Skip to content

FRM Part II · FRM Exam Part II · Digital Resilience and Financial Stability: The Quest for Policy Tools in the Financial Sector

A regional bank suffers a ransomware attack and notices that attackers are using a technique that has not yet been publicly documented. The bank's risk officer wants peer institutions to be able to block the same technique quickly. Which action best supports the financial-sector objective of collective digital resilience?

The best action is sharing anonymized threat indicators with peers through a trusted sector information-sharing channel. This allows other institutions to block the technique quickly, strengthening collective resilience, whereas delaying disclosure, limiting it to an insurer, or waiting for public reports leaves the sector exposed longer.

  1. AShare anonymized threat indicators with peers through a trusted sector information-sharing channelCorrect
  2. BKeep the details confidential until the investigation is finished to avoid reputational damage
  3. CShare the indicators only with the bank's own cyber insurer
  4. DWait for regulators to publish a public report before notifying other firms

Explanation

Timely sharing of threat indicators through trusted sector channels lets peers update defenses before the same technique is reused, which reduces the system-wide impact of incidents. Withholding information until an investigation ends or relying on slow public reports delays protection. Sharing only with an insurer does not help peers defend themselves.

Did you get it right without looking?

One question tells you little. A timed set on Digital Resilience and Financial Stability: The Quest for Policy Tools in the Financial Sector shows your real accuracy, how long you take and where you lose marks.

More Digital Resilience and Financial Stability: The Quest for Policy Tools in the Financial Sector questions