Covers a range of topics relating to mortgages and the wider housing market.
Covers issues relating to savings accounts and payments.
Covers developments in conduct of business regulation
Covers issues relating to the corporate governance and constitution of building societies.
People related matters such as talent development, apprenticeships and diversity.
Internal and external accounting assurance and matters relating to tax.
The regulation and supervision of firms to ensure their safety and soundness under the remit of the Prudential Regulation Authority.
A new legal aid scheme to support borrowers at risk of repossession (member only content).
Building societies and credit unions are customer-owned mutual organisations. Their culture is focused on their members and communities and this influences their day to day decisions.
A wide range of statistics relating to the UK mortgage and housing markets.
Research, analysis and guidance about our members and the issues that affect them.
Retail savings data including net receipts and deposits, ISAs and interest rates.
Operational and financial information about building societies. Includes AGM & financial results and remuneration details.
Submission and publication deadlines for 成人头条data and reports.
Bank Rate cut to 4.75% but pace of rate cuts expected to moderate in wake of Budget
News and views on topical issues from the 成人头条and guests.
View our latest press releases and comment here.
The BSA's quarterly magazine covers whats happening in the world of building societies, credit unions and the wider financial services sector.
A quarterly survey that assesses consumer sentiment regarding the UK property market.
View biographies and download photos of the BSA's key spokespeople
成人头条speeches from events and seminars
View the latest webinars, training and other events open to members, associates and other stakeholders
View our latest 成人头条Annual Conference and comment here.
View our latest Past events & summaries and comment here.
Learn how to promote your event to the BSA's membership.
An introduction to treasury management (30th January 2025)
Find factsheets on mortgages, savings and the building society sector.
Track building societies that no longer exists and get a link to its successor's website.
Find mortgage instructions and specific requirements setting out individual building society policies.
The UK Savings Week campaign aims to get people engaged in saving.聽
Toolkits to develop Workplace Savings are available here.
Here you can find our publications, responses to consultation documents, mortgage instructions, statistics and sector job vacancies.
Find out more about the 成人头条and the sector.
Contact details for each of our 49 members.聽聽聽聽聽聽
Our Associate members include a wide range of companies from insurers,聽banks, accountants, solicitors, and other business suppliers to 成人头条members.
The National Credit Union Forum (NCUF) is the Credit Union Committee of the BSA.
Find out how building societies have purpose beyond profit
View biographies and download photos of our key spokespeople
Vacancies for senior management, executive and other positions at the 成人头条and its member organisations
Find out the wide range of benefits of joining the 成人头条as an associate member.
The Building Societies Association is the voice of the UK's building societies.
Guest blog by James Fox, Director, Enterprise Cloud Transformation, Protiviti
Effective cloud governance enables organisations to maintain control, mitigate risks, and ensure regulatory compliance. Key approaches to cloud governance include:
Cloud Strategy: Developing a well-defined cloud strategy aligned with business objectives, risk tolerance, and compliance requirements is essential. It should outline the organisation's cloud adoption roadmap, preferred cloud models (public, private, or hybrid), and the selection of cloud service providers (CSPs).
Cloud Risk Assessment: Conducting a comprehensive risk assessment is crucial to identify potential threats and vulnerabilities associated with cloud adoption. This assessment should evaluate data security, privacy concerns, regulatory compliance risks, and the financial impact of potential incidents.
Vendor Management: Implementing a robust vendor management program ensures the selection of trustworthy and compliant CSPs. Due diligence should be conducted to assess the provider's security measures, data protection practices, regulatory compliance, and track record in serving financial services organisations.
Compliance with regulatory requirements is of paramount importance for building societies and mutuals. In the UK, several key regulations, and guidelines impact cloud governance. Some notable regulations and steps to ensure compliance include:
The FCA provides regulatory guidelines and expectations for financial services organisations regarding the use of cloud services.
Firms must ensure that outsourcing to the cloud does not impair their ability to meet regulatory requirements or compromise the security of sensitive data.
The guidelines emphasise the need for effective governance, risk management, and oversight when adopting cloud technologies.
The Data Protection Act 2018 and GDPR impose strict requirements on the processing, storage, and transfer of personal data.
Organisations must conduct thorough due diligence to ensure that cloud service providers adhere to appropriate data protection standards.
Financial services organisations must ensure compliance with these regulations when utilising cloud platforms to handle personal data.
The PRA sets regulations and expectations for the risk management and resilience of financial services organisations.
Firms should assess and manage the risks associated with cloud adoption and maintain appropriate business continuity and disaster recovery plans.
Cloud adoption should align with the PRA's operational resilience and business continuity requirements.
Highlight the specific risks related to data security, privacy, regulatory compliance, and business continuity.
Identify and assess the risks associated with cloud adoption, considering regulatory requirements and organisational needs.
Ensure that the selected providers have appropriate data protection measures in place and align with relevant regulatory requirements.
Evaluate cloud service providers based on their security protocols, certifications, compliance track records, and data protection practices.
Implement appropriate access controls, data classification frameworks, and monitoring systems to safeguard sensitive information.
Implement strong data encryption methods to protect data at rest and in transit.
Ensure that contracts address data ownership, data protection, regulatory compliance, incident response, and service level agreements (SLAs).
Negotiate contracts that clearly define the responsibilities and obligations of both the financial services organisation and the cloud service provider.
Implement privacy controls, such as data minimisation and user consent mechanisms, to ensure compliance with data protection regulations.
Establish robust security measures, including multi-factor authentication, intrusion detection systems, and security incident response procedures.
Implement incident response plans and conduct penetration testing to assess the security and resilience of the cloud platforms.
Regularly monitor the cloud environment to detect and respond to security threats and vulnerabilities promptly.
Regularly update training programs to keep employees informed of evolving regulatory requirements.
Provide comprehensive training programs to employees on data protection, regulatory compliance, and cloud security best practices.
Cloud governance and compliance are paramount for building societies and mutuals. By following key approaches to cloud governance, such as defining a cloud strategy, conducting risk assessments, and implementing robust vendor management, societies and mutuals can ensure effective control and mitigate risks associated with cloud adoption. Furthermore, complying with UK regulations, including those set forth by the FCA, GDPR, PRA, and adopting cloud-specific standards, is crucial to maintaining data security, protecting customer privacy, and meeting legal obligations. By adopting these measures, building societies and mutuals can harness the benefits of cloud computing while safeguarding their operations and maintaining regulatory compliance.
Please contact James Fox james.fox@protiviti.co.uk or Karen Smith karen.smith@protiviti.co.uk and follow our page for more content.
The 成人头条is delighted to have the opportunity to contribute to the FCA’s review of requirements following the implementation of the Consumer Duty.
The 成人头条strongly supports the principle of charging a fee to CMCs.