Identity and data strategy ‘crucial’ for successful cloud security, says Deutsche Bank

Deutsche Bank’s chief security officer and head of cloud transformation has said that the bank focusses on identity and data as core fundamental features of cloud protection.

“Identity and data are at the heart of security and cloud – if we can’t get that right it doesn’t work,” Brent Philips told delegates at Money 2020 Europe on Tuesday.

He added: “If we can understand who they are and what they have access to – the marrying of those two gives us a lot of flexibility”.

Philips also said that the bank, which recently saw profits reach their highest level since 2013, looks at cloud and security transformation as “two parallel activities”, adding that alignment of these two areas gives Deutsche bank "lots of synergies”.

The security lead also highlighted the importance of creating the right business culture when it comes to cloud transformation and security.

“A cultural shift is important,” he told attendees at the Amsterdam-based event. “Security bridges the gap – if you do it correctly you can enable that digital transformation to take place.”

Deutsche Bank’s head of cloud transformation also said that the bank had found regulatory regimes on a global scale challenging, explaining that it has to be prepared for “data sovereignty”. He said that while regulations are great for protecting users, they make it harder to operate in a greater business at scale.

Referring to the Digital Operational Resilience Act (DORA) - the regulatory framework on digital operational resilience whereby all firms need to make sure they can withstand, respond to and recover from digital threats - he said that historically the bank looked across different implementations of the rules and struggled to meet the legislation’s intentions.

However, the bank has since changed tack by looking at data and its processes and flows as a whole.

Prior to the introduction of these regulations, financial insitutions managed the main categories of operational risk mainly with the allocation of capital, but they did not manage all components of operational resilience.

Now firms they must also follow rules for the protection, detection, containment, recovery and repair capabilities against ICT-related incidents.

Deutsche Bank profit before tax was up 12 per cent year-on-year to € 1.9 billion in its latest financial quarter, with net revenue growth jumping five per cent to € 7.7. billion – the highest in seven years.

Money 2020 Europe is taking place at the RAI in Amsterdam 6-8 June 2023.

    Share Story:

Recent Stories


The human firewall: Activating employees to safeguard financial data
As financial services increasingly embrace SaaS and cloud-based technologies, they face emerging threats to safeguard sensitive customer data. While comprehensive IT security measures are essential, the active involvement of employees across organisations is pivotal in ensuring the protection of sensitive data.

Building a secure financial future for instant payments: The convergence of ISO 20022 and fraud detection
The financial landscape is rapidly evolving its approach to real-time transactions under the ISO 20022 standard, and financial institutions must take note. With examples such as the accelerated adoption of SEPA Instant Credit Transfers in Europe and proposed New Payment Architecture (NPA) programme in the UK, the need for swift and effective fraud detection is more crucial than ever.

Data Streaming and Consumer Duty: Transforming customer experience in banking
Introduced at the end of July, the Consumer Duty is a game-changing new set of rules and guidance for financial services institutions in the UK, and companies must look to modernise their systems in adherence with it in mind to create the best customer experience possible.

From insight to action: Empowering financial institutions through advanced technology and collaborative information sharing
The use of Information sharing in enhancing financial crime prevention has been universally agreed as being beneficial. However no-one has been able to agree on how information can be shared safely without breaching data protection laws or having the right systems to facilitate this, Information sharing has re-emerged as a major consideration for financial institutions (FIs) ahead of the Economic Crime and Corporate Transparency Bill being made into law in the UK.