Loading...

Top
Help
×

By creating an account you can:

Logo TaxTMI
Call Us / Help / Feedback

Contact Us At :

E-mail: [email protected]

Call / WhatsApp at: +91 99117 96707

For more information, Check Contact Us

FAQs :

To know Frequently Asked Questions, Check FAQs

Most Asked Video Tutorials :

For more tutorials, Check Video Tutorials

Submit Feedback/Suggestion :

Email :
Please provide your email address so we can follow up on your feedback.
Category :
Description :
Min 15 characters 0/2000
Make Most of Text Search
  1. Checkout this video tutorial: How to search effectively on TaxTMI.
  2. Put words in double quotes for exact word search, eg: "income tax"
  3. Avoid noise words such as : 'and, of, the, a'
  4. Sort by Relevance to get the most relevant document.
  5. Press Enter to add multiple terms/multiple phrases, and then click on Search to Search.
  6. Text Search
  7. The system will try to fetch results that contains ALL your words.
  8. Once you add keywords, you'll see a new 'Search In' filter that makes your results even more precise.
  9. Text Search
Add to...
You have not created any category. Kindly create one to bookmark this item!
Create New Category
Hide
Title :
Description :
❮❮ Hide
Default View
Expand ❯❯
Close ✕
🔎 News - Adv. Search
TEXT SEARCH:

Press 'Enter' to add multiple search terms. Rules for Better Search

Search In:
Main Text + AI Text
  • Main Text
  • Main Text + AI Text
  • AI Text
Category: ?
Categorized by AI
---- All Categories ----
  • ---- All Categories ----
  • Income Tax
  • GST
  • Customs, DGFT & SEZ
  • FEMA & RBI
  • Corp. Laws, SEBI & IBC
  • PMLA, Black Money & ED
  • Budget
  • News and Press Release
  • PTI News
Month:
---- All Months ----
  • ---- All Months ----
  • January
  • February
  • March
  • April
  • May
  • June
  • July
  • August
  • September
  • October
  • November
  • December
Year:
---- All Years ----
  • ---- All Years ----
  • 2026
  • 2025
  • 2024
  • 2023
  • 2022
  • 2021
  • 2020
  • 2019
  • 2018
  • 2017
  • 2016
  • 2015
  • 2014
  • 2013
  • 2012
  • 2011
Sort By: ?
In Sort By 'Default', exact matches for text search are shown at the top, followed by the remaining results in their regular order.
Relevance Default Date
    Banks mobilise USD 127.23 billion in deposits from Indian diaspora: RBI
    CBI Arrests CGST Additional Commissioner and Two others in Rs. 40 Lakh Bribery Case in Raigad, Maharashtra
    Haryana: SGST collections grow 29 pc in first 5 months of 2026-27
    Lokta Opens Its Agentic Loan Servicing Platform to NBFCs Up to Rs 100 crore, with No Platform Fee for Up to Two Years
    RTI seeks Aadhaar date-of-birth changes after pre-poll Bihar pension hike; UIDAI says no such data
    IC Electricals Secures Approx. ₹6 Crore Railway Orders and ₹1 Crore Export Order
    Additional Information related to GDP Estimates Received After Release of Q1 Estimates of FY 2026-27
    Union Minister of Commerce & Industry Shri Piyush Goyal Chairs CEO Roundtable on Ease of Doing Business for Scaling India’s Data Centre Ecosystem
    India–Afghanistan Joint Working Group on Trade Holds Virtual Meeting; Reviews Measures to Strengthen Bilateral Trade and Economic Cooperation
    PM Surya Ghar Yojana 2026: How to Get Rs 78,000 Solar Subsidy & Cut Your Electricity Bill
    Japan's JCR upgrades India's sovereign rating to 'A-', cites solid growth, improved financial system
    In personal insolvency case before NCLAT, Subhash Chandra opposes formation of 5-member NCLT bench
    GoCredit Launches Free Loan App Checker to Verify If a Lending App Is Real, Fake or RBI Registered
    Rupee falls 2 paise to 94.97 against US dollar in early trade
    Senior bureaucrats attend IICA’s ‘weekend wisdom’ program initiave
    NLMC to Facilitate E-Auction of 459 RINL Land Parcels in Visakhapatnam
    CCI approves acquisition of Aseem Infrastructure Finance Limited by TPG Nicobar SG Pte. Ltd. and related transactions
    CCI approves acquisition of up to 100% equity shareholding of Apollo Fertility Centre (AFCPL) and Apollo Specialty Hospitals (ASHPL) by Kids Clinic In...
    ED arrests businessman in DMF-linked money laundering case
❯❯
Maximize Maximize Maximize
0 / 200
Expand Note
Add to Folder

No Folders have been created

+

Are you sure you want to delete "My most important" ?

NOTE:

News
Showing Results for :
Reset Filters
Results Found:
Show All Summaries Hide All Summaries
September 2, 2026
Show AI Summary
Foreign currency swap facility accelerated FCNR(B) deposit window closure after substantial diaspora inflows, while borrowing windows remain open.
Special USD-INR foreign-exchange swap facility for FCNR(B) deposits, Overseas Foreign Currency Borrowings and External Commercial Borrowings was introduced to strengthen the external sector and support foreign-exchange liquidity. FCNR(B) deposits, under which principal and interest are repayable in the same foreign currency, generated the principal share of inflows. Strong diaspora participation led to advancement of the FCNR(B) window closure. The swap facility for Overseas Foreign Currency Borrowings and External Commercial Borrowings remains open until December 31, 2026.
September 2, 2026
Show AI Summary
GST bribery allegations led to a trap operation against officials and an intermediary in a quarrying matter.
Criminal investigation concerns alleged solicitation and acceptance of an undue advantage by CGST officials in connection with settling a GST/royalty matter involving a stone-quarrying firm. The officials allegedly arranged for a private person to collect the payment. A trap operation resulted in the private person being caught while accepting the alleged undue advantage. Searches at the accused persons' premises led to recovery of cash and jewellery, while further investigation continues.
September 2, 2026
Show AI Summary
State GST collection growth outpaced national expansion during the first five months, alongside increased VAT and CST receipts.
Haryana's SGST collections increased by 29 per cent during April-August of financial year 2026-27, exceeding the national growth rate of 16 per cent. August 2026 post-settlement SGST revenue rose by 21 per cent, compared with national average growth of 13 per cent. Haryana accounted for less than 4 per cent of national GST taxpayers but contributed approximately 7.7 per cent of aggregate national SGST, CGST and IGST collections. VAT/CST collections rose by 13.8 per cent during the same period.
September 2, 2026
Show AI Summary
NBFC loan servicing governance retains lender control through deterministic decision rules, maker-checker controls, reconciled migration and optional AI assistance.
Lokta Next 100 offers RBI-registered NBFCs with loan books up to Rs 100 crore post-approval loan servicing, accounting, reporting, analytics, collections, recovery and partner-management functions, excluding pure-play microfinance NBFCs. Credit, approval and money decisions remain with the lender. Maker-checker approval applies to every change, and migration requires line-by-line reconciliation before cutover. Records remain lender-owned, hosted in India and exportable. AI may propose changes but cannot post to the ledger; deterministic lender-policy rules decide changes. Platform fees are deferred for up to 24 months, subject to stated loan-book thresholds.
September 2, 2026
Show AI Summary
RTI access to maintained records does not require creation of Aadhaar date-of-birth update data on demand.
UIDAI did not maintain separate Aadhaar data on date-of-birth updates in Bihar following the announced social security pension enhancement, including month-wise or district-wise compilations. No internal review or flagging of unusual update patterns was available or applicable in its records. The Central Information Commission clarified that the RTI framework does not require a public authority to create, compile or generate information that it does not maintain in the form requested. The initial CPIO response treating the information as outside the RTI Act was considered inappropriate.
September 2, 2026
Show AI Summary
Transgender arrest and detention safeguards prompt calls for a standard operating procedure and clearer procedural protections.
Legal and regulatory issues include safeguards for arrest and detention of transgender persons, consultation requirements in Bar Council policy-making, and procedural accountability in electoral administration and policing. Personal insolvency proceedings raise questions about tribunal powers to constitute an expanded bench. Hospitality operators are expected to comply strictly with food-safety and hygiene norms. Proposed restrictions on minors' social-media accounts address cyberbullying, online exploitation, and harmful screen exposure.
September 2, 2026
Show AI Summary
Railway equipment purchase orders and export order expand IC Electricals' domestic and international business pipeline.
IC Electricals Company Limited has secured railway purchase orders for electrical and electronic supplies and an export order, creating combined order inflow across domestic railway operations and international markets. Its product portfolio includes regulators, battery chargers, emergency lights, inverters, microprocessor-based control systems, alternators, traction motors, and permanent magnet alternators with controllers. Forward-looking statements on business plans, projects, and research and development remain subject to risks and uncertainties and may differ materially from actual results.
September 2, 2026
Show AI Summary
Double deflation explains negative manufacturing GVA deflators when input prices rise faster than output prices.
Double deflation in manufacturing separately deflates gross output and intermediate consumption, with real GVA derived from their difference. Where input prices rise faster than output prices, nominal GVA may grow more slowly than real GVA, producing a negative implicit GVA deflator despite rising output and input prices. A negative manufacturing GVA deflator therefore does not establish a fall in manufactured-product prices or lower real growth. The implicit GDP deflator is a derived ratio between current-price and constant-price GDP and differs from CPI and WPI because of their distinct coverage, weights, and price concepts.
September 2, 2026
Show AI Summary
Data centre ease-of-doing-business reforms target reliable power, prepared land, streamlined approvals and building standards for faster infrastructure deployment.
Ease-of-doing-business reforms for India's data-centre ecosystem focus on faster and sustainable infrastructure deployment through reliable power, ready-to-use land, streamlined approvals and suitable building regulations. Proposed power measures include cluster-based transmission planning, first-day sanctioned load, dual feeders and cross-border renewable-energy procurement. Data-centre-ready land banks and power-ready parcels are intended to reduce development timelines. The National Building Code 2026 recognises data centres under Group E and contains a dedicated annex on fire-risk assessment and data-centre-specific performance indicators.
September 2, 2026
Show AI Summary
Trade facilitation and customs cooperation drive follow-up action on connectivity, regulatory coordination, investment promotion and bilateral commercial engagement.
India-Afghanistan bilateral trade and economic cooperation is being advanced through institutional engagement on trade facilitation, customs cooperation, connectivity, investment and commercial exchange. Priority areas include customs and data-sharing cooperation, visa facilitation for traders, banking and financial cooperation, pharmaceutical and agricultural trade, energy cooperation, tariff concessions, cargo connectivity and port-related matters. Follow-up action covers regulatory cooperation, improved connectivity, investment promotion and business-to-business engagement.
September 2, 2026
Show AI Summary
Residential rooftop solar subsidy requires eligibility, prior approval, registered installation, net metering, commissioning, and verified bank details for direct transfer.
PM Surya Ghar Muft Bijli Yojana provides central financial assistance for eligible grid-connected residential rooftop solar systems, capped at Rs. 78,000 for systems of three kilowatts or more. Applicants must be Indian citizens who own a suitable house, hold a valid electricity connection, and have not received an earlier solar-panel subsidy. Applications require portal registration, distribution-company feasibility approval, installation through a registered vendor, net metering, inspection, commissioning and submission of bank details. Assistance is transferred directly after verification. State-specific net-metering procedures, approvals and additional incentives may apply.
September 2, 2026
Show AI Summary
Sovereign credit rating upgrade reflects solid growth, stronger financial systems, and improving fiscal and external resilience.
JCR upgrades India's foreign-currency and local-currency long-term issuer ratings to A- with a stable outlook, citing sustained economic growth, productivity-oriented policies and improved financial-system soundness. Fiscal constraints include elevated deficits, intergovernmental fiscal transfers, electoral-cycle sensitivity, and high combined government debt and interest burdens. Greater emphasis on infrastructure capital expenditure has improved the quality of fiscal spending. External resilience is supported by a contained current account deficit, services surplus and foreign-exchange reserves exceeding short-term external debt.
September 2, 2026
Show AI Summary
Personal insolvency bench constitution and repayment-plan eligibility remain contested where a larger tribunal bench stays a third-member order.
Personal insolvency proceedings raised a challenge to the National Company Law Tribunal's authority to constitute a five-member bench after a split verdict. The challenge contended that the mechanism for differing views permits reference to another member or members, but does not authorise a five-member bench. The larger bench stayed the third member's order, restricted asset alienation, and suspended an order permitting settlement of personal-guarantee claims. The dispute concerned the validity of that bench, the split-verdict reference procedure, repayment-plan eligibility, and pending creditor appeals.
September 2, 2026
Show AI Summary
Digital lending app verification enables borrowers to identify regulated lenders, grievance channels, and warning signs before accepting loans.
GoCredit's Loan App Checker allows borrowers to search lending apps against the public Digital Lending App directory and identify the regulated lender, grievance contact and RBI Ombudsman escalation route where a match exists. Regulatory reporting by regulated entities enables app-level verification, while borrowers should also check the lender named in app disclosures and loan agreements. A directory listing is a regulated-entity disclosure, not RBI approval or endorsement. Unmatched apps should be assessed through verification steps and reported through official channels where appropriate.
September 2, 2026
Show AI Summary
Rupee depreciation in early trade reflected oil-price pressures, risk aversion, higher Treasury yields and broad dollar strength.
Early foreign-exchange trading saw the rupee weaken against the US dollar amid renewed US-Iran tensions, risk aversion, higher Brent crude prices, and a stronger dollar. Safe-haven demand, inflation concerns linked to potential oil-supply disruption, expectations of a September Federal Reserve rate increase, and higher US Treasury yields supported the broad dollar rally. RBI monitoring of the rupee's decline was noted.
September 2, 2026
Show AI Summary
Responsible AI governance requires ethical safeguards, privacy protection, accountability and adaptive oversight to build lasting corporate stakeholder trust.
Responsible artificial intelligence governance requires continuous innovation, inclusive development, responsible deployment and trust-based governance. AI systems should be ethical, safe, transparent, fair and human-centric, with safeguards for privacy, bias, security and accountability. Proportionate and adaptive regulation should provide clear accountability, standards, monitoring, auditability and grievance redressal. Good governance, cybersecurity, personal data protection and responsible AI together strengthen organisational resilience, stakeholder trust, transparency and sustainable innovation.
September 2, 2026
Show AI Summary
E-auction of surplus public land enables transparent outright sale of RINL parcels through registered, KYC-verified bidding.
National Land Monetization Corporation will facilitate the e-auction and outright sale of 459 encumbrance-free RINL land parcels, including residential plots and parcels suited for commercial and logistics use. Competitive bidding will occur through the RailTel E-Nivida e-procurement platform. Participation requires online registration, KYC verification, and plot-wise submission of an earnest money deposit within prescribed timelines. The process supports transparent monetisation of surplus land and non-core public assets.
September 2, 2026
Show AI Summary
Competition approval for infrastructure finance restructuring covers acquisition, minority transfer, investment divestment, and merger of regulated NBFCs.
Competition Commission of India approval applies to the acquisition of Aseem Infrastructure Finance Limited by TPG Nicobar SG Pte. Ltd., a subsequent minority share acquisition by ICICI Bank Limited, and Aseem's divestment of its shareholding in NIIF Infrastructure Finance Limited to National Investment and Infrastructure Fund II. Following the acquisition, Climate Finance India Private Limited is intended to merge into Aseem as the surviving entity. The entities involved include RBI-registered non-deposit taking NBFCs operating in infrastructure finance, investment and credit, and infrastructure debt financing.
September 2, 2026
Show AI Summary
Healthcare merger approval enables KCIL to acquire fertility and specialty hospital businesses alongside related equity issuances and investment.
Competition Commission approval covers KCIL's acquisition of up to 100% equity shareholding in AFCPL and 100% equity shareholding in ASHPL. The combination includes KCIL issuing equity shares and optionally convertible debentures to AHLL, representing 9.9% fully diluted shareholding as partial consideration, together with a further KCIL equity investment by Arvon Investments Pte. Ltd. KCIL operates mother and baby care hospitals, while AFCPL provides assisted reproductive treatment and reproductive-medicine services.
September 1, 2026
Show AI Summary
Money-laundering investigation into alleged District Mineral Fund diversion examines purported liaison activity and asset acquisition through proceeds of crime.
Money-laundering proceedings under the Prevention of Money Laundering Act concern alleged diversion of District Mineral Fund resources through the Chhattisgarh Seed Corporation. The investigation alleges siphoning of public funds by contractors in collusion with government officials and political executives. A businessman was identified as an alleged liaisoner and financial coordinator between public servants, district authorities and private vendors. Allegations also include receipt of commissions, acquisition of immovable assets from purported proceeds of crime, non-production of records, and contradictory statements during questioning.

News

Back

All News

Showing Results for :
Reset Filters
No Records Found

News

Showing Results for : Reset Filters

Fraud Risk Management in Banks: The Do’s and Don’ts (Shri S. S. Mundra, Deputy Governor - January 30, 2017 - at Seminar on Financial Crimes Management arranged by CAFRAL, Mumbai)

February 2, 2017

Contents
Summary
Note

Note

-

Bookmark

Print

Print

Shri Gopalakrishna, Director, CAFRAL; fellow bankers and participants of the Program on Financial Crimes Management! At the outset, let me mention that this is the third occasion I am speaking on frauds in as many months. In November 2016, I spoke on “Fraud Risk Management in Banks – Major Concerns and 12 Sutras for Bankers” and last month I spoke on “Fraud Risk Management – Forging Partnership between Public and Private sector banks” in which I focused on the ‘contemporary scene’, ‘challenges’ and ‘what more we could do’ to strengthen the defences against frauds in collective manner. It cannot be sheer coincidence that I am speaking on this issue so frequently. It has probably to do with both- a sharp increase in number of frauds in the banking sector coinciding with a greater appreciation of fraud risk in the system. My involvement in these seminars/workshops also underlines the importance that RBI, as banking supervisor, attaches to the management of fraud risk in the system. Each time I speak on the issue I do so with a fervent hope that each participant in these seminars develops greater commitment and sensitivity to mitigating and managing fraud risk in his/her respective organisation. Today I intend to explore few other dimensions of the broad theme of fraud risk management. But before I begin, let me commend CAFRAL for organising this event and providing a platform for the senior officials of the banks to gather and brainstorm on this issue of critical importance.

In the first section of my speech today, I would focus on cyber security and cyber frauds while in the second section I will highlight a few concerns outside the cyberspace.

Cyber Security & Frauds

2. In recent times, we have seen several high profile cyber-incidents both in India as well as globally. You will remember the Bangladesh Bank incident which rattled banks/central banks and forced us to look more closely at cyber security risks. There is an increasing trend in incidents pertaining to theft of personal information, abuse of ATMs and Distributed Denial of Service (DDoS) attacks on various banks. We have already witnessed an attempt to defraud a bank by abusing the SWIFT messaging system which thankfully could be salvaged post event without any apparent monetary loss. We also continue to receive information on several other cyber incidents- be it ransomware attack, ATM / Debit card incident or unauthorised access to bank servers. Phishing / Vishing also continue to haunt bank customers with such attacks becoming more and more sophisticated.

3. Technology adoption by banks and other financial entities has increased manifold in the recent years and today if a bank is not present in the digital world it would be well-nigh impossible for it to compete in the market. As technology evolves from being an enabler and differentiator to being at the core of the banks’ operations, associated issues of security need to be addressed comprehensively.

4. Post withdrawal of legal tender character of ₹ 500 and ₹ 1000 bank notes, there has been a phenomenal push towards digital mode of payment across the country. Aadhaar Enabled Payment Systems are gaining currency and the recent launch of ‘BHIM’ app for facilitating payments is another welcome move. While increasing adoption of digital payment technology would bring in several benefits to the economy, we need to be conscious of security aspects as well. Given this backdrop, let us look at some of the developments internationally.

5. In October 2016, G-7 countries came out with what is called as ‘Fundamental Elements of Cyber Security for the Financial Sector’, which covers cybersecurity strategy and framework, governance, risk and control assessment, monitoring, response, recovery, information sharing and continuous learning as key elements. The Committee on Payments and Market Infrastructures (CPMI), BIS and the International Organization of Securities Commissions (IOSCO) have issued Guidance on cyber resilience for financial market infrastructures (FMIs) which also emphasises on the importance for authorities to cooperate to support broader financial stability objectives. The Bank of England (BoE) has implemented “CBEST”, a new framework for testing cyber security vulnerabilities, particularly in respect of core financial sector entities. Hong Kong Monetary Authority has announced the launch of a “Cybersecurity Fortification Initiative” (CFI), a comprehensive initiative aiming to raise the level of cybersecurity of banks.

6. Closer home, RBI issued a circular on Cyber Security Framework in Banks on June 2, 2016 mandating cyber security preparedness. A specialised cell (C-SITE) has been created within the supervision department of RBI to conduct detailed IT examination of banks’ cyber security preparedness, to identify the gaps and to monitor the progress of remedial measures. More than 30 major banks are slated to be covered under detailed IT examination during 2016-17 and all banks by 2017-18. RBI’s IT subsidiary (the Reserve Bank Information Technology (ReBIT) Pvt Ltd has also become operational with a mandate to focus on issues around IT systems and cyber security (including related research) of the financial sector and to also assist in the audit and assessment of the entities regulated by the Reserve Bank.

7. In terms of June 2 circular, banks were advised to assess the gaps in their preparedness vis a vis the baseline requirements prescribed by RBI and to draw a time bound plan to bridge the gaps urgently. The assessment reveals that barring a few banks the gaps are indeed significant, more so in respect of public sector banks. This warrants immediate and continued attention of the Board and the senior management of the banks. In the changed world, if bank boards do not have expertise in this area, it would become a handicap in the smooth operations of banks. Second, the traditional ways of allocating budgets for IT services in general and cyber security in particular need to undergo a radical change leading to need based assessment and cost effective solutions. The scare that was created during the recent ATM/Debit card incident clearly indicates that cyber security requires top attention by the Board. A few days ago, Risk.Net published an article on the Top 10 Operational Risks for 2017 and indicated Cyber Risk as the top most risk in the minds of Chief Risk Officers.

8. Against this backdrop, the involvement of the Board / Senior Management in appointing Chief Information Security Officers is becoming increasingly crucial. It is important that CISO is sufficiently senior in hierarchy; understands technology well; appreciates the security aspects of all the technologies adopted by the bank; is responsive and is sufficiently enabled to stall launch of unsecure products, whenever necessary. However, ground realities do not provide the needed comfort. I want to use this forum to reiterate that the role of CISO needs to be clearly articulated and reinforced immediately.

9. Our June 2 circular also mandates having a separate cyber security policy and cyber crisis management plan in place. We have observed that in many cases, the banks react to cyber incidents in a knee jerk and an ad hoc manner which at times has a potential to jeopardise future investigations. Having a thorough plan of action with clearly identified roles and responsibilities in the event of cyber incidents is a must in today’s environment.

10. The old adage, prevention is better than cure applies to cyber security as well. Banks need to have a robust defence mechanism against cyber incidents at all times. However, our observation is that many a times, certain finer details such as configuration of devices, patch management, OEM supported software, password management or port management, are ignored or entirely left to the vendors resulting in an undesirable impact. Statistics suggest that it takes on an average about 6 months to detect cyber-attacks by outsiders and longer in cases where attacks are by insiders. Thus, early detection and response assumes significant importance. Banks need to build capabilities to detect cyber-attacks early and respond to them quickly. Recovery from the incident is another aspect that needs to be well thought out.

11. The world has learnt that in dealing with cyber-attacks, awareness and sharing of information plays an important role. Knowledge on cyber related aspects is relevant for all the stakeholders including the Board members. We often observe that this key premise is ignored.

12. RBI has mandated that all unusual cyber-incidents have to be reported within 2 to 6 hours invariably. We observe that banks take much longer time in reporting the incident. Once reported, the results of root cause analysis as well as findings of forensic audit also need to be shared promptly. You would appreciate that timely reporting of cyber incidents is very crucial to enable issuance of suitable cautionary advisories to other banks.

13. In a nutshell, all stakeholders must work collectively to guard and fight against the menace of cyber threat. To quote our Prime Minister, “I dream of a DIGITAL INDIA where: Cyber Security becomes an integral part of our National Security2” Yes, when such message comes from the highest authority in the country, we need no further stimulus for action. I am sure that this Program will leave you with many takeaways and enable you to be a change agent within your respective institutions for securing the IT infrastructure as well as for educating the customers on how to avoid becoming a victim of fraud.

14. Before I move beyond the cyberspace and talk about other frauds, let me mention three issues related to cyber security that I wish the participants to deliberate upon during the course of the Seminar and one issue for the policy makers to ponder over.

a. The rate at which technology is undergoing a change is overwhelming. Contrary to that, human beings are slow learners and slower to adapt to changes, especially if it is a new technology. Against this background, the question that we need to ask ourselves is whether there is a need to employ newer and newer technology enabled products at a fast pace or are we merely doing this since competition has done so? Are you convinced that the new product would significantly enhance the efficiencies & enable better customer experience? My point is frequent introduction of new technology may only end up stretching human resources beyond their capabilities and might eventually prove counter-productive.

b. One trend that has been increasingly witnessed in recent instances of cyber fraud is introduction of malware in the computer systems by the fraudsters that sit ideal for days and months together before striking. These malwares are also known to self –destruct after they have achieved their desired objective. This is a really scary situation and hence, we need to be not only on continuous guard to identify the vulnerabilities that exist in our systems and to plug them but also scout for innocuous looking unknown programmes/malware from time to time.

c. The next aspect that I wish to highlight is around human behaviour. We have always known banking to be a relationship built on trust. However, when we talk about cyber security I tend to believe that ‘zero trust’ is the way to address it. What I am hinting at is that physical and logical access controls must work as designed and only such employees who ‘need to know’ the intricacies of the application software/programmes must have access to them.

15. Finally, I want to raise the issue of cyber literacy for consideration of the policy makers. As we go whole hog into the digital world, it is imperative that the employees as well as customers are cyber literate. I understand that some countries like Israel, have introduced cyber awareness in their high school curriculum. Perhaps, we also need to think on similar lines. With moderate levels of general literacy in our country, this could be a tall order, but nevertheless it is a goal worth pursuing relentlessly.

Let me now move from the cyber space to an earthly level.

Advances related frauds

16. During the FY 2016, advances related frauds constituted nearly 92% of the total frauds reported by all banks. This was more pronounced in case of PSU banks and less in case of private and foreign banks. In almost all the cases, we observed that the exposure had got seasoned as an NPA for 3 to 4 years before the borrower was declared as fraudulent. As a consequence, the gap between the date of occurrence and detection has been widening. Further, the gap between first bank and the last bank reporting the borrowal account as fraud to RBI is also very long. What is the concern here? As you know ‘fraud’ is a criminal offence and any delay on the part of the bankers in initially red flagging an exposure and subsequently declaring it as a fraud will have far reaching implications on the employee conduct and internal governance standard. Banks and bankers could be charged for abetting the criminal offence. My call to you therefore, is to identify and declare the account as fraud without wasting time. The best course of action would be to follow the instructions in letter and spirit and take a responsible and pro-active stand while attending consortium meetings.

17. As a penal measure borrowers who have committed a fraud in the account are debarred from availing bank finance from banks/FIs/NBFCs etc., for a period of five years from the date of full payment of the defrauded amount. After this period, it is for individual institutions to take a call on whether to lend to such a borrower. Anecdotal evidence and our transaction testing on the ground has suggested that this instruction is not always being followed. Recently, we had come across a case where a bank had extended a ‘hand holding operation’ facility in case of very large fraud account.

18. Frauds in the area of cheque cloning continue to be one of the areas of concern for us. We have come across cases where though the original cheques remained in the custody of the customer, cheques with the same series were presented and encashed by fraudsters. RBI has issued guidelines in the issue to the banks in November 2014 and it is necessary that the instructions are followed to prevent fraudulent practices.

People Risk

19. In most of the PSU banks the demographic profile of the employees is very unfavourable and massive recruitment is happening across the banks at the entry level. While banks are augmenting the HR stock, most of them do not have the capacity to train, build and absorb them. In the process the banks are adding significant people risk.

20. Another form in which people risk can manifest is on account of gap in understanding of technology between two sets of employees, colloquially called “digital immigrants” (older generation) and the “digital natives” (the newer generation). Especially in the public sector banks which suffer from a “Missing Middle”, the knowledge gap between the supervisors and supervised in the area of digital can be very stark and might result in loose controls. It is, therefore, important for the Board and Top Management of banks to look for ways to mitigate the people risk as part of the overall Fraud Risk Management Framework.

Conclusion

21. I am of the view that only eternal vigilance can bring us closer to a fraud free eco-system. At the cost of repetition, I would like to reiterate the 12 important messages/sutras for bankers for Bankers that I had outlined in another seminar which according to me are key to a better fraud risk management. Like Sutras, which are short pithy instructive sayings, these messages are simple and straightforward.

Sutra 1: Have a ROBUST Fraud risk identification, event reporting, control, allocation and mitigation framework. ‘Four eyes principle’ must be followed in all sensitive areas without compromise.

Sutra 2: Follow the 5 ‘Cs” of CREDIT - Capacity, Capital, Collateral, Conditions and Character.

Sutra 3: Bring in a CULTURE of eternal vigilance, strong internal control and compliance. Please remember Fraud is criminal offence.

Sutra 4: Remember that the solution for TECHNOLOGICAL CHALLENGES is not always more technology.

Sutra 5: Institute checks and balances to calibrate PEOPLE RISK. High rate of attrition is a new normal which we have to face. Under the circumstances, it is important that the newly recruited staff is appropriately trained to work at the desk he/she is attached to. I feel it would also be useful for the newly recruited staff to have properly documented systems and rule books alongside some kind of a FAQ support.

Sutra 6: EMPOWER fraud risk managers adequately.

Sutra 7: Use extensively the 3 Cs – CFR (Central Fraud Registry), CRILC and CREDIT BUREAUS

Sutra 8: Rely on MARKET INTELLIGENCE.

Sutra 9: Develop BUSINESS ANALYTICS tools.

Sutra 10: CUT LOSSES and exit when the situation so demands.

Sutra 11: DO NOT THROW GOOD MONEY after bad money in fraud cases.

Sutra 12: Comply with RBI Regulations in letter and spirit.

22. To conclude, I would say that programs like these are very useful towards acquiring requisite skill sets as the participants also get to learn from practical experiences of fellow practitioners. I once again thank Shri Gopalakrishna for inviting me here this morning and wish the rest of the Seminar all success

------------

1 Key Note Address delivered by Shri S. S. Mundra, Deputy Governor, Reserve Bank of India at Seminar on Financial Crimes Management arranged by CAFRAL on January 30, 2017 in Mumbai. Assistance provided by S/Shri Manoj Sharma, R.Ravikumar and Dr. K.Balu is gratefully acknowledged.

2 http://pib.nic.in/newsite/PrintRelease.aspx?relid=148097

Topics

Acts Income Tax