Header logo

The global provider
of secure financial messaging services

Skip to main content
  • English
    Discover SWIFT
  • Español
    Descubra nuestros contenidos en español
  • Français
    Découvrez notre contenu disponible en français
  • 中文
    了解我们提供的中文内容
  • 日本語
    日本で入手可能なコンテンツをお探しください
This content is not available in the selected language

Directory of CSP assessment providers

SWIFT has created a Directory of CSP assessment providers for your reference when looking for assessment providers in your country. These companies can help you to assess your level of compliance toward the implementation the CSP mandatory and advisory controls that apply to your connectivity configuration with SWIFT.

In listing firms in the Directory of CSP assessment providers, SWIFT has taken into account certain criteria, including:

  • cyber security services experience & credentials
  • strategic focus on cyber security services
  • good reputation & commitment to customers in the financial industry

It is important to note that SWIFT has not checked or validated the individual qualifications of the CSP assessment providers listed in the directory; nor has SWIFT verified that providers listed in the directory have a history of SWIFT expertise.

SWIFT does not certify providers listed on the directory, however, every company listed on the directory has been requested to follow a CSP curriculum to acquire or maintain its knowledge and understanding about the programme. Its presence in the directory reflects a successful completion of the CSP curriculum.

Customer due diligence

You are responsible for completing your own due diligence when selecting and contracting CSP assessment providers or any other entity offering such services. You should, for instance, verify that individual consultants working for the selected provider:

  • Have sufficient training and knowledge of SWIFT and SWIFT security – including understanding of the SWIFT security control framework and detailed mandatory and advisory controls
  • Hold recognised industry qualifications: consultants should maintain industry recognised security qualifications or certifications such as QSA, CISSP, CISA, CISM, ISO, SANS.
  • Are otherwise suitable for your needs and purposes

Please also note that you can opt to contract with other providers that are not featured in the directory.

Beware that SWIFT requires an assessment, not an audit. This difference has an impact in terms of task magnitude and costs, take this into account when you select a company.

Do you want to be part of the directory?

Please follow these steps:

Should you have any questions, please contact us

resource
CSP Assessment Providers - Terms and Conditions
Provider
Regional coverage
No CSP assessment providers were found matching your criteria
Loading...