INT · Framework

SWIFT CSCF — SWIFT Customer Security Controls Framework

The CSCF defines the mandatory and advisory security controls that every institution connected to the SWIFT network must implement and attest to each year.

What it is

The CSCF defines the mandatory and advisory security controls that every institution connected to the SWIFT network must implement and attest to each year.

Global financial messaging · Annual attestation cycle (KYC-SA)

Who it binds

All SWIFT users, from global banks to corporates connected to the network.

Key obligations

  • Secure and restrict the SWIFT-related environment
  • Know and limit access to it
  • Detect anomalous activity and respond to incidents
  • Annual self-attestation, supported by independent assessment

How CCI addresses it

This is our founding practice: hundreds of independent SWIFT CSP assessments delivered since 2020, with evidence collection industrialised by EviGen.

SWIFT CSP audit →

Official source

SWIFT Customer Security Programme (CSP), annual CSCF

https://www.swift.com/myswift/customer-security-programme-csp/swift-customer-security-controls-framework

The linked text is the authoritative legal or standards source. CCI maps to it; it is not a CCI publication.

← All frameworks