• Contact
  • Feedback
Banking Day
  • News
  • Topics
    • All Topics
    • Briefs
    • Major Banks
    • Authorised deposit-taking institutions
    • Insurance, funds and super
    • Payments, mobile & wallets
    • Consumer lending
    • Mortgages
    • Business lending
    • Finance regulation
    • Debt capital markets
    • Ratings agencies
    • Equity capital markets
    • Professional services
    • Work & career
    • Foreign news
    • Other topics
  • Free Trial
  • Subscribe
  • Resources
    • Industry events
  • About us
    • About Banking Day
    • Advertise
    • Feedback
    • Contact Banking Day
  • Search
  • Login
  • My account
    • Account settings
    • User Admin
    • Logout

Login or request a free trial

Banks free to opt in for telco data sharing

07 October 2022 5:15AM

The government’s plan to enlist banks to help protect consumers from the impact of fraudulent activity in the telecommunications industry, following the recent Optus breach, will operate on an opt-in basis.

The government announced yesterday that it has prepared amendments to the Telecommunications Regulations to allow Optus and other telcos to work with financial institutions, as well as Commonwealth, state and territory authorities, to detect and mitigate risks of fraud, scams and other malicious cyber activities.

APRA released a statement, saying: “All APRA-regulated financial institutions, excluding branches of foreign banks, would be eligible to receive the data should they choose to.

“To opt in, entities will be required to provide written attestation to APRA Prudential Standard CPS 234 Information Security.”

Last month Optus reported that it had suffered a cyber attack resulting in the theft of personal details of 10 million customers.

The amendments will allow telcos to share approved government identifier information such as drivers licence, Medicare and passport numbers with financial institutions to allow them to enhance monitoring and safeguards for customers affected by data beaches.

The amended regulations cover APRA-regulated financial institutions, excluding branches of foreign banks. 

The information sharing will only be done on a “temporary” basis and information received must be destroyed once it is no longer required.

In a statement yesterday, Treasurer Jim Chalmers said approved recipients must satisfy “robust information security requirements and protocols” for any transfer and storage of data.

The government has asked the Council of Financial Regulators to report on options to further improve the ability of financial institutions to identify at-risk customers and credentials through a data sharing platform.

The Australian Banking Association also issued a statement yesterday, saying it welcomed the government’s move. It did not say whether it expected its members to opt in.

I'm a returning subscriber

*
Password reset *
Login

Request a free trial

  • Emailing you the news at 7am.
  • Covering core lending and funding issues, strategy, payments, regulation, risk management, IT, marketing and more.
  • Original news and summaries of major stories from other media – ditch your newspaper subscriptions.
  • Focused on banking and finance, saving you the time spent wading through newspapers and other services.
  • With reporting from former editors and senior writers from the AFR and The Australian.
  • Configured for your phone, laptop and PC.
Free trial Banking Day

Copyright © WorkDay Media 2003-2025.

Banking Day is a WorkDay Media publication

WorkDay Media Unit Trust

  • Privacy policy
  • Terms of access and use