Loading...

Financial Services Regulations: A look back and a look ahead

Published: November 3, 2016 by Kerry Rivera

financial-services-regulatory

It’s been a wild ride for the financial services industry over the past eight years. After the mortgage meltdown, the Great Recession and a stagnant economy … well, one could say the country had seen better days.

Did you watch The Big Short last winter? It all came crumbling down.

And then President Barack Obama entered the scene. Change was needed. More oversight introduced. Suddenly, we had the Affordable Care Act, the Dodd-Frank Wall Street Reform Act and the creation of the Consumer Financial Protection Bureau (CFPB). Taxes were raised on the country’s highest earners for the first time since the late-1990s. In essence, the pendulum swung hard and fast to a new era of tightened and rigorous regulation.

Fast forward to present day and we find ourselves on the cusp of transitioning to new leadership for the country. A new president, new cabinet, new leaders in Congress.

What will it all mean for financial services regulations?

It’s helpful to initially take a look back at the key regulations that have been introduced over the past eight years.

Mortgage Reform: Long gone are the days of obtaining a quick mortgage.  New rules have required loan originators to verify and document the consumer’s income and assets, including employment status (if relied upon), existing debt obligations, mortgage-related obligations, alimony and child support. The CFPB has also expanded foreclosure protections for struggling borrowers and homeowners. Maintaining the health of the mortgage industry is important for the entire country, and updated rules have enhanced the safety and transparency of the mortgage market. Home values have largely recovered from the darkest days, but some question whether the underwriting criteria have become too strict.

Combatting Fraud: The latest cyber-attack trends and threats come fast and furious. Thus, regulators are largely addressing the challenge by expecting banks to adhere to world-class standards from organizations such as the National Institute of Standards and Technology (NIST). The Federal Trade Commission (FTC) and the National Credit Union Administration (NCUA) implemented the Red Flags Rule in November 2008. It requires institutions to establish policies and procedures to identify and recognize red flags — i.e., patterns, practices or specific activities that indicate the possible existence of identity theft — that occur during account-opening activities, existing account maintenance and new activity on an account that has been inactive for two or more years.

Loss Forecasting: The Dodd-Frank Act Requires the Federal Reserve to conduct an annual stress test of bank holding companies (BHCs), savings and loan holding companies, state member banks, and nonbank financial institutions. In October 2012, the Fed Board adopted the Comprehensive Capital Analysis and Review (CCAR) rules. This requires banks with assets of $50 billion or more to submit to an annual review centered on a supervisory stress test to gauge capital adequacy. In January 2016, Dodd-Frank Act Stress Testing (DFAST) was introduced, requiring bank holding companies with assets of $10 billion or more to conduct separate annual stress tests known as “company-run tests” using economic scenarios. Every year regulators expect to see continued improvement in stress-testing models and capital-planning approaches as they raise the bar on what constitutes an acceptable practice.

CFPB: No longer the new kids on the block, the CFPB has transitioned to an entity that has its tentacles into every aspect of consumer financial products. Mortgage lending was one of their first pursuits, but they have since dug into “ability-to-pay underwriting” and servicing standards for auto loans, credit cards and add-on products sold through third-party vendors. Now they are looking into will likely be the next “bubble,” – student lending – and educating themselves about online marketplace lending.

Data Quality: Expectations related to data quality, risk analytics, and regulatory reporting have risen dramatically since the financial downturn. Inaccuracy in data is costly and harmful, slows down the industry, and creates frustration. In short, it’s bad for consumers and the industry. It’s no secret that financial institutions rely on the accuracy of credit data to make the most informed decisions about the creditworthiness of their customers. With intense scrutiny in this area, many financial institutions have created robust teams to handle and manage requirements and implement sound policies surrounding data accuracy.

This is merely a sliver of the multiple regulations introduced and strengthened over the past eight years. Is there a belief that the regulatory pendulum might take a swing to other side with new leadership? Unlikely. The agenda for 2017 largely centers on the need to improve debt collections practices, enhance access to credit for struggling Americans, and the need for ongoing monitoring of the fintech space.

Only time will tell, but one thing is certain. Anyone involved in financial services needs to keep a watchful eye on the ever-evolving world of regulation and Washington.

Related Posts

Fraud rings cause an estimated $5 trillion in financial damages every year, making them one of the most dangerous threats facing today’s businesses. They’re organized, sophisticated and only growing more powerful with the advent of Generative AI (GenAI). Armed with advanced tools and an array of tried-and-true attack strategies, fraud rings have perfected the art of flying under the radar and circumventing traditional fraud detection tools. Their ability to adapt and innovate means they can identify and exploit vulnerabilities in businesses' fraud stacks; if you don’t know how fraud rings work and the right signs to look for, you may not be able to catch a fraud ring attack until it’s too late. What is a fraud ring? A fraud ring is an organized group of cybercriminals who collaborate to execute large-scale, coordinated attacks on one or more targets. These highly sophisticated groups leverage advanced techniques and technologies to breach fraud defenses and exploit vulnerabilities. In the past, they were primarily humans working scripts at scale; but with GenAI they’re increasingly mobilizing highly sophisticated bots as part of (or the entirety of) the attack. Fraud ring attacks are rarely isolated incidents. Typically, these groups will target the same victim multiple times, leveraging insights gained from previous attack attempts to refine and enhance their strategies. This iterative approach enables them to adapt to new controls and increase their impact with each subsequent attack. The impacts of fraud ring attacks far exceed those of an individual fraudster, incurring significant financial losses, interrupting operations and compromising sensitive data. Understanding the keys to spotting fraud rings is crucial for crafting effective defenses to stop them. Uncovering fraud rings There’s no single tell-tale sign of a fraud ring. These groups are too agile and adaptive to be defined by one trait. However, all fraud rings — whether it be an identity fraud ring, coordinated scam effort, or large-scale ATO fraud scheme — share common traits that produce warning signs of imminent attacks. First and foremost, fraud rings are focused on efficiency. They work quickly, aiming to cause as much damage as possible. If the fraud ring’s goal is to open fraudulent accounts, you won’t see a fraud ring member taking their time to input stolen data on an application; instead, they’ll likely copy and paste data from a spreadsheet or rely on fraud bots to execute the task. Typically, the larger the fraud ring attack, the more complex it is. The biggest fraud rings leverage a variety of tools and strategies to keep fraud teams on their heels and bypass traditional fraud defenses. Fraud rings often test strategies before launching a full-scale attack. This can look like a small “probe” preceding a larger attack, or a mass drop-off after fraudsters have gathered the information they needed from their testing phase. Fraud ring detection with behavioral analytics Behavioral analytics in fraud detection uncovers third-party fraud, from large-scale fraud ring operations and sophisticated bot attacks to individualized scams. By analyzing user behavior, organizations can effectively detect and mitigate these threats. With behavioral analytics, businesses have a new layer of fraud ring detection that doesn’t exist elsewhere in their fraud stack. At a crowd level, behavioral analytics reveals spikes in risky behavior, including fraud ring testing probes, that may indicate a forthcoming fraud ring attack, but would typically be hidden by sheer volume or disregarded as normal traffic. Behavioral analytics also identifies the high-efficiency techniques that fraud rings use, including copy/paste or “chunking” behaviors, or the use of advanced fraud bots designed to mimic human behavior. Learn more about our behavioral analytics solutions and their fraud ring detection capabilities. Learn more

Published: February 27, 2025 by Presten Swenson

Fraud never sleeps, and neither do the experts working to stop it. That’s why we’re thrilled to introduce Meet the Maker, our new video series spotlighting the brilliant minds behind Experian’s cutting-edge fraud solutions. In our first episode, Matt Ehrlich, Senior Director of Identity and Fraud Product Management, and Andrea Nighswander, Senior Director of Global Solution Strategy, share how they use data, advanced analytics, and deep industry expertise to stay ahead of fraudsters. With 35+ years of combined experience, these fraud-fighting veterans know exactly what it takes to keep bad actors at bay. Watch now for an exclusive look at the minds shaping the future of fraud prevention.    Stay tuned for more episodes featuring the visionaries driving fraud innovation.

Published: February 21, 2025 by Julie Lee

The days of managing credit risk, fraud prevention, and compliance in silos are over. As fraud threats evolve, regulatory scrutiny increases, and economic uncertainty persists, businesses need a more unified risk strategy to stay ahead. Our latest e-book, Navigating the intersection of credit, fraud, and compliance, explores why 94% of forward-looking companies expect credit, fraud, and compliance to converge within the next three years — and what that means for your business.1 Key insights include: The line between fraud and credit risk is blurring. Many organizations classify first-party fraud losses as credit losses, distorting the true risk picture. Fear of fraud is costing businesses growth. 68% of organizations say they’re denying too many good customers due to fraud concerns. A unified approach is the future. Integrating risk decisioning across credit, fraud, and compliance leads to stronger fraud detection, smarter credit risk assessments, and improved compliance. Read the full e-book to explore how an integrated risk approach can protect your business and fuel growth. Download e-book 1Research conducted by InsightAvenue on behalf of Experian

Published: February 20, 2025 by Julie Lee

Subscribe to our blog

Enter your name and email for the latest updates.

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Subscribe to our Experian Insights blog

Don't miss out on the latest industry trends and insights!
Subscribe