eBanking_ferdaus4

Download as pptx, pdf, or txt
Download as pptx, pdf, or txt
You are on page 1of 117

e-BANKING SERVICES &

CYBER SECURITY

Presente
d by
Jannatul Ferdaus
Sonali Deputy General Managr
Sonali Bank Staff College,Dhaka
Bank PLC
E –Banking also known
as
•Electronic Banking
•Virtual Banking
•Online Banking
•Internet Banking

• Information
• Communication
• Technology
What is e-Banking

Electronic Banking or e-
Banking are banking which make use
of information and communication
technologies (ICTs).

ICT is the infrastructure and


components that enable
modern computing.
Where were we before?
Where are we now?
Way Towards Digital Banking

2024
2023
2021
Payment
2020
switch,
NDC
2016 Bangla QR
Sonali Sonali Home
Sonali E-wallet Taka Pay Card
2009
E-Sheba Link Sonali Exchange
Account Mobile app
CBS Call Centre
1989
Cards,ATM

Computerized
Current Situation of Digital Banking of SBPLC

1231 3887
8,69,087
13,25,627
232 30523

CBS ATM Booth E-wallet Bangla QR Card Profit


Customers Demand in Digital
Services Self-Banking

24*7 Banking

Paperless
banking
Set up automatic
Benefits payments
of Digital Service at
remote area
Digital One Stop
Service payments
Multicurrency
s in payment
Easy Loyalty
Bank Programs
Cashless
Transaction
Reduces the
risk

Notification
Advantages
Bank:
Customers:
Global Reach
 24×7 Service Society:
 Faster Communication
 Readily Information  Less Traffic
Quick feedback
 Free Delivery
 Less Air Pollution
Digital Management  From comfort of home
Reduce office space  No need to queue
 Access To Rural
Improves Brand Image  No travelling Areas
Provide Better Services  Save time and effort
 Helps Government
 Transfer services  Online tracking

Quality services  Get detail information about the

Simplifies Business Process product

Increase Productivity  Wide variety of products are available


Disadvantages
Technical Disadvantages
 Lack of system security. Non-Technical Disadvantages
 Lack of direct contact between customer
 Initial cost
and Banker
 Reliability.
 User Expectance/resistance
 Fraud chance  Security/ Privacy online transactions.
 Delay in delivery
 Face to face communication
 Technology changing rapidly.
 Network bandwidth
 Integration with existing applications or

databases.
 Incompatible with component.
 James Watt: steam engine
 James Watt's rotative steam engine with sun-and-planet gear,
original drawing, 1788. In the Science Museum, London.
 The
evolution of the
industrial revolution
 4IR: a fusion of our Physical,
Digital & Biological worlds
Technological Development
of FinTech

Modern
Online
Main
Calculator
SWIFT
Financial
FinTech
Frame –
, ATM –
Transactio
Computer
Start
1970–
1967
n––2008
1980
1990
Technology Used by FinTech Companies
Challenges and Risk of 4IR

Job displacement
Unemployment
Make human Lazy
No Ethics and misuse of AI (Deepfakes,my Heritage,d-id)
High cost
No Creativity
Cyber security threats and data privacy concern
Socioeconomics inequality
Uncontrollabe self aware AI
Cashless Society

No Paper Money on Coins


Everything is Electronic
Digital Payment via E-wallets, Cards, EFT, Internet Banking
etc.
Bio-Metric Payment via Fingerprints, Face detection. Retinal
Scan
Cashless Target
2025 30%

2027 75%
2031
100%

CARDS DIVISION 21
Services

Inward
Remittanc ATM
e / BLAZE
On Us E-
Commerce /
Payment Bank POS
gateway
Not On Us (SPG)

Card
Local SDM Division
Bangla QR
Currency
S
Foreign
Currency Pre-paid Taka Pay
Card Card
Credit Debit
Card Card
Function of ATM

•24 hour access to Cash

•View Accounts Balances & Mini statements

•Order a cheque Book and statement

• Transfer fund between statement

• Refill Your Prepaid Card

•Pay Your utility Bills

•Deposit Cash or cheques


On Going Services

VISA Inward Payment


Remittance switch
Pre
On Us personaliz
CRM
ed Debit
Card
Not On Us BankPOS
/ Agent Wall mount

Local POS Card Division

Currency VISA
acquiri jacket
Foreign
ng
Currency
Pre-paid Duel Currency
Card VISA EMV Debit Card
Fast Pre-paid
fund Card
Payment Switch
 A Switch is a computer System.
 It facilitates the transfer of electronic
message between terminal device and the
appropriate network applications
 Switch Plays an important role in the entire
ADC

CARDS DIVISION 26
Payment Switch

CARDS DIVISION 27
Sonali Payment Switch

Payment Switch
Sonali Payment Switch(Opportunities & challenges)

Opportunities: Challenges:
 Source of generating more revenue  Lack of trained Manpower
 Merchant Acquiring  Un-established Business Policy
 Virtual Card Issue  No Advertisement
 Merchant POS  Existing Data Migration
 E-Commerce Payment  PAN, Expiry Date
 Many more Card Issues  Pin Verification Key (PVK)
 Provide Better customer services  Card Verification Key (CVK)
 Decrease Vendor Dependencies
 BanglaQR Acquire & Issuer Transaction
 Easy integration with stakeholders
Sonali Payment Switch(First Phase)

 On us & off us cash withdrawal by any ATM


 On us cash deposit by CRM
 On us & off us IBFT (BanglaQR)
 NPSB
 Bangla QR Acquire & Issuer Transaction
 E-Commerce Payment
 Takapay
Main Part in Payment Switch
 Application Server
 Server
 Payment Server /
transaction engine
 Database Server
 Payment gateways
 Schemes
 Network
 Terminal
 Interacting
 Hardware Security Modules
(HSM)
 Middleware CARDS DIVISION 31
Schemes
Card Scheme means a payment network such
as
 Taka Pay
 VISA
 Master
 American
Express
 Diners Club
 Discover
CARDS DIVISION 32
Module of PS
 Tokenization
 Fraud management
QR  Multi Bank / Multi Institute
 Bangla QR Issuing  Mobile Banking/
 Bangla QR Acquiring Wallet
 Dynamic QR Others  Internet Banking
 Debit Card
 Credit Card
 Prepaid Card
 Virtual Card CMS
 Instant Card
 Islamic Card
Paymen Clearing and Settleme
 Haaj Card Clearing Reconciliation
 Travel Card t Switch
Fee & Commission

 Merchant Managem
 Bank POS
 Call center IVR  Merchant POS
Merchan
 Green PIN  ATM  Payment Gateway
t
 Information  CRM
 POS
Terminal

CARDS DIVISION 33
Benefit of Payment Switch
 No revenue sharing
 No vendor dependency
 Adapt New technology
 Easy to introduce new services and
next generation banking
 Easy to manage and easy to gain
 Introduce new product as bank
choice
 Technology based payment
 Easy to reconcile and settlement
 Provide service to other bank
membership basis

CARDS DIVISION 34
ATM/POS INFO
ATM/POS
Growth Rate
ATM
APRIL 2023 October,2024
143
152
32.95%

ATM 152
BankPOS
211 38.82%

Credit 6
5290
6

ATM/POS Card 0%
4807 -9.13%

Debit E-Merchent
Card
693960
110
923230 33.04
160

45.45%
Transaction
type
Transaction type

 On us Card Not Present (CNP)

 Remote On US
 Off us Card Present (CP)

CARDS DIVISION 36
Protagonist of card Brand
Name

PAN
Number

Expiry
Date
EMV Chip

Card Holder Name


CARD HOLDER NAME

Hologram
Debit Card Features
A payment card that deducts money directly
from a consumer’s checking account
Any individual having a savings
 Annual Fee 400 Taka
or current account.
 Card / PIN Replacement Fee
 Cash withdrawal 100 Taka
 Cash Withdrawal Fee
 Payment by POS
 Sonali Bank ATM Free
 Payment by E-commerce  Q-Cash ATM 10 Taka
 Any Network (NPSB, Taka pay,  NPSB ATM 15 taka
 POS / E-commerce Free
VISA, Q-Cash)
 Cash Withdrawal Limit
 Any time any where
1,00,000 taka/day
 Secure EMV Transaction  POS Transaction 2,00,000
 SMS Notification taka /day
 Supplementary card  Ecommerce default limit
Credit Card Features
Borrowing money from bank to make purchases and withdrawal
money within limit.
Any individual having a savings
or current account.
 Multicurrency Card
 Minimum Interest Rate (14-
 Cash withdrawal 50% of limit
16)%
 Payment by POS 100% limit
 Maximum 50 Days interest fee
 Payment by E-commerce 100%
 Monthly Statement Sent by
of limit
email
 Any Network (NPSB, VISA, Q-
 No cash advance fee for SBL
Cash) ATM
 Any time any where  Secure EMV Transaction
 Secure EMV Transaction  SMS Notification
 SMS Notification  Supplementary card
Credit Card Eligibility
 Only Bangladeshi nationals are eligible for apply.
 Age limit 18 to 59 years and highest 70 years.
 Officers of Sonali Bank Limited are entitled to enjoy
credit card facility.
 Teachers/Officials of Govt. School, College &
Universities and Officials of Govt. Semi Govt.
Autonomous Body whose salary are disbursed through
Sonali Bank Limited.
 Service holders of other Financial Institutions & Firms
(Subject to having a savings/current account in this
bank)
 Businessmen (Subject to having a savings/current
account in this bank)
 Officials/Executives of Corporate Organization
 Clients under Exporter's Retention Quota (ERQ)
Credit Card Limit
BorrowingDesignation
money from bank to make Maximum
purchases andLimit
General Credit Card 12 Times of Basic pay
withdrawal money within limit.
1. Deputy General Manager and above 10.00 lac

2.Assistant General Manager 9.00 lac


3. Senior Principal Officer & Equivalent 8.00 lac

4. Principal Officer & Equivalent 7.00 lac


5. Senior Officer & Equivalent 5.00 lac
6. Officer & Equivalent 4.00 lac
7. Junior Officer, Assistant Officer & 1.00 lac
Equivalent
8. All pensioners, Officials & Executives of 50% of Credit Card limit
Sonali Bank Ltd those who draw their in comparison with the
Pension from any branch of Sonali Bank grade from which he /
Limited. she retired.
Prepaid Card
A payment card that is loaded with money by
user/customer

Only Bangladeshi national age 18


years & above
 Cash withdrawal
 Payment by POS Documents
 Payment by E-commerce  Know your customer
 Any Network (NPSB, VISA, (KYC) form
 National ID Card
Q-Cash)
 Any time any where  Yearly Card Fee 100
 Secure EMV Transaction taka
 SMS Notification
 Multicurrency Card
 Freelancer Card
Bangla QR
Bangla QR : বাংলা কিউআর একটি কিউআর কোড
পেমেন্ট সিস্টেম। অর্থাৎ বাংলা কিউআর এর কিউআর
কোড স্ক্যান করে ক্রেতা সহজেই পছন্দের ডিজিটাল
পেমেন্ট সেবা থেকে পেমেন্ট করে দিতে পারবেন। ফলে
একটি মাত্র প্ল্যাটফর্মেই যে কেউ পেমেন্ট গ্রহণ
বা প্রদান করতে পারবেন।

CARDS DIVISION 45
Money withdrawal using QR
Code

Customers with e-Wallet can now


withdraw money from any branch
using the QR code.

30523,TXN 18,67,907Amt
692,91,41,991 tk
Bangla QR
Benefit
 Cashless, No need to carry paper
money.
 All apps supported.
 Direct deposit to Account.
 No risk about robbery and this
type of fraud.
 Reduces change of money.
 Reduces cash related
cost.
CARDS DIVISION 47
QR Merchant
Merchant
Micro Regular
Merchant Merchant

মাসিক লেনদেন মাসিক লেনদেন


১০,০০,০০০(দশ লক্ষ) ১০,০০,০০০ (দশ লক্ষ)
টাকার নিচে টাকার উপরে

CARDS DIVISION 48
Who will be a Merchant
Micro Regular
Merchant Merchant
 যেকোন ক্ষুদ্র  যেকোন ক্ষুদ্র,
ব্যবসায়ী মাঝারী, বড়
 যারা এখনো ব্যাংকিং
ব্যবসায়ী
চ্যানেলে আসেনি  ঔষধর দোকান, হোটেল,
 ক্ষুদ্র চায়ের
কাপড়ের দোকান,
দোকান, মুদি দোকান, মোবাইলের দোকান,
মুচি মার্কেটের যেকোন
 চটপটিওয়ালা,
দোকান, রড
ডাবওয়ালা, সিমেন্টের দোকান,
ভ্রাম্যমান দোকান ও বই-সেস্টেশনারীর
হকার, ফুটপথের দোকান দোকান ই্ত্যাদি
 ক্ষুদ্র 
CARDS DIVISION 49
Documents to be a
Merchant
Micro Regular
Merchant Merchant

 গ্রাহকের নিজ  প্রতিষ্ঠানের


নামে সোনালী নামে সোনালী
ব্যাংকের যেকোন ব্যাংকের যেকোন
শাখায় সঞ্চয়ী শাখায় চলতি
হিসাব হিসাব
 সচল মোবাইল  ট্রেড লাইসেন্স
নম্বর এর কপি
 জাতীয় পরিচয়পত্র  TIN সার্টিফিকেট
 এক কপি পাসপোর্ট  সচল মোবাইল
সাইজ ছবি নম্বর
 জাতীয় পরিচয়পত্র

CARDS DIVISION 50
Fees and Charges
ক্ লেনদেনের NPSB ব্যাং
হিসাব/কার্ড MDR* IRF মন্তব্য
র. মাধ্যম Fee কের অংশ
ডেবিট এন্ড
POS ১.০০% ০.৩০% ০.১৫% ০.৩০%
১. প্রিপেইড কার্ডস
(Issuer )
ক্রেডিট কার্ডস ১.২০% ০.৬০% ০.১৫% ০.৬০% বাংলা
ব্যাংক একাউন্ট, দেশ
ক্ষুদ্র ডেবিট ও প্রিপেইড ০.৫০% ০.২০% - ০.৩০% ব্যাংক
মার্চে
২. ন্ট কার্ড
পিএসডি
(Acquirer ) ক্রেডিট কার্ড,
০.৮০% ০.৬০% - ০.২০% সার্কু
এমএফএস, পিএসপি
ব্যাংক একাউন্ট, লার নং-
সাধারণ ডেবিট ও প্রিপেইড ১.০০% ০.৩০% ০.১৫% ০.৫৫% ১/২০২৪,
মার্চে
৩. ন্ট কার্ড তারিখঃ
(Acquirer ) ক্রেডিট কার্ড, ১৮
১.২০% ০.৬০% ০.১৫% ০.৪৫%
এমএফএস, পিএসপি জানুয়া
ব্যাংক একাউন্ট, রি
ডেবিট ও প্রিপেইড ১.০০% ০.৩০% ০.১৫% ০.৫৫%
ই-কমার্স ২০২৪
৪. (Issuer ) কার্ড
ক্রেডিট কার্ড,
*বর্ণিতএমএফএস,
ফি/সার্ভিস ১.২০% ০.৬০% ০.১৫% ০.৪৫%
পিএসপি চার্জ কোনভাবেই গ্রাহকের নিকট
থেকে আদায় করা যাবে না।

CARDS DIVISION 51
Our Target
Achieve in Achieve in Tentative bi- Achieve upto
SL GMO Name Target 23 As on Dec -23 Target 24 As on Feb -24 2024 2024 (%) Monthly Feb-24 (%)
Target

1 G.M.O. Dhaka-South 800 6412 4500 6625 213 4.73% 750 28.40%
2 G.M.O. Rajshahi 3500 3056 3500 3328 272 7.77% 583 46.63%
3 G.M.O. Sylhet 800 1976 8500 2103 127 1.49% 1417 8.96%
4 G.M.O. Khulna 3300 1938 4200 2091 153 3.64% 700 21.86%
5 G.M.O. Dhaka North 1600 1496 3500 1585 89 2.54% 583 15.26%
6 G.M.O. Jashore 500 989 1800 1203 214 11.89% 300 71.33%
7 G.M.O. Faridpur 1750 842 2200 941 99 4.50% 367 27.00%
8 G.M.O. Cumilla 3800 519 1200 623 104 8.67% 200 52.00%
9 G.M.O. Barishal 500 438 500 603 165 33.00% 83 198.00%

10 G.M.O. Rangpur 500 415 600 494 79 13.17% 100 79.00%


11 G.M.O. Mymensingh 400 406 600 462 56 9.33% 100 56.00%
12 G.M.O. Dinajpur 500 391 650 417 26 4.00% 108 24.00%
13 G.M.O. CTG South 350 258 600 314 56 9.33% 100 56.00%
14 G.M.O. CTG North 350 227 400 259 32 8.00% 67 48.00%
15 G.M.O. Bogura 1550 204 600 220 16 2.67% 100 16.00%
16 G.M.O. Dhaka-Central 700 195 2500 218 23 0.92% 417 5.52%
17 G.M.O. Jamalpur 400 186 400 204 18 4.50% 67 27.00%
18 G.M.O. Noakhali 500 175 350 185 10 2.86% 58 17.14%
19 Local Office 100 3 50 4 1 2.00% 8 12.00%
20 Bangabandhu Ave.Corp 100 2 50 2 0 0.00% 8 0.00%
21 RAMNA CORPORATE 100 0 50 0 0 0.00% 8 0.00%
Total 22100 20128 36750 21881 1753 4.77% 6125 28.62%

CARDS DIVISION 52
e-Banking in Sonali Bank
Divided into four types

Integration with Bangladesh Bank Getaway


Integration With Others
Procured by Bank
Own developed Software
Integration With BB

 BACPS (Bangladesh Automated Cheque Processing


Systems)
 BEFTN (Bangladesh Electronic Funds Transfer Network)
 NPSB (National Payment Switch Bangladesh)
 RTGS (Real Time Gross Settlement)
 IDTP ( Interoperable Digital Transaction Platform)
Integration With Others

External Integration
• Inspire to Innovation (a2i)
• NBR, Board Internal Integration
• BIDA, BEZA, Hi-Tech Park 1. Core Banking System (CBS)
• Bangladesh Police 2. Islamic Banking Software
• 3. Agent Banking Software
Chittagong Port Authority
• ACHALLAN
• Remittance Company (27)
• MFS (bKash, Nogod, Tap, Upay)
• School & College(More than 30)
• Universities(DU,NU,SUST,BUET)
Procured By Bank
 CBS (Core Banking System)
 Ababil Islamic Core Banking Solutions
 Agent Banking
 Microsoft Teams and Zoom
Own Developed Software
 Apps

 Web based/ Online Based

 Desktop based/Offline Based


Open
Bank
A/C
Form e-
Passp
Fill Up ort Fee

Sonali
eSheb
Admis Incom
sion a
Fee e Tax

VAT Trave
Fee l Tax
Apps
Sonali e-Wallet [25+]

Cash NPSB
Transaction Mobile
History
Out Recharge

ATM Utility
QR Deposit
Payment Booth BEFTN Bill
DPS
Location Pay
Cheque Book Requisition & Card
Management

• Customers can request for Cheque book from


Branch and e-Wallet Mobile App.
• Customers can receive Cheque book from any
branch and can view status using e-Wallet Mobile
App.
• It is live since 23/10/2023
• From Sonali e-Wallet customers can request for
• New Card Issue,
• Card & PIN Re-Issue and
• Card Activation
Apps

 Sonali Home
1. Contact
Web based/Online Based

 Govt. Transaction System  Clearing System


1. Govt. Receive payment 1. Bach,
2. Custom Duty ePayment System 2. BEFTN,
3. Vat ePayment System 3. Internal Clearing
4. nGTS
5. PO/RO Monitoring
 Sonali Bill Collection System
 Sonali Payment Getaway  SERP
(SPG) 1. Sonali Sheba
 Pension Management 2. Currency Chest Management
System System
 Remittance Processing System 3. Govt. DD
4. BB Cheque Encashment
5. Auto Test Remittance System
 Sanchaypatra 6. CL Reporting
Web based/Online Based

 Demand Draft Purchase (DDP)


 Sonali Banking Solution (SBS) 
e-Desk
 Remittance Management System  Sonali Collateral Security
 Wage Bond
(RMS+)  CIB
 Blaze 1. CIB Inquiry (OCIS)
2. CIB Online Solution (COS)
 HRMS  Central Reporting System
1. HRM  OMRS
2. Payroll 1. Lawsuit Management System
3. Provident Fund 2. Online Inventory
4. Employee's Tax 3. Office Note Management
System
5. Pay Fixation
Web based/Online Based

 Website
1. Sonali Bank Website
2. Staff College Website  ICC tools ( QOR, LDCL & DCFCL)
3. Naeypal Sachibaloy  Bangladesh Bank (BB) Return
4. Sonali Home
 Share Management software
 Risk Matrix for Branch
Grading  Digital Service Register
 Sonali CAB
 Sonali Procurement management
 Schedule Telegram
Software (SPMS)
Statement (STS)
 Closing Report Entry  Link Account
(CRE)
Sonali Payment Gateway
(SPG)
Some Valued customers of SPG

• Viqarunnessa Noon School & College • Govt. Brajalal College


• Dhaka University Laboratory School & • Carmichael College, Rangpur
College • Kumarkhali Govt. College
• Dhaka Residential Model College • Porsha Govt. Degree College
• Dhaka Commerce College • Shahid Bulbul Govt. College
• Holy Cross College • Chauddagram Govt College
• Jashore Govt. Mohila College • Majida Khatun Govt. Womens
• Feni Govt. College College
• Rangamati College • Shahporan Govt. College
• Jamalpur Govt. Girls School • Govt. Ashek Mahmud College,
• Motijheel Model School & College Jamalpur
• Udayan School & College • Ganguria Degree College
• Sirajganj Police Lines School and • Shahzadpur Govt. College
College • Bakshiganj kiamat Ullah College
• Bakshiganj kiamat Ullah College • Rangpur Govt. College
• Satkhira Govt. College • Many More
Sonali Payment Getaway
Desktop Based/Offline Based

 Inventory Control System


 MICR Cheque Management System
 RCD MCD Reporting
 Army Pension
Issue Tracker with dashboard (e-
Desk)
In-house build software for Tracking issues and provide
solution.
Live operation started 16, October 2022

• CBS
• Ababil Islami Banking,
• In-house Software,
• Hardware,
• Active Directory
• Support/ services
Call Center

Call Center has been inaugurated 15 march, 2023

• E-wallet
• E-sheba
• Payment gateway
• Card
• Bills
• Account information
• Service information etc

From Inland 16639


From Foreign Country : 8809610016639
Upcoming Project for e-Banking
 Corporate internet Banking
 Locker Management Software
 Central Trade Processing Software
 LOS (Loan originating System) Software
 Audit Software
 AML Software
 Privilege Access Management(PAM)
 Zone-wise Branch Data Connectivity
 Data Center (DC) Extension
 Network Traffic Analyzer (NTA)
 Next Gen SIEM with TIP, SOAR
 Mobile Banking
 Custom duty
 Digital nano loan
 Innovation Idea
 PCI-DSS
 ISO 27001
CYBER SECURITY
Information

Digital
Information

Analog
Information

Information Security
CYBER SECURITY
Information Things that are vulnerable through ICT

Other things
Digital than
Information
Information

Analog
Information

Information Security IT Security Cyber Security


What is Cyber Security?

Cyber security refers to the practice of protecting devices,


networks, and sensitive information from unauthorized access,
use, disclosure, disruption, modification or destruction.
Cyber Assets
 Application Software (CBS/e-Wallet/Internet banking/eSheba)
 Networks/ Network Devices (Router/Switch)
 Servers

 Databases (Oracle, SQL Server, Access, My SQL)


 Operating System (Windows, Linux, Aix)
 Storage Devices
 Endpoint Devices (Desktops/Laptops/Mobiles).
Source of Threat

Insider
1. User/Employee Outsider
2. Vendor 1. Corporate spies hackers

3. Programmer 2. Terrorist groups

4. Database Administrator 3. Hostile nation-states


4. Criminal organizations
5. Network Administrator
6. Application Administrator
Types of Cyber Security Threats
[Insider]

 Misusing their authorized access to critical systems


or information willingly or unwillingly
Types of Cyber Security Threats
[Outsider]

 Malware attack [Worm, Virus, SpyWare, Trojan, Spam, RansomWare]


 Social engineering
 Phishing attacks
 Spoofing
 Distributed denial-of-service (DDoS), DoS attacks
 Password attack
 SQL injection attack
 Man-in-the-middle (MitM) attack
 Natural threats (such as earthquakes) **
SECURITY

▪ Threat
▪ Vulnerability
SECURITY

Threat
SECURITY

Vulnerability
ATM Threats
 Attacks against ATMs may be classified as:

 ATM Physical attacks


 ATM Fraud
Safty against Physical
attacks
 Debit Card security
 Check your Surrounding
 Limit your transaction time
 Pin Number security
 Stay alert
 Notify loss of Card
What is social
Engineering?
 Social Engineering is the act of Manipulating
A person to take and action that may or
may not be in the “targets” best interest.
Typical Goals
 Money
 Ego
 Revenge
 Cause
 Entertainment
 Knowledge
Social Engineering
Common Attacks
 Customer service
 Delivery Person
 Phone
 Tech support
Social Engineering in-person
4 Things You Can Do To Keep Yourself Cyber
Safe
Types of Cyber Security Threats
[Outsider]

Brute-force attack
Types of Cyber Security Threats
[Outsider]
Phishing
Complex Password
WEAKEST LINK IN CYBER SECURITY
WEAKEST LINK IN CYBER SECURITY

1958-2014
King of Indian roads
Best taxi in the world
Feb 2017 - PSA
2014 – 2200 cars
WEAKEST LINK
Password

Sharing of password without prior


approval is subject to termination /
dismissible offense.
Password
How To Protect Yourself

As a User/Employee

Password
 Never write passwords down.
 Never tell anyone your password.
 Never reveal your password over the telephone.
 Never hint at the format of your password.
 Never reveal or hint at your password on a form on the
internet.
 Never use the "Remember Password" feature of
application programs such as Internet Explorer or any
other browsers, your email program, or any other
program.
How To Protect Yourself
 Don't use common acronyms as part of your
password.
 Don't use common words or reverse spelling of words
in part of your password.
 Don't use names of people or places as part of your
password.
 Don't use part of your login name in your password.
 Don't use parts of numbers easily remembered such
as phone numbers, social security numbers, or street
addresses.
 Don't use word or number patterns for parts of
passwords like abcdefg, 123456, zxcvbnm, 654321, or
zzxxyyww.
How To Protect Yourself

Activity in Branch
1. Check all vouchers before sign out
2. Timely Verify e-Wallet / Internet Banking/ Link Account
user before approve.
3. Strong access controls and authentication
mechanisms.
4. Careful to use Internet
5. Back up all your data.
6. Training should involve all employees.
How To Protect Threats

Email Use
1. Use Corporate mail and Don’t send account information/Password
through email without password protection.
2. Always verify the sender of a message.
3. Be careful to click on URLs/Links in email messages .
4. Don’t Open an attachment from an unknown sender. Consider the
source.
5. Report suspicious emails to [email protected]
6. Never use public and unsecured Wi-Fi;
How To Protect Threats

Mobile Use
• Keep your device software up to date (OS, anti-
virus ,anti-malware software )
• Enabled and set to automatically update.
• Make sure you backup your data frequently.
• Avoid to click unknown message link.
• Ensure Secured Source
• Regularly update pins or passwords with unique and
strong ones;
How to Protect Yourself
Social Media
 Treat unexpected messages and posts (especially containing links or
attachments) with caution
 Enable 2FA
 Don’t automatically trust social media ads, pages, or groups
 Optimize your privacy settings
 Check your friend lists
 Don’t share sensitive information about your work
 Don’t use your corporate mail address for registering in any Social Media
Sites
 Follow Bank’s Social Media Policy of Sonali Bank Limited, Version 1.0,
2020
 You can find all the security related policies at
http://sonalihome.sonalibank.com.bd/regulation_category/sbl-ict-security-pol
icies/
How to Protect Yourself

As a Network Admin/ Database Admin/Application


Admin
Back up all your data
Patch update your systems
Educate users on attack sources
Keep a close eye on network activity and Log file
Different Approved policies:

1. ICT Security Policy: version 3.0,2024


2. Social Media Policy: version 2.0,2023
3. IT Equipment Disposal Policy version
2.0,2023
4. E-mail Policy version 2.0,2023
5. Business Continuity Plan (BCP) Disaster
Recovery Plan (DRP) for ICT Version
1.0,2021
6. Password Policy version Version 1.0,2022
7. Data leakage Policy (DLP ) Policy
Initiatives for cyber
security
 Privilege Access Management (PAM)
 Malware Analysis Lab
 PCIDSS
 ISO Certification
 Security Management system
Who is Responsible ?

You might also like