FFIEC Releases Guidance re: Risk Management of Free and Open Source Software
The Federal Financial Institutions Examination Council (FFIEC) has released guidance to US financial institutions regarding their use of free and open source software.
The use of FOSS by financial institutions does not pose risks that are fundamentally different from those presented by the use of proprietary or self-developed software.However, FOSS adoption and usage necessitates some distinctive risk management practices with which institutions must be familiar.This guidance describes those unique risk management practices and should be used in conjunction with other published guidance, such as the FFIEC IT Examination Handbook, Development and Acquisition Booklet.







Add your comment... (note that all comments are reviewed before they're published)