Article

Five Ways for Credit Unions to Prepare for Cyber Attacks
By John Stream, CISO, SwitchThink Solutions


In the first half of 2021, the financial industry experienced a 1,318 percent increase in ransomware attacks.(1) Cyber criminals targeted credit unions across Canada in June.2 These facts prove the question is not if a cyberattack will happen, the question is when.

Cyber threats and data breaches come in the forms of ransomware attacks, phishing targeted to employees or members that lead to financial scams or data breaches, and more. Social engineering is a form of phishing growing more common where cyber thieves manipulate people into sidestepping security procedures to provide information. The NCUA, Cybersecurity and Infrastructure Security Agency (CISA), FBI, and National Security Agency have issued alerts and advice encouraging credit unions of all sizes to increase cybersecurity awareness and proactively look for threats.3 Credit unions that have taken steps to prepare will be able to respond quicker or avoid attacks. 

5 Steps to Take Now

Here are five basic steps credit unions can take to better prepare for cyberattacks.  

    1. Assign at least two trusted people to oversee cybersecurity. Duplication helps with consistency. Professionals with strong data security qualifications are difficult to find and other companies will heavily recruit them.

    2. Build a relationship with your legal counsel and ensure they participate in your incident response plan. This relationship allows for quicker, more coordinated reactions and protected communication in case of a breach.

    3. Make sure you have a solid incident response plan and playbook that includes a process to isolate, investigate, and remediate the breach. The NCUA Board proposes a new rule requiring federally insured credit unions to report cyber incidents to the NCUA no later than 72 hours after they become aware of the incident.4 To help ensure your credit union is prepared, make sure you have forensics capabilities to add credibility to your response. These steps help ensure your prompt, accurate and transparent reaction.

    4. Test your incident response plan and playbook at least annually and as significant new threats surface. Prepare for media, members, and others to evaluate and criticize your credit union’s response to a cyber incident.

    5. Evaluate the cyber tools you use to mitigate and respond to cyber incidents. Credit unions need layered defenses and must ensure their tools are continuously monitored. More than 50 percent of attacks start with valid account credentials.5 What monitoring do you have in place to detect activity once the attacker is in your environment? 

Secure Help You Trust

Many credit unions look to a third party to take on information security responsibilities. Credit union CIOs and CISOs need someone they trust who is 100 percent focused on specialized security and compliance functions their credit union cannot handle on their own. The value is in having this trusted advisor dedicated to security. Third-party providers work on the credit union’s behalf. They provide access to expensive and time consuming to build capabilities including a skilled team and iron-clad infrastructure that gives credit unions additional knowledge, scale and capacity. Credit unions also gain access to 24 by 7 monitoring and antivirus management that enables these tech leaders to share risk with someone else. We understand CIOs and CISOs often are overwhelmed, especially with fast-changing, headlineattracting topics like cyber risk. We can help guide credit unions through basic best practices. Credit unions that do the basics well reduce overall risk. Don’t wait until something happens to find out your credit union and its members are vulnerable. Prepare now.

Contact Us To Learn More