Infocomm Infocomm
24th NBFC100 TECH SUMMIT AWARDS 24th NBFC100 TECH SUMMIT AWARDS
BFSI AI SUMMIT BFSI AI SUMMIT
Home Regulators RBI SEBI TechINFRA Security Data Centre Cloud Services Government Reforms DBT Aadhaar GST Payments Payment Gateways ATM Point of Sale Payment Wallets Fintech Apps Banks Public Sector Private Sector Cooperative NBFCs Year Ender Magazine Magazine Subscription Articles Interviews Webinars Webinar Videos Video Series — Innovation Talk Upcoming Initiatives BFSI Events About Us Contact Us

Spot Security Chinks Thwart Cyber Attacks

Bryce Boland
Bryce_Boland

Bryce Boland,
CTO – Asia Pacific, FireEye. Inc.

It’s the responsibility of a Chief Technology Officer (CTO) of a bank to know where would an attacker try to compromise the security, how to detect it if the security is compromised, and how to quickly respond to contain a breach, says Bryce Boland, CTO – Asia Pacific, FireEye. Inc., in a conversation with Elets News Network (ENN)

Kindly share FireEye’s insight into presentday bank breaches and their impact on the financial system The sky hasn’t fallen on the financial system but our institutions are facing very tough realities in cyberspace. Most cyber attacks are opportunistic and can be relatively easily prevented, detected and contained. Yet there are a number of organised and highly capable financial cyber crime groups which are succeeding on a regular basis. They routinely breach financial institutions. For the top (cybercrime) groups, this is extremely lucrative.

Advertisementgreylabs

As the CTO of FireEye (in Asia Pacific) how do you view the RBI mandating banks to put in place a cyber security policy?

Policies are useful and this new one is a starting point. But it’s only the beginning of addressing the threats. Policy helps formalise the need for security and risk management within our financial institutions. This can be useful for creating accountability and ensuring there’s governance and no oversight. But the policy cannot replace action. It’s important that processes are in place to direct teams about detecting and responding to incidents.

Advertisement24th Elets NBFC100 Tech Summit & Awards, Mumbai

We regularly see firms, which are policy-compliant, asking us to respond to breaches. Policy only gets you so far.

AdvertisementInfoComm India 2026

Having been into IT Risk Management globally for long, how do you perceive the gravity of cyber threat to the Indian banking system?

AdvertisementElets BFSI AI Summit & Awards, Mumbai

India’s banks are facing a rise in significant cyber threats. If I were president of an Indian bank, I would want to know if we had been breached. Just because no alarms have gone off, it shouldn’t be assumed threat actors are not existing inside the bank’s systems. I’d want to know where would an attacker try to compromise the bank? How to detect it if they did compromise us, and how quickly can our defenders response to contain a breach?

What guidelines are required to transform an organisation’s security posture?

Guidelines can’t transform a security posture. True transformation takes action. It would be better if we understood how organizations could transform their security posture? We recommend increasing focus on detection and response so that incidents are thoroughly investigated. To fend off advanced cyber attacks, a combination of technology, threat intelligence and expertise is required.

What security suggestions would you give to banks with regard to strategies that work or don’t work?

A good strategy is to assume you don’t know everything and find ways to bring people who can give you an alternate viewpoint—and external perspectives. Leaders need to challenge their IT and security teams. Too often, incidents are covered up, incompletely or poorly investigated, or not detected at all.

How crucial is the role of a CTO in the current scenario?

The CTO can bridge between the business problem and the technology problem. They need to help business leaders understand the technology side of the business, and ensure that technology teams are addressing the right business problems.

The CTO should challenge the existing architecture and strategy for dealing with cyber security threats and show how a change in strategy could better align resources against an evolving threat landscape.

The CTO must understand the strategic decisions of what key terrain they must defend and where technology can be part of the solution. Part of the role of a good CTO is identifying right partners who can bring the capabilities necessary to reach the organisation’s goals.

Elets The Banking and Finance Post Magazine has carved out a niche for itself in the crowded market with exclusive & unique content. Get in-depth insights on trend-setting innovations & transformation in the BFSI sector. Best offers for Print + Digital issues! Subscribe here➔ www.eletsonline.com/subscription/

Get a chance to meet the Who's who of the Banking & Finance industry. Join Us for Upcoming Events and explore business opportunities. Like us on Facebook, connect with us on LinkedIn and follow us on Twitter, Instagram.

Our Coverage of Interview

Beyond the Core: Building a Smarter, More Agile Banking Technology Architecture

Modern banking demands speed and agility, but legacy core systems continue to underpin critical operations. The focus is… Read more →

Redefining Trust and Governance in the Digital Banking Era

As India’s banking ecosystem becomes increasingly digital and interconnected, trust is being redefined through data integrity, cybersecurity resilience,… Read more →

Intelligent Platforms Driving the Next Phase of Financial Services Transformation

Financial services today are no longer evolving in phases; they are being reshaped in real time. As AI… Read more →

AI at Scale: Shaping the Future of Intelligent Banking

As India’s banking sector shifts from AI pilots to enterprise-scale transformation, the focus is now on measurable impact,… Read more →

Engineering the Future of NBFC Technology

As India’s NBFC ecosystem moves rapidly towards AI-led lending, data-driven risk management, and platform-based growth, technology is becoming… Read more →

From Paper Trails to Predictive Platforms: Redefining MSME Finance

MSME growth depends not just on access to capital, but on speed, simplicity, and trust.  From fully digital… Read more →