Financial Institution Letter
FIL-77-2006
August 21, 2006
AUTHENTICATION IN AN INTERNET BANKING ENVIRONMENT
Frequently Asked Questions
Federal Deposit Insurance Corporation
550 17th Street NW, Washington, D.C. 20429-9990
Summary: The Federal Financial Institutions Examination Council (FFIEC) has published the attached
frequently asked questions (FAQs) to assist financial institutions and their technology service providers in
conforming with the FFIEC guidance entitled Authentication in an Internet Banking Environment.
Distribution:
FDIC-Supervised Banks (Commercial and Savings)
Suggested Routing:
Chief Executive Officer
Chief Information Security Officer
Related Topics:
FIL-103-2005, “Authentication in an Internet Banking
Environment,” issued on October 12, 2005
Attachment:
Frequently Asked Questions on Authentication in an
Internet Banking Environment
Contact:
Senior Policy Analyst Jeffrey Kopchik at
JKopchik@fdic.gov or (202) 898-3872, or Senior
Technology Specialist Robert D. Lee at RoLee@fdic.gov
or (202) 898-3688
Note:
FDIC financial institution letters (FILs) may be accessed
from the FDIC's Web site at
www.fdic.gov/news/news/financial/2006/index.html.
To receive FILs electronically, please visit
http://www.fdic.gov/about/subscriptions/fil.html.
Paper copies of FDIC financial institution letters may be
obtained through the FDIC's Public Information Center,
3501 Fairfax Drive, E-1002, Arlington VA 22226 (1-877-
275-3342 or 703-562-2200).
Highlights:
• On October 12, 2005, the FFIEC issued guidance on
Authentication in an Internet Banking Environment (see
FDIC FIL-103-2005).
• The FFIEC has published the attached FAQs to assist
financial institutions and their technology service
providers in conforming with the guidance.
• The FAQs are divided into seven areas and include
answers to questions concerning:
o the scope of the guidance,
o the time frame for compliance,
o definitions,
o risk assessment,
o customers,
o technology service providers, and
o the appendix.
FIL-77-2006
August 21, 2006
AUTHENTICATION IN AN INTERNET BANKING ENVIRONMENT
Frequently Asked Questions
Federal Deposit Insurance Corporation
550 17th Street NW, Washington, D.C. 20429-9990
Summary: The Federal Financial Institutions Examination Council (FFIEC) has published the attached
frequently asked questions (FAQs) to assist financial institutions and their technology service providers in
conforming with the FFIEC guidance entitled Authentication in an Internet Banking Environment.
Distribution:
FDIC-Supervised Banks (Commercial and Savings)
Suggested Routing:
Chief Executive Officer
Chief Information Security Officer
Related Topics:
FIL-103-2005, “Authentication in an Internet Banking
Environment,” issued on October 12, 2005
Attachment:
Frequently Asked Questions on Authentication in an
Internet Banking Environment
Contact:
Senior Policy Analyst Jeffrey Kopchik at
JKopchik@fdic.gov or (202) 898-3872, or Senior
Technology Specialist Robert D. Lee at RoLee@fdic.gov
or (202) 898-3688
Note:
FDIC financial institution letters (FILs) may be accessed
from the FDIC's Web site at
www.fdic.gov/news/news/financial/2006/index.html.
To receive FILs electronically, please visit
http://www.fdic.gov/about/subscriptions/fil.html.
Paper copies of FDIC financial institution letters may be
obtained through the FDIC's Public Information Center,
3501 Fairfax Drive, E-1002, Arlington VA 22226 (1-877-
275-3342 or 703-562-2200).
Highlights:
• On October 12, 2005, the FFIEC issued guidance on
Authentication in an Internet Banking Environment (see
FDIC FIL-103-2005).
• The FFIEC has published the attached FAQs to assist
financial institutions and their technology service
providers in conforming with the guidance.
• The FAQs are divided into seven areas and include
answers to questions concerning:
o the scope of the guidance,
o the time frame for compliance,
o definitions,
o risk assessment,
o customers,
o technology service providers, and
o the appendix.