FINOS CCC – Naseer Mohammad, Google & Simon Zhang, BMO Financial Group
Watch more on the FINOS YouTube channelPresented at Open Source In Finance Forum 2023 – NYC
Presented by Naseer Mohammad – Google & Simon Zhang – BMO Financial Group
Title: FINOS Common Cloud Controls – The Need for an Open Source Financial Services Public Cloud Standard
Abstract: As the pace of cloud adoption accelerates in a highly fragmented global regulatory landscape, FINOS Common Cloud Controls aims to develop a unified set of cybersecurity, resiliency, and compliance controls for common services across the major cloud service providers.
By developing a unified taxonomy of common services and associated threats, the project alleviates the systemic risk of cloud concentration, an issue highlighted in recent reports from the U.S. Department of the Treasury, the UK HMT, the European Council, and the Monetary Authority of Singapore.
Join FINOS Common Cloud Controls and Compliant Financial Infrastructure maintainers from the FINOS membership as they explore the FINOS Common Cloud Controls standard and how collaboration between the “OSCAL Representation of FINOS CCC,” “Define Cloud Services Taxonomy,” and “Engage with MITRE Threat Catalogue” delivers an open source standard that Cloud Service Providers adopt for the benefit of the global financial services industry.
Find more info about FINOS:
On the web: https://www.finos.org/
Twitter: https://twitter.com/finosfoundation
LinkedIn: https://www.linkedin.com/company/finosfoundation/
OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
Suggested Content
Clear Search
-
MP4
FINOS CCC – Naseer Mohammad, Google & Simon Zhang, BMO Financial Group
Presented at Open Source In Finance Forum 2023 – NYCPresented by Naseer Mohammad – Google & Simon Zhang – BMO Financial GroupTitle: FINOS Common Cloud Controls – The Need for an Open Source Financial Services Public Cloud StandardAbstract: As the pace of cloud adoption accelerates in a highly fragmented global regulatory landscape, FINOS Common Cloud Controls aims to develop a unified set of cybersecurity, resiliency, and compliance controls for common services across the major cloud service providers.By developing a unified taxonomy of common services and associated threats, the project alleviates the systemic risk of cloud concentration, an issue highlighted in recent reports from the U.S. Department of the Treasury, the UK HMT, the European Council, and the Monetary Authority of Singapore.Join FINOS Common Cloud Controls and Compliant Financial Infrastructure maintainers from the FINOS membership as they explore the FINOS Common Cloud Controls standard and how collaboration between the “OSCAL Representation of FINOS CCC,” “Define Cloud Services Taxonomy,” and “Engage with MITRE Threat Catalogue” delivers an open source standard that Cloud Service Providers adopt for the benefit of the global financial services industry.Find more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
-
YOUTUBE
FINOS CCC Announcement - Money 2020 Interview
This morning during Money2020, The Fintech Open Source Foundation (FINOS), the foundation of open innovation in financial services and part of The Linux Foundation, announced that FINOS Common Cloud Controls (FINOS CCC), a set of open standards that describes consistent controls for compliant cloud deployments in the financial services sector, is now open sourced through FINOS under the Community Specification License.
-
PDF
Introducing FINOS Common Cloud Controls
Learn more about FINOS Common Cloud Controls in this pdf
-
MP4
OSFF 2023: State of Open Source in FinServ Report
Watch a keynote from our Open Source in Finance Forum 2023 covering the State of Open Source in Financial Services Report
-
MP4
FDC3 General Meeting 7th Nov 2023
Watch the video from our FDC3 General Meeting on 7th November 2023
-
LINK
Common Cloud Controls Homepage
Click to view the FINOS Common Cloud Controls (CCC) Homepage
-
LINK
Common Cloud Controls Interest Form
Sign up to get involved in the FINOS Common Cloud Controls (CCC) Project
-
LINK
Common Cloud Controls Github
Click to view the FINOS Common Cloud Controls (CCC) Github
-
MP4
Unifying the User Experience - Ajay Mehta, JPMorgan Chase & Co.
Presented at Open Source In Finance Forum 2023 - NYCPresented by Ajay Mehta - JPMorgan Chase & Co.Title: Unifying the User ExperienceAbstract: This talk will explore our journey, the forces propelling digitalization, and the UX challenges of fragmentation. We will also discuss strategies for unifying the user experience, including interoperability (FDC3), core capabilities, a UI design system, a low code toolkit, navigation and search features, copilot and personalization, as well as unified monitoring and testing for governance and fitness.Find more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
-
MP4
Navigating FDC3 UX
Presented at Open Source In Finance Forum 2023 – NYCPresented by Michael Lynch – Symphony, Chuck Danielsson – Adaptive & Lise Noble – Discover Financial ServicesTitle: Navigating FDC3 UX: A Call for Universal FDC3 UX Patterns for an Improved Interop LandscapeAbstract: Navigating FDC3 UX: A Call for Universal FDC3 UX Patterns for an improved Interop Landscape In this panel talk, we will discuss the current-state of FDC3 UX patterns, the common pitfalls we see in today’s solutions, as well as the need for contributions from across the community to form more mature UX patterns. As more and more vendors ship batteries-included components that are FDC3-enabled, the need for the community to form stronger, more mature UX patterns to support complex FDC3 workflows is greatly needed in order to ensure a sane user experience where FDC3 actions are discoverable, predictable and universally recognized. This panel talk will be geared to raising awareness around the issue of UX & FDC3, encouraging the community to rally around this problem and encourage participation in a number of practical ways.Find more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
-
MP4
Automated Testing of Electron Applications using WebdriverIO - Christian Bromann, Ionic
Presented at Open Source In Finance Forum 2023 - NYCPresented by Christian Bromann - IonicTitle: Automated Testing of Electron Applications using WebdriverIOFind more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
-
MP4
Responsible Use of Node.js & Open Source Software Utilizing Best Practices at an Enterprise Level - Stephen Husak - CapitalOne
Presented at Open Source In Finance Forum 2023 - NYCPresented by Stephen Husak - CapitalOneTitle: Responsible Use of Node.js & Open Source Software Utilizing Best Practices at an Enterprise LevelAbstract: Come learn how enterprises can use industry best practices to manage the risk of a constantly evolving vulnerability landscape and encourage responsible use of Node.js and associated modules at Enterprise scale. This talk will begin with an overview of the security posture of the JavaScript ecosystem and then cover how an Enterprise can reduce the risks in using OpenSource software by being well-managed and purposeful in the usage of Node.js and modules in the JavaScript ecosystem at Enterprise scale. Steve will go into more detail on how this can be done using subject matter experts across a company; how to utilize a working-group model; as well as using process, governance, and automation tools to minimize risk and reduce developer toil.Slides can be found here: https://osff2023.sched.com/event/1Q1FW/responsible-use-of-nodejs-open-source-software-utilizing-best-practices-at-an-enterprise-level-stephen-husak-capitaloneFind more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
-
MP4
How the npm Team uses GitHub to Manage Open Source Projects - Luke Karrys, GitHub
Presented at Open Source In Finance Forum 2023 - NYCPresented by Luke Karrys - GitHubTitle: How the npm Team uses GitHub to Manage Open Source ProjectsAbstract: The npm team manages almost one hundred different projects that account for four billion downloads per month. And the best part is all of it is open source! Each project includes automated releases, open bug bounties, triage for community issues and pull requests, and (almost) full test coverage, and is all managed by a team of four engineers. In this talk, npm CLI engineer Luke Karrys will cover the tooling and processes that allow the team to confidently and securely ship new releases weekly for the CLI and some of the most used packages in the JavaScript ecosystem, including semver and which. Come listen as Luke details lessons the team has put into practice from their collective decades of open source experience.Slides can be found here: https://osff2023.sched.com/event/1Q1FU/how-the-npm-team-uses-github-to-manage-open-source-projects-luke-karrys-githubFind more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
Suggested Content
Clear Search
FINOS CCC – Naseer Mohammad, Google & Simon Zhang, BMO Financial Group
/2023%20OSFF%20Speaker%20Video%20Recordings/OSFF%20Speaker%20Video%20Recording%20Thumbnail%20Images/59%20FINOS%20Common%20Cloud%20Controls%20-%20The%20Need%20for%20an%20Open%20Source%20Financial%20Services%20Public%20Cloud%20Standard%20-%20Naseer%20Mohammad%20Google%20-%20Simon%20Zhang%20BMO%20Financial%20Group_e3.png)
Presented at Open Source In Finance Forum 2023 – NYCPresented by Naseer Mohammad – Google & Simon Zhang – BMO Financial GroupTitle: FINOS Common Cloud Controls – The Need for an Open Source Financial Services Public Cloud StandardAbstract: As the pace of cloud adoption accelerates in a highly fragmented global regulatory landscape, FINOS Common Cloud Controls aims to develop a unified set of cybersecurity, resiliency, and compliance controls for common services across the major cloud service providers.By developing a unified taxonomy of common services and associated threats, the project alleviates the systemic risk of cloud concentration, an issue highlighted in recent reports from the U.S. Department of the Treasury, the UK HMT, the European Council, and the Monetary Authority of Singapore.Join FINOS Common Cloud Controls and Compliant Financial Infrastructure maintainers from the FINOS membership as they explore the FINOS Common Cloud Controls standard and how collaboration between the “OSCAL Representation of FINOS CCC,” “Define Cloud Services Taxonomy,” and “Engage with MITRE Threat Catalogue” delivers an open source standard that Cloud Service Providers adopt for the benefit of the global financial services industry.Find more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
FINOS CCC Announcement - Money 2020 Interview

This morning during Money2020, The Fintech Open Source Foundation (FINOS), the foundation of open innovation in financial services and part of The Linux Foundation, announced that FINOS Common Cloud Controls (FINOS CCC), a set of open standards that describes consistent controls for compliant cloud deployments in the financial services sector, is now open sourced through FINOS under the Community Specification License.
Introducing FINOS Common Cloud Controls
/FINOS%20Common%20Cloud%20Controls%20-%20Resource%20Center.png)
Learn more about FINOS Common Cloud Controls in this pdf
OSFF 2023: State of Open Source in FinServ Report
/2023%20OSFF%20Speaker%20Video%20Recordings/OSFF%20Speaker%20Video%20Recording%20Thumbnail%20Images/OSFF%202023%20State%20of%20Open%20Source%20in%20Financial%20Services.png)
Watch a keynote from our Open Source in Finance Forum 2023 covering the State of Open Source in Financial Services Report
FDC3 General Meeting 7th Nov 2023

Watch the video from our FDC3 General Meeting on 7th November 2023
Common Cloud Controls Homepage
/CCC%20Common%20Cloud%20Controls%20Meeting.png)
Click to view the FINOS Common Cloud Controls (CCC) Homepage
Common Cloud Controls Interest Form
/CCC%20Common%20Cloud%20Controls%20Interest%20Form.png)
Sign up to get involved in the FINOS Common Cloud Controls (CCC) Project
Common Cloud Controls Github
/Common%20Cloud%20Controls%20Github.png)
Click to view the FINOS Common Cloud Controls (CCC) Github
Unifying the User Experience - Ajay Mehta, JPMorgan Chase & Co.
/2023%20OSFF%20Speaker%20Video%20Recordings/OSFF%20Speaker%20Video%20Recording%20Thumbnail%20Images/22%20Unifying%20the%20User%20Experience%20-%20Ajay%20Mehta%20JPMorgan%20Chase%20-%20Co_e3.png)
Presented at Open Source In Finance Forum 2023 - NYCPresented by Ajay Mehta - JPMorgan Chase & Co.Title: Unifying the User ExperienceAbstract: This talk will explore our journey, the forces propelling digitalization, and the UX challenges of fragmentation. We will also discuss strategies for unifying the user experience, including interoperability (FDC3), core capabilities, a UI design system, a low code toolkit, navigation and search features, copilot and personalization, as well as unified monitoring and testing for governance and fitness.Find more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
Navigating FDC3 UX
/2023%20OSFF%20Speaker%20Video%20Recordings/OSFF%20Speaker%20Video%20Recording%20Thumbnail%20Images/21%20Navigating%20FDC3%20UX%20A%20Call%20for%20Universal%20FDC3%20UX%20Patterns%20for%20an%20Improved%20Interop%20Landscape%20-%20Michael%20Lynch%20Symphony%20Cortney%20Stauffer%20-%20Chuck%20Danielsson%20Adaptive%20-%20Lise%20Noble%20Discover%20Financial%20Services_e3.png)
Presented at Open Source In Finance Forum 2023 – NYCPresented by Michael Lynch – Symphony, Chuck Danielsson – Adaptive & Lise Noble – Discover Financial ServicesTitle: Navigating FDC3 UX: A Call for Universal FDC3 UX Patterns for an Improved Interop LandscapeAbstract: Navigating FDC3 UX: A Call for Universal FDC3 UX Patterns for an improved Interop Landscape In this panel talk, we will discuss the current-state of FDC3 UX patterns, the common pitfalls we see in today’s solutions, as well as the need for contributions from across the community to form more mature UX patterns. As more and more vendors ship batteries-included components that are FDC3-enabled, the need for the community to form stronger, more mature UX patterns to support complex FDC3 workflows is greatly needed in order to ensure a sane user experience where FDC3 actions are discoverable, predictable and universally recognized. This panel talk will be geared to raising awareness around the issue of UX & FDC3, encouraging the community to rally around this problem and encourage participation in a number of practical ways.Find more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
Automated Testing of Electron Applications using WebdriverIO - Christian Bromann, Ionic
/2023%20OSFF%20Speaker%20Video%20Recordings/OSFF%20Speaker%20Video%20Recording%20Thumbnail%20Images/20%20Automated%20Testing%20of%20Electron%20Applications%20using%20WebdriverIO%20-%20Christian%20Bromann%20Ionic_e3.png)
Presented at Open Source In Finance Forum 2023 - NYCPresented by Christian Bromann - IonicTitle: Automated Testing of Electron Applications using WebdriverIOFind more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
Responsible Use of Node.js & Open Source Software Utilizing Best Practices at an Enterprise Level - Stephen Husak - CapitalOne
/2023%20OSFF%20Speaker%20Video%20Recordings/OSFF%20Speaker%20Video%20Recording%20Thumbnail%20Images/19%20Responsible%20Use%20of%20Nodejs%20-%20Open%20Source%20Software%20Utilizing%20Best%20Practices%20at%20an%20Enterprise%20Level%20-%20Stephen%20Husak%20CapitalOne_e3.png)
Presented at Open Source In Finance Forum 2023 - NYCPresented by Stephen Husak - CapitalOneTitle: Responsible Use of Node.js & Open Source Software Utilizing Best Practices at an Enterprise LevelAbstract: Come learn how enterprises can use industry best practices to manage the risk of a constantly evolving vulnerability landscape and encourage responsible use of Node.js and associated modules at Enterprise scale. This talk will begin with an overview of the security posture of the JavaScript ecosystem and then cover how an Enterprise can reduce the risks in using OpenSource software by being well-managed and purposeful in the usage of Node.js and modules in the JavaScript ecosystem at Enterprise scale. Steve will go into more detail on how this can be done using subject matter experts across a company; how to utilize a working-group model; as well as using process, governance, and automation tools to minimize risk and reduce developer toil.Slides can be found here: https://osff2023.sched.com/event/1Q1FW/responsible-use-of-nodejs-open-source-software-utilizing-best-practices-at-an-enterprise-level-stephen-husak-capitaloneFind more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/
How the npm Team uses GitHub to Manage Open Source Projects - Luke Karrys, GitHub
/2023%20OSFF%20Speaker%20Video%20Recordings/OSFF%20Speaker%20Video%20Recording%20Thumbnail%20Images/18%20How%20the%20npm%20Team%20uses%20GitHub%20to%20Manage%20Open%20Source%20Projects%20-%20Luke%20Karrys%20GitHub_e3.png)
Presented at Open Source In Finance Forum 2023 - NYCPresented by Luke Karrys - GitHubTitle: How the npm Team uses GitHub to Manage Open Source ProjectsAbstract: The npm team manages almost one hundred different projects that account for four billion downloads per month. And the best part is all of it is open source! Each project includes automated releases, open bug bounties, triage for community issues and pull requests, and (almost) full test coverage, and is all managed by a team of four engineers. In this talk, npm CLI engineer Luke Karrys will cover the tooling and processes that allow the team to confidently and securely ship new releases weekly for the CLI and some of the most used packages in the JavaScript ecosystem, including semver and which. Come listen as Luke details lessons the team has put into practice from their collective decades of open source experience.Slides can be found here: https://osff2023.sched.com/event/1Q1FU/how-the-npm-team-uses-github-to-manage-open-source-projects-luke-karrys-githubFind more info about FINOS:On the web: https://www.finos.org/Twitter: https://twitter.com/finosfoundationLinkedIn: https://www.linkedin.com/company/finosfoundation/OSFF NYC: https://events.linuxfoundation.org/open-source-finance-forum-new-york/