When terrorists attacked the World Trade Center on September 11, 2001, they also attacked the U.S. financial system. In addition to destroying critical financial infrastructure, the collapse of the twin towers closed the New York Stock Exchange and disrupted the payments system that links U.S. intermediaries, threatening to shut down banks, ATM machines and credit card operations across the country. Only extraordinary intervention by the Federal Reserve kept the system afloat (see, for example, Rosengren).

We have long argued that financial stability is a vital common resource (see here). As ECB Board member Cœuré suggests in the opening quote, the same applies to financial cybersecurity—the protection of financial information and communications technologies (ICT) and their associated networks from failures and attacks. The events of 9/11 and their aftermath dramatically highlighted the link between stability and cybersecurity. Moreover, because our financial system is so deeply reliant on ICT and on large, global networks, these two objectives are more closely linked than ever before: ensuring one means guarding the other.  

In this post, we highlight the pervasiveness of cyberthreats as a source of operational risk in finance. Consistent with the Presidential Policy Directive 21 and a recent Presidential Executive Order aimed at strengthening cybersecurity, the U.S. government has designated financial services infrastructure as critical to national and economic security (see here). Nevertheless, numerous challenges—ranging from the availability of reliable data to the ever-changing nature of the attacks themselves—make the goal of safeguarding financial ICT networks very difficult. To be effective, cybersecurity efforts require mechanisms for preventing successful attacks, limiting their impact, and promoting quick, reliable recovery. Reducing vulnerability and contagion while boosting cyberresilience is a very tall order….

Bank resilience: yet another missed opportunity

Along with enormous misery, the financial crisis brought an opportunity for long-needed reform. At the top of the list was the clear need for more bank capital. To ensure resilience of the financial system, and protect the public purse, banks’ owners had to have much more skin in the game. That is, potential losses to equity holders had to go way up.

Unfortunately, the 2010 Basel III agreement missed this rare opportunity to make the financial system safe. And now, with the publication of the standards for what has come to be known as total loss-absorbing capacity (TLAC), the disappointment continues to grow. To understand why, we need to step back and address the big question for bank capital: how much is enough...?

Bond market liquidity: should we be worried?

Equities are the stars, they are the financial instruments in the headlines. But it is bonds that are the cast and crew. They do the day-to-day work behind the scenes. And, as with any tradable asset, the confidence that prices are fair and that you can sell what you buy is essential.

So, when knowledgeable people express concerns that regulatory changes are causing bond markets to malfunction (see, for example, here), it leads us to ask some tough questions. Are these markets somehow impaired? Is enhanced financial regulation to blame? Is this creating risks to the financial system as a whole...? 

