What is a ‘critical third party’, and why must Finance technology providers be ready to earn this designation?
As a long-standing technology partner for multiple financial organisations across the UK, the team at Exponential-e have been observing the sector's evolving relationship with technology for some time - both the growing demand for a higher standard of operational resilience, and an increasing awareness of the challenges and opportunities that Cloud transformation presents.
In light of an increasingly complex digital landscape, a tense geopolitical situation, and a growing volume of compliance obligations around the handling of financial data, it is only natural that the sector is keen to establish a standard of resilience, security, and flexibility that will ensure it is fully equipped for the years ahead and - ultimately - provide its customer with complete peace of mind.
The sector's underlying technology infrastructure is playing a critical role in this journey, which makes it essential that we, as IT specialists, are willing to take the time to understand financial organisations distinct requirements and obligations and tailor our solutions to accommodate them. However, this means more than just exploring customer requirements…
"In July 2022, the Finance sector's supervisory authorities - i.e. the Bank of England, Prudential Regulation Authority (PRA), and FCA - set out a number of potential measures to formalise the assessment process for so-called 'critical third parties', defined as:"…a third party that HMT would designate as 'critical' using its proposed powers under the FSM Bill. Under the proposals in the Bill, HMT would be able to designate a third party as 'critical' if it was satisfied that a failure in, or disruption to, the provision of the services that it provides to firms and FMIs (either individually or where more than one service is provided, taken together) could threaten the stability of, or confidence in, the financial system of the UK.1"
1. https://www.bankofengland.co.uk/prudential-regulation/publication/2022/july/operational-resilience-critical-third-parties-uk-financial-sector
While these proposed standards will not just apply to technology partners, they represent the latest step in the Finance sector's increasing level of rigour around the assessment of potential partners, and so any technology providers looking to engage with the sector must expect to present clear evidence of their ability to meet these criteria.
There's no doubt that the years ahead will challenge both financial organisations and their technology providers, but close cooperation between teams will not only ensure business-as-usual can be maintained as much as possible and strengthen customers' faith in the sector, but also establish long-lasting partnerships that will drive a whole new level of innovation, where leading-edge technology is utilised in service of financial firms' short- and long-term goals around resilience, security, and service quality. If you'd like to find out more about the Finance sector's technology journey, do not hesitate to contact us.