Be Mindful of Insider Fraud Against Seniors
California's Financial Abuse Reporting Act, SB 1018, which r…
Eligible |
![]() |
In response to the recent surge in ACH fraud crimes, federal regulators have updated their guidance on the risks of retail payment systems.
The Federal Financial Institutions Examination Council (FFIEC) is out with its new Retail Payment Systems Booklet, which includes updated guidance for examiners, financial institutions and technology service providers on the risks and risk-management practices applicable to institutions' retail payment systems, including checks, electronic payments related to credit and debit cards, and ACH transactions.
As the booklet does not establish any new major policy initiatives, examiners will begin using the booklet immediately, says Donald Saxinger, FDIC's Acting Chief, Technology Supervision Branch, Division of Supervision and Consumer Protection.
"For the most part, the guidance and discussions of management practices are conditions that should already be in place," Saxinger says.
The revised booklet addresses changes in technology and provides guidance on the Check Clearing for the 21st Century Act of 2004. It also expands guidance on merchant card processing and ACH activities, as well as a more in-depth discussion of the increased risks posed by these activities and some of the risk management tools that financial institutions can use to stop them.
The new edition does have some additional discussion of emerging payment systems developments such as remotely created checks and remote deposit capture. There also is increased emphasis on risk management practices related to third parties in the payments arena.
When asked about the increase in ACH fraud transactions hitting business customers, Saxinger says, "While there is yet no silver bullet to this problem, the booklet addresses some of the key areas that should be considered in a layered approach to stemming this problem."
Among the key points:
The increased use of remote capture by businesses and consumers points to the need for institutions to remain compliant, while at the same time meeting the needs of customers using this banking service.
The potential for risk exposure in this area is great, notes Debra Geister, Lexis-Nexis Director of Fraud Prevention and Compliance Solutions. "Some of this expanded guidance is in response to the growing area of remote deposit capture," she says. "This is an area that has a lot of potential for risk exposure in the demand deposit accounts (DDA) business."
Geister says she believes that regulators are trying to help reduce the risk of this type of product. "I am sure that it is no secret that we have seen challenges in ACH fraud and also money laundering from foreign sources. Many financial institutions are still trying to get their new International ACH Transaction (IAT) regulation processes in place as well."
Saxinger says while the RPS booklet addresses remote deposit capture, the guidance issued by the FFIEC in early 2009 on "Risk Management of Remote Deposit Capture" also should be in an institution's resource kit for evaluating the risk management issues if you are considering using this technology.
Also new in this booklet is the work program associated with the RDC guidance. "Work programs such as this are used by examiners in assessing your risk management practices, but also could be used by financial institutions and other service providers as a self assessment tool," he says.
Financial institutions should not limit themselves to the guidance or the work program as the definitive requirement for effective risk management, Saxinger says. "All reasonable methods for managing risk should be considered for the risk management of remote deposit capture or any other technology, product, or service."
The Electronic Funds Transfer (EFT) Act - Regulation E..Next Topic
The Electronic Funds Transfer (EFT) Act - Regulation E..Next Topic
DoJ: Report to Congress on Implementation of Section 1001 of the USA PATRIOT Act..Next Topic
FFIEC Issues 2009 Mortgage Fraud White Paper:The Detection and Deterrence of Mortgage..Next Topic
FDIC: Fraudulent Work-at-Home Funds Transfer Agent Schemes..Next Topic
Joint Statement by Education Secretary Duncan, Homeland Security Secretary Napolitano and..Next Topic
Obama's Cyberspace Policy Review: Assuring a Trusted and Resilient Information and..Next Topic
Obama's Cyberspace Policy Review: Assuring a Trusted and Resilient Information and..Next Topic
NIST: PIV Card Application and Middleware Interface Test Guidelines, SP800-85A-1..Next Topic