Description:
In this session, we will cover the final two essential risk assessments required from an IT and Information Security perspective for banks: the Business Impact Analysis (BIA) and the Organizational Cybersecurity Risk Assessment. These assessments are critical for identifying potential risks that could disrupt your operations or harm your cybersecurity posture, but it’s not enough to simply check them off your to-do list. We will show you how to conduct these assessments in a way that provides real value to your institution, enabling informed decision-making and proactive risk management.
You will learn:
- The key steps involved in conducting a Business Impact Analysis (BIA), including how to evaluate the potential impact of different threats on your business operations and determine which systems and processes are most critical to your institution’s survival.
- How to perform an Organizational Cybersecurity Risk Assessment, identifying the cybersecurity risks that could affect your organization at all levels—from operations and IT systems to third-party vendors and external threats.
- How to use the results of these assessments to prioritize resources and focus on mitigating the highest-impact risks that could have the most devastating effects on your institution.
- Best practices for aligning your BIA and Cyber Risk Assessments with regulatory requirements, ensuring you’re in compliance with laws and frameworks such as the FFIEC and NIST Cybersecurity Framework.
- Practical guidance for translating your assessment results into actionable strategies that enhance both your cybersecurity posture and your organization’s overall risk management.
By the end of this session, you’ll have the tools and knowledge to perform these critical assessments in a way that not only meets regulatory requirements but also strengthens your institution’s resilience against cyber threats and operational disruptions.
Reminder: The registration fee includes live attendance AND a playback recording of the session, available once the session concludes.
Presenters:
Cody Delzer, CISA CDPSE
Cody Delzer is the Consulting Manager at SBS CyberSecurity (SBS), a company dedicated to helping organizations identify and understand cybersecurity risks to make more informed and proactive decisions. He is also an instructor for the SBS Institute, leading the Certified Banking Cybersecurity Manager (CBCM) course.
Cody maintains Certified Information Systems Auditor (CISA) and Certified Data Privacy Solutions Engineer (CDPSE) certifications. He received his Bachelor of Science in Computer and Network Security from Dakota State University.
Cody has over 13 years of risk management, audit, and consulting experience in the financial services industry, specializing in IT and IT security, systems operations, and information assurance. He joined the SBS team in 2011 and has transitioned into a senior leadership role as the Consulting Manager.
Cody is passionate about sharing his cybersecurity knowledge and supporting his clients as they strive for increased cyber maturity. On top of being an instructor for the SBS Institute certification program, he speaks at conferences, authors blog posts and articles, hosts webinars, and conducts training.
March 11, 2025