• Home
  • 2016 ISAE 3000 Type 2 reports

2016 ISAE 3000 Type 2 reports

Third Party Assurance

2016 ISAE 3000 Type 2 reports

SWIFT plays a vital role in supporting the daily operations of our users, and it is critical that we meet all our security, technical infrastructure and operational objectives at all times. At SWIFT, we are committed to providing solutions that meet our clients’ security requirements.  As part of this commitment SWIFT makes available ISAE 3000 reports for the SWIFTNet, FIN and Lite2 services.

SWIFTNet and FIN ISAE 3000 Report

We are pleased to announce that SWIFT has completed its 12th independent security review of the internal control policies, procedures, and controls supporting the SWIFTNet and FIN messaging services and has received an unqualified opinion from PricewaterhouseCoopers (PwC), covering the 2016 calendar year.

PwC’s opinion on SWIFT’s security for FIN and SWIFTNet is included in the 2016 ISAE 3000 report. ISAE 3000 is an international standard enabling service providers, such as SWIFT, to give independent assurance on their processes and controls to their customers and their auditors. The ISAE 3000 report provides information and assurance on the security and reliability of SWIFT’s core messaging services. The document is aligned with CPMI-IOSCO’s "Oversight expectations applicable to critical service providers" and the related assessment framework.

Alliance Lite2 ISAE 3000 Report

As of 2016, SWIFT also provides a third-party assurance report (under the same standard and using the same framework) for Alliance Lite2. This report has received an unqualified opinion from PricewaterhouseCoopers (PwC), covering 1 July 2016- 31 December 2016.

Customers of SWIFT

For a copy of the SWIFTNet and FIN ISAE 3000 report or the Lite2 ISAE 3000 report, request by email to AssuranceQuestions.Generic@swift.com. Please provide the following when requesting the report:

  • Indicate which Report is being requested  (SN/FIN or Lite2 report)
  • Recipient’s name (and title Mr or Ms)
  • Recipient’s job title
  • Recipient’s email address
  • User organisation’s  BIC Code

Each report is confidential, and distribution is restricted to named officials at SWIFT user organisations with a reasonable stated purpose to receive the report.

Please note that the electronic copy of each report is password protected. It has the recipient’s name on each page; and printing or copying of the report are disabled.

Potential Customers of SWIFT

Organisations evaluating the use of SWIFT products and services that are not yet SWIFT customers, may also obtain a copy of the ISAE reports after completing and signing a non-disclosure agreement.

2016 SN/FIN ISAE NDA

Download (34.45 KB)
Last update: 
1 June 2017

Confidentiality Acknowledgement for SWIFT's 2016 ISAE 3000 SWIFTNet and FIN Report

  • ISAE
English

2016 Lite2 ISAE NDA

Download (76.01 KB)
Last update: 
1 June 2017

Confidentiality Acknowledgement for SWIFT's 2016 ISAE 3000 Lite2 Report

  • ISAE
English

Should you have any questions about the report please contact AssuranceQuestions.Generic@swift.com.