Restrict internet access
Segregate the SWIFT environment from the general IT estate and restrict internet access.
The mandatory and advisory security controls that SWIFT users must implement and self-attest against each year.
The CSCF sets security expectations for every SWIFT user across three objectives: secure your environment, know and limit access, and detect and respond. Users self-attest annually against mandatory controls, with compliance independently assessed on a risk-tiered schedule. Non-compliance with mandatory controls can be reported to regulators and trigger counterparty de-risking. The framework is revised each year, and customers attest against the version active at the attestation date.
All SWIFT-connected entities - banks, payment institutions, central securities depositories and qualifying intermediaries.
Segregate the SWIFT environment from the general IT estate and restrict internet access.
Harden and patch systems hosting or supporting SWIFT, including operator PCs.
Prevent physical tampering with SWIFT-related assets.
MFA, password policy, least privilege and privileged-access controls.
Monitor, log and alert on SWIFT-related activity, and have a documented incident response plan.
Talk to an engineer - not a call centre. Most Vectra conversations start with a 30-minute technical briefing and end with a written plan.