FINOS
Open standard launches following monumental industry-wide support with more than 100 participants from 20+ firms during formation phase
LAS VEGAS, NV / ACCESSWIRE / October 24, 2023 / The Fintech Open Source Foundation (FINOS), the foundation of open innovation in financial services and part of The Linux Foundation, today announced that FINOS Common Cloud Controls (FINOS CCC), a set of open standards that describes consistent controls for compliant cloud deployments in the financial services sector, is now open sourced through FINOS under the Community Specification License. Built upon the approach developed by FINOS Platinum member Citi and following the formation phase which started in July, FINOS CCC is officially open for participation and contribution at github.com/finos/common-cloud-controls.
FINOS Common Cloud Controls creates a unified set of cybersecurity, resiliency, and compliance controls for common services across the major cloud service providers (CSPs). In developing a unified taxonomy of common services and associated threats, the project also sets out to alleviate the systemic risk of cloud concentration within the financial services industry.
The launch of FINOS CCC was announced during a panel at Money 20/20, featuring speakers from FINOS, Google Cloud, Goldman Sachs, and BMO. This comes on the heels of the projects' three month formation phase, where FINOS members, including more than 100 participants from 20+ financial institutions, cloud service providers, technology vendors, industry associations, and regulatory bodies were invited to start shaping the open standard's roadmap to ensure broad representation of all constituents involved in the shared responsibility model.
"The financial services industry pace of cloud adoption has been drastically accelerating for some time now, yet there has been no truly open standardization in the risk mitigation approach when it comes to cybersecurity concerns, cloud vendor lock-in, and response to regulatory inquiries, until now," said Gabriele Columbro, Executive Director of FINOS and General Manager of Linux Foundation Europe. "I am incredibly excited this project has already attracted some of the most relevant names in the industry, under openly governed workstreams that bring together financial institutions, cloud service providers, and technology vendors to address systemic issues with cloud security and concentration. This goes to show these issues are very much top of mind in the industry's C-Suite, and regulators alike, as we saw the White House put out an RFI on harmonizing cybersecurity controls just weeks after FINOS CCC's launch."
During the formation of FINOS Common Cloud Controls banks, tech firms, and cloud experts joined forces to redefine how common cloud services are provided to the financial services industry. As part of the initial delivery phase, the National Institute of Standards and Technology (NIST) is consulting on the use of NIST's OSCAL to enable the standard to be consumed and extended by FINOS contributors. Additionally, FINOS CCC created the Taxonomy and MITRE ATT&CK Framework working groups to ensure FSI cyber security cloud experts collaborate to mitigate financial services cloud threats across services described in a common cloud service taxonomy created in conjunction with banks and cloud service providers.
FINOS Common Cloud Controls will be prominently showcased at FINOS's annual event, the Open Source in Finance Forum (OSFF) in New York on November 1, 2023. The event features leaders from many of the world's largest financial organizations, regulatory bodies, technology providers, and more. To learn more about and register for OSFF, visit https://events.linuxfoundation.org/open-source-finance-forum-new-york/.
Member organizations that have participated in FINOS CCC's formation and definition phase include Adaptive, BMO, Citi, Container Solutions, ControlPlane, Discover, GitHub, GitLab, Goldman Sachs, Google Cloud, Leading Point, Lloyds Banking Group, London Stock Exchange Group (LSEG), Morgan Stanley, NatWest Group, Red Hat, Royal Bank of Canada (RBC), Scott Logic, Societe Generale, Symphony, and Wellington Management. ComplianceCow and StormForge, new members to FINOS, have joined to participate in and contribute to FINOS CCC specifically.
FINOS Members and FINOS CCC Community React:
"The open sourcing of FINOS Common Cloud Controls marks a groundbreaking milestone not only in cloud computing, but for the entire financial services industry," said Jim Adams, Chief Technology Officer at Citi. "This project leverages the power of collaboration to address critical challenges, and will establish consistent industry-standard controls for essential Cloud Service Provider (CSP) solutions."
"The importance of establishing open standards for cloud deployment in financial services cannot be understated," said Phil Venables, Chief Information Security Officer at Google Cloud. "The FINOS CCC project is an essential component of this, and Google Cloud is proud to be a part of it as we continue to drive a more compliant public cloud ecosystem."
"Financial service companies around the globe expect high-assurance, resilient cloud ecosystems able to accommodate the security needs of highly regulated markets," said Dr. Michaela Iorga, OSCAL Strategic Director and Senior Cloud Security Technical Lead at NIST. "Working through FINOS with both financial services companies and cloud service providers, we will define threat-resilient common security baselines for the cloud ecosystems harboring financial data and services, setting in this way the foundation for standards-based assessment automation and continuous monitoring with NIST's Open Security Controls Assessment Language (OSCAL)."
To learn more about FINOS Common Cloud Controls and getting involved in the open standards, visit https://www.finos.org/common-cloud-controls-project. To learn more about joining FINOS as a member, please visit https://www.finos.org/membership-benefits.
About FINOS
The Fintech Open Source Foundation (FINOS) is an independent nonprofit organization focused on promoting open innovation during a period of unprecedented technological transformation within financial services. FINOS believes that organizations that embrace open source software and common standards will be best positioned to capture the growth opportunities presented by this transformation.
Media Contact:
Ross Stevens
Caliber Corporate Advisers for FINOS
finos@calibercorporate.com
(803)549-7529
SOURCE: FINOS
View source version on accesswire.com:
https://www.accesswire.com/795527/finos-announces-the-open-sourcing-of-finos-common-cloud-controls-to-address-cybersecurity-compliance-and-cloud-concentration-risks-in-financial-services
To view this piece of content from www.accesswire.com, please give your consent at the top of this page.
About ACCESS Newswire
Subscribe to releases from ACCESS Newswire
Subscribe to all the latest releases from ACCESS Newswire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from ACCESS Newswire
Sweden, the Czech Republic, and Greece Crowned Champions of Harm Reduction in Brussels3.7.2025 06:00:00 CEST | Press release
BRUSSELS, BE / ACCESS Newswire / July 3, 2025 / Brussels transformed into a Champions League pitch for tobacco harm reduction as the World Vapers' Alliance (WVA) honoured Sweden, the Czech Republic, and Greece with the "Champions of Change" trophy for their outstanding progress in cutting smoking rates. The ceremony, staged in front of the European Parliament, shone a spotlight on the countries leading Europe's fight against smoking-while EU officials looked on from the sidelines. WVA Director Michael Landl, presenting the awards, remarked, "The EU is stuck in a cycle of prohibition and continues to overlook the evidence that's saving lives. Instead of embracing proven solutions, Brussels is making it harder for smokers to quit." Sweden led the celebrations, having become the world's first officially smoke-free nation, with just 4.5% of Swedish-born adults smoking-five times lower than the EU average and 16 years ahead of the EU's own goal. The Czech Republic and Greece were also recog
Fineqia Issues Bitcoin Yield ETP via DeFi; Yield Compounds Investors' BTC Holdings2.7.2025 17:00:00 CEST | Press release
LONDON, UK / ACCESS Newswire / July 2, 2025 / Fineqia International Inc. (CSE:FNQ)(OTC:FNQQF) (Frankfurt:FNQA), a digital asset and investment business, announces the Fineqia Bitcoin Yield Exchange Traded Product (ETP) (Ticker: YBTC, ISIN: LI1444931821), a listed product that enables investors to garner additional Bitcoin while holding it. YBTC targets an annual yield of 6% via decentralised finance (DeFi) activities on the blockchain. YBTC automatically converts this yield into Bitcoin (BTC), increasing an investor's BTC holdings without requiring any additional capital. Listed on the Vienna Stock Exchange (Wiener Börse), it is the first regulated, exchange-traded instrument in the world to provide BTC yield from DeFi protocols. The product is available for institutional and retail investors. "With YBTC, we've transformed Bitcoin from a store of value into a yield-generating digital asset," said Bundeep Singh Rangar, chief executive officer of Fineqia. "It allows investors to earn mor
Global Sports Brand U.S. Polo Assn. Launches in Brazil With Grupo Pasquini2.7.2025 13:15:00 CEST | Press release
WEST PALM BEACH, FL AND SAO PAULO, BRAZIL / ACCESS Newswire / July 2, 2025 / U.S. Polo Assn., the official brand of the United States Polo Association (USPA), is proud to announce its launch in the Brazilian market in partnership with Grupo Pasquini, a leading player in the country's fashion industry. This expansion reinforces the global, sport-inspired brand's presence in Latin America and further supports U.S. Polo Assn.'s strategic growth plan to reach new consumers around the world.U.S. Polo Assn. As U.S. Polo Assn. continues to expand its multi-billion-dollar global presence, Brazil marks an exciting new chapter in the brand's international journey. With its vibrant retail landscape and deep-rooted passion for lifestyle fashion, Brazil offers a natural fit for U.S. Polo Assn.'s authentic connection to the sport of polo. The debut collection in Brazil will showcase timeless, versatile styles across both menswear and womenswear, designed to honor the heritage of the sport while embr
Picktan Capital to Post Record Q2 Amid Market Buzz Over Possible IPO1.7.2025 20:55:00 CEST | Press release
LONDON, UK / ACCESS Newswire / July 1, 2025 / Picktan Capital, a London-headquartered wealth management firm managing over $7 billion in client assets globally, is attracting attention amid growing speculation about a potential public listing. The firm is on track to report its strongest quarterly performance to date, marking a significant milestone in its global growth strategy. With a strong emphasis on emerging technologies and disciplined capital deployment, Picktan Capital's momentum in 2024 has captured the interest of both investors and analysts. Picktan's second-quarter performance reflects a maturing investment approach grounded in both innovation and long-term value. The firm's activity across pivotal sectors, notably aerospace innovation, AI development, and satellite communications, has translated into meaningful gains and reinforced confidence in its forward strategy. Rather than chasing trends, Picktan has concentrated on sectors undergoing structural transformation. Its
DASA, Latin America's Largest Diagnostic Provider, Selects AGFA HealthCare's Enterprise Imaging Platform in Flagship Agreement1.7.2025 10:00:00 CEST | Press release
AGFA HealthCare is proud to announce a landmark achievement: the adoption of its Enterprise Imaging Platform by the largest integrated health network in Latin America - and the fifth largest globally. MORTSEL, BE / ACCESS Newswire / July 1, 2025 / DASA (Diagnósticos da América S.A.) operates an extensive hospital network across Brazil and Argentina, bringing together more than 40 healthcare provider brands. In 2024, DASA and Amil announced the creation of a joint venture that consolidates 25 hospitals and over 4,400 beds, making DASA the second largest hospital group in Brazil. With 321 branches across Brazil, DASA delivers more than 15.2 million clinical studies per year, serves 55,000 patients daily, and processes around 10 million tests monthly - solidifying its leading role in healthcare delivery across the region.AGFA HealthCare After a thorough evaluation process, DASA selected AGFA HealthCare's Enterprise Imaging Platform. Key moments in the decision journey included live demons
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom