Former TSB CIO fined £81k for botched IT migration plan

The ex-chief information officer (CIO) of TSB has been hit with a £81,620 fine over the bank's botched 2018 IT migration programme.

While TSB successfully moved its IT systems and data onto a new IT platform, it experienced immediate technical failures which led to “significant disruption” to its banking services, including branch, telephone, online, and mobile banking.

The Prudential Regulation Authority (PRA), which issued the fine, said that all of TSB’s branches and a significant proportion of its 5.2 million customers at the time were impacted by the disruption.

Some customers continued to be affected by ongoing issues, with it taking around eight months for TSB to return to business-as-usual.

The move comes after the regulator gave TSB a penalty worth more than £48 million in December 2022 for operational resilience failings related to the 2018 migration.

The PRA said that former CIO Carlos Abarca failed to make sure that TSB had obtained assurance from its key third party provider that it was prepared for the IT migration.

“Senior managers have an essential role to play in ensuring that firms manage and supervise outsourcing effectively,” said Sam Woods, deputy governor for prudential regulation and chief executive of the PRA. “In this case, the PRA has fined Mr Abarca because his management of a key outsourcing relationship fell below the standard we expect.’

TSB has paid out £32.7 million in redress to customers who suffered detriment following the IT failure.

    Share Story:

Recent Stories


The human firewall: Activating employees to safeguard financial data
As financial services increasingly embrace SaaS and cloud-based technologies, they face emerging threats to safeguard sensitive customer data. While comprehensive IT security measures are essential, the active involvement of employees across organisations is pivotal in ensuring the protection of sensitive data.

Building a secure financial future for instant payments: The convergence of ISO 20022 and fraud detection
The financial landscape is rapidly evolving its approach to real-time transactions under the ISO 20022 standard, and financial institutions must take note. With examples such as the accelerated adoption of SEPA Instant Credit Transfers in Europe and proposed New Payment Architecture (NPA) programme in the UK, the need for swift and effective fraud detection is more crucial than ever.

Data Streaming and Consumer Duty: Transforming customer experience in banking
Introduced at the end of July, the Consumer Duty is a game-changing new set of rules and guidance for financial services institutions in the UK, and companies must look to modernise their systems in adherence with it in mind to create the best customer experience possible.

From insight to action: Empowering financial institutions through advanced technology and collaborative information sharing
The use of Information sharing in enhancing financial crime prevention has been universally agreed as being beneficial. However no-one has been able to agree on how information can be shared safely without breaching data protection laws or having the right systems to facilitate this, Information sharing has re-emerged as a major consideration for financial institutions (FIs) ahead of the Economic Crime and Corporate Transparency Bill being made into law in the UK.