Former TSB CIO fined £81k for botched IT migration plan

The ex-chief information officer (CIO) of TSB has been hit with a £81,620 fine over the bank's botched 2018 IT migration programme.

While TSB successfully moved its IT systems and data onto a new IT platform, it experienced immediate technical failures which led to “significant disruption” to its banking services, including branch, telephone, online, and mobile banking.

The Prudential Regulation Authority (PRA), which issued the fine, said that all of TSB’s branches and a significant proportion of its 5.2 million customers at the time were impacted by the disruption.

Some customers continued to be affected by ongoing issues, with it taking around eight months for TSB to return to business-as-usual.

The move comes after the regulator gave TSB a penalty worth more than £48 million in December 2022 for operational resilience failings related to the 2018 migration.

The PRA said that former CIO Carlos Abarca failed to make sure that TSB had obtained assurance from its key third party provider that it was prepared for the IT migration.

“Senior managers have an essential role to play in ensuring that firms manage and supervise outsourcing effectively,” said Sam Woods, deputy governor for prudential regulation and chief executive of the PRA. “In this case, the PRA has fined Mr Abarca because his management of a key outsourcing relationship fell below the standard we expect.’

TSB has paid out £32.7 million in redress to customers who suffered detriment following the IT failure.

    Share Story:

Recent Stories


Sanctions evasion in an era of conflict: Optimising KYC and monitoring to tackle crime
The ongoing war in Ukraine and resulting sanctions on Russia, and the continuing geopolitical tensions have resulted in an unprecedented increase in parties added to sanctions lists.

Achieving operational resilience in the financial sector: Navigating DORA with confidence
Operational resilience has become crucial for financial institutions navigating today's digital landscape riddled with cyber risks and challenges. The EU's Digital Operational Resilience Act (DORA) provides a harmonised framework to address these complexities, but there are key factors that financial institutions must ensure they consider.

Legacy isn’t the enemy: what FSIs can do to keep their systems up and running
In this webinar we will examine some of the steps FSIs have already taken to rigorously monitor and test systems – both manually and with AI-powered automation – while satisfying the concerns of regulators and customers.

Optimising digital banking: Unifying communications for seamless CX
In the digital age, financial institutions risk falling behind their rivals if they fail to unite fragmented communications ecosystems to deliver seamless, personalised customer experiences.

This FStech webinar sponsored by Precisely explores vital strategies to optimise cross-channel messaging through omnichannel orchestration and real-time customer data access.