IS423 Financial Markets Processes and Technology. Operational Risk in Financial Institutions
|
|
|
- Allyson Francis
- 10 years ago
- Views:
Transcription
1 IS423 Financial Markets Processes and Technology Operational Risk in Financial Institutions Kenken Lim Chang, Hua-Wei (Kevin)
2 Introduction, Definition, & History What is Op Risk? the danger of unexpected losses from a firm s operational activities, which includes internal procedures, people, and systems No industry-wide definition exists Each institution has its own operational setting Technology / IT systems Communications, IT security, Hard/software What s the background? Perhaps the oldest risk which financial industry faces 1999, Basel Committee on Banking Supervision Recognized as a legitimate issue by regulatory such risks (op risk) are too important not to be treated separately within the capital framework
3 What are the Issues & Problems? Even the technically-perfect IT systems can fail Lack of training, skills, and communication for users Island systems and solutions within an institution Systems are not standardized across regions and financial product lines Concern of cost limits IT systems improvement High costs and limited access to right skills / resources outweigh the benefits Complexity on managing and developing IT systems troublesome No core system backup Lead to system downtime & reduce system availability
4 What are the Issues & Problems? Nature of the financial markets Complex products, massive data volume, fast paced Result in complex IT environment & error-prone algorithms Lack of reassessment & stress tests on a regular basis Recurring mistakes plus new mistakes found lead to failure in real operation IT security & protection Firewall, access control, computer viruses, hackers (internal/external) May lead to monetary and reputational losses Financial sector s history of acquisitions and mergers Partial/temporary improvements & system integration lead to imperfect infrastructure Lack of detailed review of existing systems before integration for merger
5 Example #1: OM Gruppen & HKEx (2003) OM Gruppen: supplier and maintenance vendor for HKATS The bug Attempt to handle complex combinations of combo orders lead to an infinite loop in transaction disable HKATS Trading in HSI futures and options, MSCI China Free Index future and Dow Jones Industrial Average future contracts brought to a standstill Dead battery in back-up trading system was blamed for halt in future and options trading that lasted for an hour Implications Traders believe problem is rooted in the system s inability to support large volumes everytime we have a busy day the system crashes that s why we re not showing that much liquidity, because people just cannot trust the system head of equity derivatives at Fimat, HK Public believes HKEx should improve system with upgrades, added functionality, and the ability to handle large volumes
6 Example #2: LSE Breakdown (2007) London Stock Exchange Group The bug Infolect data delivery system interrupted disseminating data to the market failed prices were unreliable closing delayed for 90 mins Traders have to wait until the next morning to ask clients whether to settle trades Worldwide impact the Dow Jones industrial average closed down points Implications Data transmission interruption shouldn t occur since basic contingency planning should include connectivity testing Failure impacted both primary and backup systems System s fault or management s fault?
7 What are the Solutions? Rigorous Stress Testing o For systems to be in place after merger o Streamlined & Integrated o IT migration o Well-planned testing procedure Automation o Increases throughput & decreases latency o Able to minimize manual tasks o Example: Time is essential in a bank. Staff will be able to handle other important tasks by not repeating steps to test a process. Communication o Business Analyst to work closely with IT team to avoid system failure.
8 What are the Solutions? Outsource o Outsource partner increases benefits from IT resilience and reduce time taken to achieve such goals o Make risk management more affordable o Sourcing from partner provides usage-based pricing o Access to advanced technology platforms, tools, testing environments, large pool of expertise, and end-to-end control o Allows the firm to focus on core activities & gain efficiency Disaster Recovery Plan o Companies invests millions for DR plan to tackle natural disaster issues to avoid large losses o Objective is to ensure that business still functions in case of system failure.
9 Example #1: IBM & Settlement House Outsourcing to IBM o For operational risk advice & service due to its reputation Illustrates how company collaborated with IBM to design, develop & manage IT applications/infrastructure that supports foreign exchange process Benefits & End Result: o Reduction in risk, led to Forex dealers operating with improved credit risks. o Reliable, enterprise-wide systems that significantly reduce costs
10 Example #2: CBOT & Disaster Recovery Chicago Board of Trade (CBOT) Preparation for disaster: o Separate data center in another building to provide redundancies & fail-over to critical systems. o Subscription with recovery provider for Prices, Wall displays and QVN in a limited Disaster Recovery capacity After 911 occurs: o Modified their Disaster Recovery Plan o Increases the stages taken to ensure systems can still work after disruptions o Created Risk Management Group
11 What is the Future? IBM - Project eliza o Multi-million long term & impressive project o Systems can heal themselves when there s a failure Self Configuration Self Optimizing Self Protecting o Able to function for decades without failing without human intervention
12 Bibliography & Readings Operational Risk in Financial Services Credit Suisse Group < Regulating and Supervising Operational Risk for Banks < Systems Failure Analysis < Investopedia Operational Risk: A Must-Know For Investors Five ways to manage operational risk in an even riskier world <www-07.ibm.com/nz/media/.../operational_risk.pdf> IBM- Operational Risk Management and IT: Implications for Financial Services < OM system failure behind HKEx interruption < London Stock Exchange (LSE) system failure stops trading < Dealers in the dark after systems failure Business Continuity & Disaster Recovery Planning at The Chicago Board of Trade < Project eliza < Operational Risk after merger < em_failure_%28apr_2002%29>
13 Thank you! Q & A
DISASTER RECOVERY WITH AWS
DISASTER RECOVERY WITH AWS Every company is vulnerable to a range of outages and disasters. From a common computer virus or network outage to a fire or flood these interruptions can wreak havoc on your
SS&C Outsourcing Services: Beyond Hosting
position paper SS&C Outsourcing Services: Beyond Hosting Asset managers should look beyond traditional application hosting to prepare their operations for growth. The investment management industry is
INDUSTRY OVERVIEW THE STOCK MARKET IN HONG KONG. History of the Stock Exchange
This overview contains information derived from publicly available government or official sources referred to in this prospectus. The Company believes that the sources of such information are appropriate
Chinese University of Hong Kong Conference on HKEx and the Market Structure Revolution
Chinese University of Hong Kong Conference on HKEx and the Market Structure Revolution The Impact of Market Structure Changes on Securities Exchanges Regulation 31 March 2012 Keith Lui Executive Director,
COL FINANCIAL GROUP, INC. RISK MANAGEMENT SYSTEM
COL FINANCIAL GROUP, INC. RISK MANAGEMENT SYSTEM RISK MANAGEMENT PHILOSOPHY The analysis of risk and the identification of opportunities in evolving situations are inherent to the business of a stock brokerage.
How to Choose a Cloud Backup Service Provider
How to Choose a Cloud Backup Service Provider Why Should You Protect Your Data? Sooner or later - by mischief, misfortune or mistake - Odds are you will experience a data loss. Hardware failure, accidental
The case for cloud-based disaster recovery
IBM Global Technology Services IBM SmartCloud IBM SmartCloud Virtualized Server Recovery i The case for cloud-based disaster recovery Cloud technologies help meet the need for quicker restoration of service
This white paper describes the three reasons why backup is a strategic element of your IT plan and why it is critical to your business that you plan
This white paper describes the three reasons why backup is a strategic element of your IT plan and why it is critical to your business that you plan and execute a strategy to protect 100 percent of your
High Availability with Postgres Plus Advanced Server. An EnterpriseDB White Paper
High Availability with Postgres Plus Advanced Server An EnterpriseDB White Paper For DBAs, Database Architects & IT Directors December 2013 Table of Contents Introduction 3 Active/Passive Clustering 4
Virtualizing disaster recovery using cloud computing
IBM Global Technology Services Thought Leadership White Paper January 2012 Virtualizing disaster recovery using cloud computing Transition your applications quickly to a resilient cloud 2 Virtualizing
Everything You Need to Know About Network Failover
Everything You Need to Know About Network Failover Worry-Proof Internet 2800 Campus Drive Suite 140 Plymouth, MN 55441 Phone (763) 694-9949 Toll Free (800) 669-6242 Overview Everything You Need to Know
State of Missouri Active Directory & E-Mail Consolidation Project Executive Summary
Active Directory & E-Mail Consolidation Project Executive Summary The s Active Directory/Exchange Consolidation Team combined fourteen State agencies into a single Active Directory Forest and Exchange
Red Hat Enterprise linux 5 Continuous Availability
Red Hat Enterprise linux 5 Continuous Availability Businesses continuity needs to be at the heart of any enterprise IT deployment. Even a modest disruption in service is costly in terms of lost revenue
Mastering Disaster A DATA CENTER CHECKLIST
Mastering Disaster A DATA CENTER CHECKLIST Disaster Doesn t Sleep It s not always a hurricane or a power grid failure that causes businesses to lose their data. More often than not, an isolated event like
How Do I know If I Need RCx HOW TO CHOOSE A MANAGED SERVICES PROVIDER. www.netsolus.com
How Do I know If I Need RCx HOW TO CHOOSE A MANAGED SERVICES PROVIDER www.netsolus.com Shifting your IT operations to a managed services provider (MSP) offers a multitude of benefits. Collaborating with
Availability Digest. www.availabilitydigest.com. Singapore Bank Downed by IBM Error August 2010
the Availability Digest Singapore Bank Downed by IBM Error August 2010 Déjà vu. Just four months ago, in our April issue, we related Google s experience 1 with incomplete documentation that took down the
Application / Hardware - Business Impact Analysis Template. MARC Configuration Requirements. Business Impact Analysis
Application / Hardware - Business Impact Analysis Template The single most important thing we can do is help you understand the criticality of each application, supporting hardware/server/pc and the required
Practical Considerations and Risks - Portfolio Trading, Index Arbitrage, and Dispersion Trading
Practical Considerations and Risks - Portfolio Trading, Index Arbitrage, and Dispersion Trading Ron Chiong Associate Director Risk & Strategy CEO s Office Securities and Futures Commission October 2014
Business Continuity and Disaster Survival Strategies for the Small and Mid Size Business. www.integrit-network.com
Business Continuity and Disaster Survival Strategies for the Small and Mid Size Business www.integrit-network.com Business Continuity & Disaster Survival Strategies for the Small & Mid Size Business AGENDA:
IT Services. We re the IT in OrganIsaTion. Large Organisations
IT Services. We re the IT in OrganIsaTion Large Organisations IT for Large Organisations. As the world of business technology has changed, so have we. From designing, building and optimising tailored
Institute for Development and Research in Banking Technology
Institute for Development and Research in Banking Technology Keynote Address by Shri. R. Gandhi, In-Charge Director, IDRBT, at the Conference of IT Chiefs, IDRBT, Hyderabad on July 04, 2005 IT Infrastructure
IBM TotalStorage IBM TotalStorage Virtual Tape Server
IBM TotalStorage IBM TotalStorage Virtual Tape Server A powerful tape storage system that helps address the demanding storage requirements of e-business storag Storage for Improved How can you strategically
Skelta BPM and High Availability
Skelta BPM and High Availability Introduction Companies are now adopting cloud for hosting their business process management (BPM) tools. BPM on cloud can help control costs, optimize business processes
The Art of High Availability
The Essentials Series: Configuring High Availability for Windows Server 2008 Environments The Art of High Availability by The Art of High Availability... 1 Why Do We Need It?... 1 Downtime Hurts... 1 Critical
Deltek First - The Business Case
Deltek First - The Business Case Executive Summary Many organizations that do business with the government are adopting cloud-based versions of specialized business solutions with the aim of focusing limited
White Paper. Managed IT Services as a Business Solution
White Paper Managed IT Services as a Business Solution 1 TABLE OF CONTENTS 2 Introduction... 2 3 The Need for Expert IT Management... 3 4 Managed Services Explained... 4 5 Managed Services: Key Benefits...
DEFINITIONS. In this document, the following expressions have the following meanings, unless the context requires otherwise:
In this document, the following expressions have the following meanings, unless the context requires otherwise: AMS the Stock Exchange s Automatic Order Matching and Execution System AMS/2 an upgraded
Oracle Maps Cloud Service Enterprise Hosting and Delivery Policies Effective Date: October 1, 2015 Version 1.0
Oracle Maps Cloud Service Enterprise Hosting and Delivery Policies Effective Date: October 1, 2015 Version 1.0 Unless otherwise stated, these Oracle Maps Cloud Service Enterprise Hosting and Delivery Policies
Active Directory & E-Mail Consolidation Project. Category: Enterprise IT Management Initiatives. State of Missouri
Active Directory & E-Mail Consolidation Project Category: Enterprise IT Management Initiatives State of Missouri Executive Summary The State of Missouri s Active Directory/E-mail Consolidation Team consolidated
Disaster Recovery Strategies
White Paper Disaster Recovery Strategies Overview... 2 Why Cloud?... 2 Recovery Gaps... 3 Where To Find The Value... 5 Who Should Be Your Cloud Vendor... 6 Conclusion... 7 January 2013 Overview When people
IBM PureFlex System. The infrastructure system with integrated expertise
IBM PureFlex System The infrastructure system with integrated expertise 2 IBM PureFlex System IT is moving to the strategic center of business Over the last 100 years information technology has moved from
AVANTGARD Hosting and Managed Services
AVANTGARD Hosting and Managed Services AVANTGARD HOSTING AND MANAGED SERVICES SunGard meets its customers diverse set of requirements by not only bringing to market scalable, flexible, and industry leading
The multi-bank, multi-instrument confirmation matching solution
FusionBanking Confirmation Matching Service Software overview The multi-bank, multi-instrument confirmation matching solution A single window to automate and de-risk trade confirmations Our previous confirmation
Why Should Companies Take a Closer Look at Business Continuity Planning?
whitepaper Why Should Companies Take a Closer Look at Business Continuity Planning? How Datalink s business continuity and disaster recovery solutions can help organizations lessen the impact of disasters
The Outsourced IT Hiring Guide
The Outsourced IT Hiring Guide 8 Steps to Help You Find Your Perfect Tech brought to you by 1) Maintenance vs. Issue Resolution Know the difference. With regularly scheduled maintenance, you ll experience
Financial Services Need More than Just Backup... But they don t need to spend more! axcient.com
Financial Services Need More than Just Backup... But they don t need to spend more! axcient.com Introduction Financial institutions need to keep their businesses up and running more than ever now. Considering
The Benefits of Continuous Data Protection (CDP) for IBM i and AIX Environments
The Benefits of Continuous Data Protection (CDP) for IBM i and AIX Environments New flexible technologies enable quick and easy recovery of data to any point in time. Introduction Downtime and data loss
The Business Case for Cloud Backup
The Business Case for Cloud Backup Table of Contents Introduction...2 SMB Data Protection Essentials...2 The Business Case for Outsourcing Data Protection...3 Considerations for Choosing a Cloud Backup
High-frequency trading, flash crashes & regulation Prof. Philip Treleaven
High-frequency trading, flash crashes & regulation Prof. Philip Treleaven Director, UCL Centre for Financial Computing UCL Professor of Computing www.financialcomputing.org [email protected] Normal
Reducing the Cost and Complexity of Business Continuity and Disaster Recovery for Email
Reducing the Cost and Complexity of Business Continuity and Disaster Recovery for Email Harnessing the Power of Virtualization with an Integrated Solution Based on VMware vsphere and VMware Zimbra WHITE
Guardian365. Managed IT Support Services Suite
Guardian365 Managed IT Support Services Suite What will you get from us? Award Winning Team Deloitte Best Managed Company in 2015. Ranked in the Top 3 globally for Best Managed Service Desk by the Service
Making the Business and IT Case for Dedicated Hosting
Making the Business and IT Case for Dedicated Hosting Overview Dedicated hosting is a popular way to operate servers and devices without owning the hardware and running a private data centre. Dedicated
AVANTGARD Private Cloud and Managed Services
AVANTGARD Private Cloud and Managed Services AVANTGARD PRIVATE CLOUD AND MANAGED SERVICES SunGard meets its customers diverse set of requirements by not only bringing to market scalable, flexible, and
Choosing a Server to Fit Your Business. A step-by-step guide to help businesses maximize the benefits of Intel. Xeon -based server solutions.
Choosing a Server to Fit Your Business. A step-by-step guide to help businesses maximize the benefits of Intel Xeon -based server solutions. Copyright 2005 Intel Corporation. All rights reserved. Intel,
Cohesion Managed Services
Cohesion It is s objective to deliver, through its Cohesion managed & hosted services portfolio, the kind of business cohesion that IT managers dream of, but never imagine they can afford. The services
ROI CASE STUDY MICROSOFT DYNAMICS CRM TRADESTATION
ROI CASE STUDY MICROSOFT DYNAMICS CRM TRADESTATION THE BOTTOM LINE TradeStation is an electronic trading platform. Nucleus analysts explored TradeStation s Microsoft Dynamics CRM deployment and found that
Requirements Checklist for Choosing a Cloud Backup and Recovery Service Provider
Whitepaper: Requirements Checklist for Choosing a Cloud Backup and Recovery Service Provider WHITEPAPER Requirements Checklist for Choosing a Cloud Backup and Recovery Service Provider Requirements Checklist
WHITE PAPER. Best Practices to Ensure SAP Availability. Software for Innovative Open Solutions. Abstract. What is high availability?
Best Practices to Ensure SAP Availability Abstract Ensuring the continuous availability of mission-critical systems is a high priority for corporate IT groups. This paper presents five best practices that
ACI ON DEMAND DELIVERS PEACE OF MIND
DELIVERS PEACE OF MIND SERVICE LINE FLYER ACI ON DEMAND ACCESS TO THE LATEST RELEASES OF FEATURE-RICH SOFTWARE AND SYSTEMS, INCLUDING INTEGRATION WITH VALUE- ADDED THIRD PARTIES IMPLEMENTATION CONFIGURED
WHY CLOUD BACKUP: TOP 10 REASONS
WHITE PAPER DATA PROTECTION WHY CLOUD BACKUP: TOP 10 REASONS Contents REASON #1: Achieve disaster recovery with secure offsite cloud backup REASON #2: Freedom from manual and complex tape backup tasks
Vodafone Private Cloud
Vodafone Co-location Secure, resilient, energy efficient space for your IT equipment in our data centres Vodafone Private Cloud Reduce your infrastructure costs and be more flexible, secure and in control,
Cloud Computing Thunder and Lightning on Your Horizon?
Cloud Computing Thunder and Lightning on Your Horizon? Overview As organizations automate more and more of their manual processes, the Internet is increasingly becoming an important tool in the delivery
Why it s time to move to online accounting software
7Game Changing Trends: Why it s time to move to online accounting software Brought to you by: 7 Game changing trends: Why it s time to move to online accounting software The past decade has brought extraordinary
INDUSTRY OVERVIEW COMMISSIONED REPORT FROM IPSOS
The information and statistics set out in this section have been extracted from various publicly available official sources including (i) the SFC; (ii) HKEx; and (iii) the Ipsos Report. The Group believes
Your custodian of choice.
Your custodian of choice. Empowering the growth of your firm Correspondent Partners We understand the business of managing wealth. And we understand that each business your business is unique. We respect
London Stock Exchange
London Stock Exchange MIT601 - Guide to Trading Services Disaster Recovery Issue 1.1 31 October 2014 Contents Disclaimer 4 1.0 Introduction 5 1.1 Purpose 5 1.2 Readership 5 1.3 Document Series 5 1.4 Document
Hosting JDE EnterpriseOne in the Cloud Hear how one company went to the cloud
Hosting JDE EnterpriseOne in the Cloud Hear how one company went to the cloud October 2015 2015 AT&T Intellectual Property. All rights reserved. AT&T, the AT&T logo and all other AT&T Agenda Organizational
Network Virtualization Platform (NVP) Incident Reports
Network Virtualization Platform (NVP) s ORD Service Interruption During Scheduled Maintenance June 20th, 2013 Time of Incident: 03:45 CDT While performing a scheduled upgrade on the Software Defined Networking
A Best Practices Point of View from. Data Backup and Disaster Recovery Planning
A Best Practices Point of View from Data Backup and Disaster Recovery Planning Security Protect Your Data Expertise Support Patient Privacy Business Continuity Plan and Restore Peace of Mind Backup and
SCHEDULE 1 SERVICE DESCRIPTION
SCHEDULE 1 SERVICE DESCRIPTION . Introduction Service Description a) Accreditation Process The Service Provider ( SP ) wishing to be approved by Borsa Italiana as an accredited Service Provider who can
Why cloud backup? Top 10 reasons
Why cloud backup? Top 10 reasons HP Autonomy solutions Table of contents 3 Achieve disaster recovery with secure offsite cloud backup 4 Free yourself from manual and complex tape backup tasks 4 Get predictable
TO AN EFFECTIVE BUSINESS CONTINUITY PLAN
5 STEPS TO AN EFFECTIVE BUSINESS CONTINUITY PLAN Introduction The Snowpocalypse of 2015 brought one winter storm after another, paralyzing the eastern half of the United States. It knocked out power for
Automated Trading Platform for Institutional Customers
Automated Trading Platform for Institutional Customers About Olfa Trade (an Olfa Soft Company) Olfa Soft is a company specialized in the development and commercialization of technological solutions in
Get Your Out of Control SAP Database Under Control:
Get Your Out of Control SAP Database Under Control: 2 Paths To A Successful Data Archiving Strategy Velocity Technology Solutions / June 2015 SAP Data Archiving Strategy Guide: Why SAP Archiving: The Business
Statement of Guidance
Statement of Guidance Business Continuity Management All Licensees 1. Statement of Objectives 1.1. To enhance the resilience of the financial sector and to minimise the potential impact of a major operational
Equities Dealing, Brokerage and Market Making
Equities Dealing, Brokerage and Market Making SEEK MORE Fully informed and ready to trade A whole world of information affects the equity markets economic data, global political events, company news and
QUICK FACTS. Replicating Canada-based Database Support at a New Facility in the U.S. TEKSYSTEMS GLOBAL SERVICES CUSTOMER SUCCESS STORIES
[ Energy Services, Managed Services Offering/ Network Infrastructure Services ] TEKSYSTEMS GLOBAL SERVICES CUSTOMER SUCCESS STORIES Client Profile Industry: Oil and natural gas Revenue: Approximately $5.2
