a bank?
I have OFAC, CIP, BSA/AML, ID Theft/Red Flags and IT/IS assessments.
However, I know there are more but I just don't know what.
Please help!

Thank you

Return to Top
Risk Management
#1416854 - 07/19/10 06:26 PM Re: Areas requiring Risk Assessment
P*Q Offline

Power Poster
P*Q
Joined: May 2001
Posts: 8,458
Somewhere
We have a compliance risk assessment that lists all of the regs (both federal and state) and we risk rate our risk level based on previous exam/audit performance, reputation risk, penalties associated with violations, etc. As far as the FDIC goes, they've expected to see that as part of our overall compliance management system (CMS). As for your comment on IT/IS, that is just part our GLBA program, we have a separate assessment for non-IT systems (people, paper, documents with confidential information, etc).

Return to Top
#1416990 - 07/19/10 08:09 PM Re: Areas requiring Risk Assessment P*Q
BTJ Offline
Member
Joined: Sep 2007
Posts: 83
Remote Deposit Capture also requires a risk assessment. See
http://www.fdic.gov/news/news/financial/2009/fil09004.html

I believe vendor management is a risk assessment

I do not believe there is a tecnical requirement for a compliance risk assessment - but banks do generally perform risk assesssments in this area, covering all areas of compliance risk (as Pizza Queen descriped above).

Return to Top
#1417277 - 07/20/10 02:44 PM Re: Areas requiring Risk Assessment BTJ
RR Joker Offline
10K Club
RR Joker
Joined: Nov 2002
Posts: 20,656
The Swamp
GLBA
_________________________
My opinion only. Not legal advice.

Say you'll haunt me - Stone Sour

Return to Top
#1417538 - 07/20/10 07:29 PM Re: Areas requiring Risk Assessment RR Joker
BTJ Offline
Member
Joined: Sep 2007
Posts: 83
Another one - Fair Lending

Return to Top
#1417939 - 07/21/10 03:50 PM Re: Areas requiring Risk Assessment BTJ
RR Joker Offline
10K Club
RR Joker
Joined: Nov 2002
Posts: 20,656
The Swamp
Here is a good reference for you:

Risk area on BOL
_________________________
My opinion only. Not legal advice.

Say you'll haunt me - Stone Sour

Return to Top
#1419739 - 07/26/10 02:02 PM Re: Areas requiring Risk Assessment RR Joker
Retired DQ Offline
10K Club
Retired DQ
Joined: Dec 2002
Posts: 40,766
Turnpike Exit 10
ACH
_________________________
Get your facts first, then you can distort them as you please. - Mark Twain

Return to Top
#1441606 - 09/10/10 08:12 PM Re: Areas requiring Risk Assessment Retired DQ
cheech Offline
100 Club
Joined: Jun 2010
Posts: 207
Chatsworh PA
I was told at a IT conference the following: BCP, BSA, OFAC, eBanking, Infosec, Operations, Outsourcing Tech Risks, Management, Audit, Wholesale Payment Systems, Reatil Payment Systems, Development and Acq., plus any required for loan dept.

I sure am hoping I was misinformed, YIKES!

Return to Top
#1530342 - 04/01/11 03:51 PM Re: Areas requiring Risk Assessment cheech
cheech Offline
100 Club
Joined: Jun 2010
Posts: 207
Chatsworh PA
Bump

Return to Top
#1530351 - 04/01/11 03:54 PM Re: Areas requiring Risk Assessment cheech
Kathleen O. Blanchard Offline

10K Club
Kathleen O. Blanchard
Joined: Dec 2000
Posts: 21,293
Compliance Program

Basically, other than those explicitly called for, you need a risk assessment anywhere you are making risk based decisions.
_________________________
Kathleen O. Blanchard, CRCM "Kaybee"
HMDA/CRA Training/Consulting/Mapping
The HMDA Academy
www.kaybeescomplianceinsights.com

Return to Top
#1530910 - 04/01/11 09:29 PM Re: Areas requiring Risk Assessment Kathleen O. Blanchard
cheech Offline
100 Club
Joined: Jun 2010
Posts: 207
Chatsworh PA
It would be so nice for the FDIC to develope a list of all policies required, all risk assessments required, etc.

Return to Top

Moderator:  Andy_Z