This review process ensures objectivity, identifies gaps, and drives continual improvement.
As BSN continues to provide critical services to individuals, government entities, and businesses across Malaysia, conducting an independent quality review ensures that its resilience strategies remain robust, relevant, and aligned with regulatory expectations.
The primary objectives of conducting an independent quality review are to:
Clearly define what will be reviewed (e.g., specific Critical Business Functions or entire resilience plans) and what the review aims to achieve.
Example
BSN may initiate an independent quality review of CBS-4 (Digital Banking) and CBS-8 (Core Banking System) due to the increasing reliance on digital platforms and the criticality of uninterrupted system availability.
Engage internal audit teams that are functionally independent, or external subject matter experts (SMEs) with no operational involvement in the day-to-day BCM/ITRM functions.
Example
A third-party consultancy with expertise in operational resilience could be commissioned to conduct a review of CBS-1 (Retail Banking Services) and CBS-6 (Agent Banking), assessing their continuity plans under various disruptive scenarios.
Review all resilience-related documentation, including:
Example
During the review of CBS-10 (Regulatory Reporting and Compliance), documentation must demonstrate how BSN ensures timely and accurate regulatory submissions during system outages or crises.
Conduct validation through:
Example
To assess CBS-3 (ATM and Self-Service Banking Infrastructure), reviewers may visit branches or data centres to inspect failover mechanisms and validate response actions during unplanned ATM outages.
Use standards such as:
Example
A review of CBS-7 (Treasury and Liquidity Management) should confirm that the function’s continuity procedures align with BNM’s expectations for financial stability during systemic disruptions.
List observations by priority level (Critical, Major, Minor), noting where current practices diverge from stated procedures, standards, or best practices
Example
A critical finding may emerge if CBS-9 (Customer Complaint and Dispute Resolution) lacks a backup system for complaint tracking during system outages, potentially leading to regulatory penalties or reputational damage.
Deliver a formal report to BSN’s Operational Resilience Steering Committee and senior management, outlining:
Example:
The review of CBS-5 (Loan Disbursement and Repayment Processing) may result in a recommendation to strengthen data backup frequency to reduce data loss risk within the 24-hour recovery window.
Implement a follow-up process to ensure that recommendations are addressed within agreed-upon timelines. Use dashboards or compliance tracking tools for visibility.
Example
Post-review of CBS-2 (Government Aid and Disbursement Services), an internal team may be assigned to oversee process improvements that ensure timely disbursements during state emergencies.
This independent review process should be embedded into BSN’s annual review cycle and triggered:
Conducting an Independent Quality Review is a crucial element of BSN’s commitment to continuous improvement in operational resilience.
It ensures that each critical business function—from digital banking and core systems to regulatory reporting—is regularly assessed for quality, reliability, and resilience.
By maintaining objectivity and transparency in this review process, BSN strengthens its ability to anticipate, absorb, and adapt to future disruptions, thereby safeguarding public trust and financial stability.
| Operational Resilience for Financial Services: The BSN Malaysia Approach | ||||||
| "Sustain" Phase of the Operational Resilience Planning Methodology | ||||||
|
OR Planning Methodology Phases |
Plan | Implement | Sustain | ||
To learn more about the course and schedule, click the buttons below for the OR-3 Blended Learning OR-300 Operational Resilience Implementer course and the OR-5 Blended Learning OR-5000 Operational Resilience Expert Implementer course.
|
If you have any questions, click to contact us. |
||
|
|