Financial Services Sector Coordinating Council
The Financial Services Sector Coordinating Council (FSSCC) is a 2002-established US non-profit that coordinates critical infrastructure protection and cybersecurity resilience across 70+ financial trade associations, market utilities, and major banks, insurers, and payment networks, producing frameworks adopted by Treasury, DHS, and the G7.
- Company typePrivate
- Founded2002
- HeadquartersReston, United States
- Headcount1–10
- GTM typeB2B
- OfferingServices
What Financial Services Sector Coordinating Council does
The Financial Services Sector Coordinating Council (FSSCC) is a US-based non-profit industry body established in 2002 that coordinates critical infrastructure protection and homeland security activities across the financial services sector. Its members comprise 70+ financial trade associations (e.g., ABA, SIFMA, BPI, ICBA), financial market utilities (e.g., DTCC, CME, ICE, FS-ISAC), and critical financial firms (e.g., JPMorgan Chase, Bank of America, Citigroup, Wells Fargo, Goldman Sachs, Morgan Stanley, Mastercard, AIG). The council operates a 1-10 person staff under a rotating Chair (currently PNC's Deborah Guild) and Vice Chair (BPI's Heather Hogsett), with Bridgette Walsh serving as Executive Director.
The organization's primary "products" are frameworks and guidance documents rather than commercial software. Core deliverables include the FSSCC Cybersecurity Profile (managed by Cyber Risk Institute), the Automated FFIEC Cybersecurity Assessment Tool (ACAT), Cloud Profile 2.0, and the SIFMA-FSSCC Reconnection Framework. The technical foundation rests on adaptations of the NIST Cybersecurity Framework and NIST AI Risk Management Framework, tailored for the financial sector's specific regulatory and threat environment. No APIs, SDKs, or commercial integrations exist; distribution is via public website downloads and partner-hosted repositories (CRI, ABA, FS-ISAC).
The business model is a non-profit subscription/dues model: members contribute funding to sustain operations, and the council coordinates public-private partnerships with the Department of the Treasury (Sector Risk Management Agency), DHS/CISA, FBIIC, FFIEC, the FBI, and the Secret Service. FSSCC does not sell products commercially; all publications are freely available to support sector-wide adoption. Recent focus areas include the AI Executive Oversight Group (AIEOG, established with Treasury in 2024) and a suite of 2025-2026 AI governance deliverables covering fraud, identity, explainability, and data quality.
Financial Services Sector Coordinating Council firmographics
Firmographics- Name
- Financial Services Sector Coordinating Council
- Legal name
- Financial Services Sector Coordinating Council
- Website
- https://fsscc.org
- Company type
- Private
- Founded year
- 2002
- Operating status
- Operating
- Headcount range
- 1–10 employees
- Short description
- The Financial Services Sector Coordinating Council (FSSCC) is a 2002-established US non-profit that coordinates critical infrastructure protection and cybersecurity resilience across 70+ financial trade associations, market utilities, and major banks, insurers, and payment networks, producing frameworks adopted by Treasury, DHS, and the G7.
- Ownership category
- akta.pro rank
Financial Services Sector Coordinating Council industry classification
Industry- Product category
- Industry Coordination and Critical Infrastructure Protection
- NAICS
- Civic and Social Organizations (813410)
- SIC
- Finance Services (6199)
- akta.pro primary industry
- Risk, Controls & Governance (GRC) Platforms (FSAFAOAG)
- akta.pro secondary industry
- Governance, Risk & Compliance (GRC) Platforms (BPAEAPAA)
Keywords
Where Financial Services Sector Coordinating Council is headquartered
LocationHeadquarters
- HQ city
- Reston
- HQ country
- United States
- HQ region
- North America
Offices1 record
Markets served
Financial Services Sector Coordinating Council business model
Business model- GTM type
- B2B
- Offering type
- Services
- Cost components
- Personnel, Operations, Technology or R&D, Marketing or Sales, Others
Revenue model
- Membership Dues: FSSCC is a non-profit organization that operates through membership contributions from financial trade associations, financial utilities, and critical financial firms. The organization coordinates critical infrastructure and homeland security activities within the financial services industry. To inquire about membership, interested parties are directed to contact the FSSCC.
Go-to-market motion1 record
Distribution channels3 records
Marketing channels5 records
Financial Services Sector Coordinating Council product offering
Product offeringCore offering
FSSCC is an industry-led non-profit organization established in 2002 that coordinates critical infrastructure and homeland security activities for the financial services industry. It convenes 70+ member organizations spanning financial trade associations, financial utilities, and critical financial firms to develop and publish cybersecurity, AI risk management, cloud security, and operational resilience frameworks and guidance documents. The organization operates through industry collaboration with the U.S. Department of the Treasury (its Sector Risk Management Agency) and other federal agencies to enhance the resilience of the U.S. financial system.
Product overview
The Financial Services Sector Coordinating Council (FSSCC) is an industry-led non-profit organization established in 2002 that coordinates critical infrastructure and homeland security activities for the financial services sector. FSSCC does not offer a single unified product but rather publishes frameworks, guidance documents, and tools developed collaboratively with member organizations and government partners. Key offerings include the SIFMA-FSSCC Reconnection Framework (a five-step cyber incident response framework), the Cybersecurity Profile managed by CRI (based on NIST framework), the Automated FFIEC Cybersecurity Assessment Tool (ACAT), and the suite of AI Executive Oversight Group deliverables including the AI Lexicon, Financial Services AI Risk Management Framework, Identity and Authentication guidance, AI Explainability guidance, Data Nutrition Labeling, and AI Enhanced Fraud resources. Additionally, FSSCC publishes Cloud Executive Steering Group deliverables including Cloud Profile 2.0 and cloud outsourcing guidance, representing a platform of coordinated sector resources focused on cybersecurity resilience, AI risk management, and cloud security.
Differentiator
Problem solved
Functional benefit
Products and services
- SIFMA-FSSCC Reconnection Framework A five-step mitigation framework (assess, remediate, assure, reconnect, recover) designed for financial services firms that have been compromised by a cyber incident, enabling coordination with trading partners for secure reconnection to the financial ecosystem.
- Automated FFIEC Cybersecurity Assessment Tool (ACAT) Tool providing financial services industry members with an outline of FFIEC cybersecurity guidance and a means to collect and score responses to cybersecurity assessment questions.
- FSSCC Cybersecurity Profile Cybersecurity implementation profile for financial institutions, now managed by the Cyber Risk Institute (CRI), based on the NIST Cybersecurity Framework.
- Financial Services AI Risk Management Framework (FS AI RMF) Operationalization of NIST AI RMF tailored for financial services, consisting of AI Adoption Stage Questionnaire, Risk and Control Matrix, User Guidebook, and Control Objective Reference Guide.
- AI Lexicon Defines key AI-related terms based on definitions from industry standards and government resources to improve sector communications on AI risk management and contracts.
- AI Identity and Authentication Deliverables Deliverables focusing on mitigating AI-powered attacks against identity and authentication systems, addressing deepfake social engineering, synthetic identity creation, and AI agent attack surrogates.
- AI Explainability in Finance Guidance on AI explainability challenges, practices and recommendations for financial institutions, with focus on GenAI, providing practical resource for non-technical audiences and technology teams.
- Data Nutrition Labeling for AI Recommends structured approach for evaluation of data quality as it relates to AI solutions in the financial sector, supporting transparency and trust in AI use.
- AI Enhanced Fraud Deliverable Provides information on AI fraud attack landscape, education programs, incident response considerations including deepfake response, controls and technology responses, and ecosystem collaboration.
- Cloud Profile 2.0 Cloud security implementation plan for financial institutions, extension of the Cybersecurity Profile created by CRI, based on NIST Cybersecurity Framework.
- Financial Sector Cloud Outsourcing Issues and Considerations Identifies key considerations for developing contractual provisions between financial institutions and Cloud Service Providers (CSPs) for cybersecurity, resilience, and third-party due diligence.
- Transparency and Monitoring for Secure-by-Design Service inter-dependency and resilience model combined with baseline security outcomes for financial institutions deploying workloads in CSP environments.
- UK CMORG Guidance for Post-Quantum Cryptography Guidance to financial sector on transitioning towards quantum-safe cryptographic practices, with FSSCC foreword, published by UK Cross Market Operational Resilience Group (CMORG).
Companies that use Financial Services Sector Coordinating Council
Customer profileNamed customers15 records
Segments3 records
Ideal customer profiles3 records
Financial Services Sector Coordinating Council technology and API
TechnologyTechnology focussed No
API detail
- Has API
- No
- API docs
- API detail
Core technology
AI maturity
App detail
AI capability6 records
Feature10 records
Financial Services Sector Coordinating Council partnerships and signals
Strategic signalPartnerships
16 partnerships are on record, tiered core and strategic.
- U.S. Department of the TreasurycoreThe Department of the Treasury is the Sector Risk Management Agency (SRMA) assigned to financial services. FSSCC and Treasury have developed a strong public-private partnership with the shared goal of maintaining a robust and resilient financial services sector. Treasury established the Cloud Executive Steering Group (CESG) in May 2023 at FSOC's direction to address cloud adoption gaps. FSSCC authors documents in partnership with Treasury to provide effective practices for secure cloud adoption.
- U.S. Department of Homeland Security (DHS)coreDHS recognizes FSSCC as a member of the Critical Infrastructure Partnership Advisory Council (CIPAC) on behalf of the banking and finance sector. FSSCC coordinates with DHS on critical infrastructure protection, cybersecurity exercises (Cyber Storm), and resilience activities.
- Financial and Banking Information Infrastructure Committee (FBIIC)coreFBIIC is charged with improving coordination and communication among financial regulators, promoting public-private partnerships within the financial sector, and enhancing the resiliency of the financial sector. FSSCC coordinates with FBIIC as the industry's government counterpart.
- Cybersecurity and Infrastructure Security Agency (CISA)coreFSSCC works with CISA on cybersecurity exercises (Cyber Storm 2020), supply chain compromise response (SolarWinds), and Critical Infrastructure Worker designation. CISA conducts the annual Cyber Storm national capstone cyber exercise bringing together public and private sectors.
- National Institute of Standards and Technology (NIST)coreFSSCC frameworks (Cybersecurity Profile, Cloud Profile) are based on NIST Cybersecurity Framework. FSSCC provides comment letters on NIST framework updates and coordinates on standards development.
- Federal Financial Institutions Examination Council (FFIEC)coreFSSCC developed the Automated FFIEC Cybersecurity Assessment Tool (ACAT) to provide the financial services industry with guidance and means to collect and score responses to cybersecurity assessment questions.
- Cyber Risk Institute (CRI)coreCRI manages, updates, and maintains the FSSCC Cybersecurity Profile. FSSCC and CRI co-authored Cloud Profile 2.0 and the Financial Services AI Risk Management Framework. CRI hosts key FSSCC deliverables on its website.
- Securities Industry and Financial Markets Association (SIFMA)coreFSSCC and SIFMA co-published the Financial Services Sector Reconnection Framework (2025 update). SIFMA's Reconnection Framework (originally published 2020) was endorsed by Treasury, ARC, FS-ISAC, BPI, and over 30 financial services firms. The two organizations work closely on cyber incident response coordination.
- American Bankers Association (ABA)coreABA co-authored the Financial Sector Cloud Outsourcing Issues and Considerations document with FSSCC. ABA hosts the document on its website. FSSCC R&D Committee Co-Chair John Carlson is from ABA.
- Bank Policy Institute (BPI)coreBPI co-authored the AI and Explainability in Finance deliverable with FSSCC. BPI is a member organization and past Vice Chair Paul Benda serves on the Management Committee.
- Financial Services Information Sharing and Analysis Center (FS-ISAC)coreFS-ISAC co-authored the Transparency and Monitoring for Better Secure-by-Design document with FSSCC. FS-ISAC hosts the document. FSSCC R&D Committee Co-Chair Mike Silverman is from FS-ISAC. FS-ISAC is a member organization and contributes to AI Enhanced Fraud deliverable.
- UK Cross Market Operational Resilience Group (CMORG)strategicCMORG published guidance on Post-Quantum Cryptography for the financial sector. FSSCC contributed the foreword and endorses the guidance. The SIFMA/FSSCC Reconnection Framework was used by CMORG as the basis for their own Reconnection Framework, demonstrating international coordination.
- Federal Bureau of Investigation (FBI) Cyber Crime DivisioncoreFSSCC coordinates with FBI Cyber Crime Division on cybersecurity issues and threat information sharing as part of the public-private partnership for critical infrastructure protection.
- U.S. Secret Service Electronic Crimes Task ForcecoreFSSCC coordinates with Secret Service Electronic Crimes Task Force on cybersecurity and electronic crime issues affecting the financial services sector.
- PNC Financial ServicescorePNC co-authored the Data Nutrition Labeling (DNL) deliverable with FSSCC. FSSCC Chair Deborah Guild is from PNC. PNC's Head of Technology leads the sector coordination efforts.
- G7 Cyber Expert GroupstrategicThe G7 Cyber Expert Group published a Reconnection Framework Best Practices document, building on the SIFMA/FSSCC Reconnection Framework. This demonstrates international adoption and alignment of FSSCC-developed frameworks.
Scale indicators3 records
Recent moves6 records
Expansion highlights4 records
Financial Services Sector Coordinating Council competitors and assessment
Company assessmentBroad incumbents
- American Bankers Association (ABA): ABA is a major U.S. banking trade association, FSSCC member, and co-author of cloud outsourcing guidance with FSSCC. It is a broad incumbent in financial services advocacy that overlaps with FSSCC's banking-focused cybersecurity coordination role.
- Securities Industry and Financial Markets Association (SIFMA): SIFMA is a broad financial services trade association that co-authored the Reconnection Framework with FSSCC and shares the same member audience. While FSSCC focuses on critical infrastructure coordination, SIFMA covers broader policy advocacy, capital markets, and operational issues for the same institutional members.
- Bank Policy Institute (BPI): BPI is a major bank trade association whose executives (Heather Hogsett as Vice Chair, Paul Benda on Management Committee) lead FSSCC. BPI co-authored the AI and Explainability in Finance deliverable and is structurally aligned with FSSCC's mission.
Direct peers
- Financial Services Information Sharing and Analysis Center (FS-ISAC): FS-ISAC is the financial sector's threat intelligence sharing organization and a member of FSSCC. Both organizations coordinate cybersecurity resilience for the same customer base (major financial institutions) and co-author deliverables such as the Transparency and Monitoring for Secure-by-Design document.
- Communications ISAC (C-ISAC): C-ISAC is the communications sector's ISAC, operating under the same critical infrastructure coordination model as FSSCC. It is a direct peer in sector-specific cybersecurity coordination and public-private partnership with CISA.
- Health Information Sharing and Analysis Center (Health-ISAC): Health-ISAC is the healthcare sector's ISAC, operating under the same critical infrastructure coordination model as FSSCC and FS-ISAC. It is a direct peer in sector-specific threat intelligence and resilience coordination.
- Cyber Risk Institute (CRI): CRI is the non-profit that now manages and maintains FSSCC's flagship Cybersecurity Profile, Cloud Profile 2.0, and the Financial Services AI Risk Management Framework. It is a direct peer in financial-sector GRC framework development and is operationally intertwined with FSSCC.
- Electricity Information Sharing and Analysis Center (E-ISAC): E-ISAC, operated by NERC, is the energy sector ISAC and a structurally direct peer to FSSCC/FS-ISAC in coordinating critical infrastructure cybersecurity for the energy sector. Same DHS CIPAC framework, similar member base structure.
- Information Technology Information Sharing and Analysis Center (IT-ISAC): IT-ISAC is the critical infrastructure ISAC for the IT sector, operating under the same ISAC model as FS-ISAC and coordinating with the same federal partners (CISA, DHS). It is a structurally comparable peer in cross-sector critical infrastructure coordination.
- National Council of ISACs: National Council of ISACs is the membership organization of all sector ISACs, parallel to how FSSCC works across the financial sector. It is a direct peer in critical infrastructure coordination governance but at the multi-sector level.
Market position
Strengths4 records
Weaknesses4 records
Competitive moat4 records
Key risks5 records
Key highlights6 records
Customer concentration
Financial Services Sector Coordinating Council social profiles
Digital presenceFinancial Services Sector Coordinating Council financial estimates
Financial estimateRevenue estimate
Valuation estimate
Financial Services Sector Coordinating Council leadership team
Management profileNumber of profiles
Profiles13 records
Financial Services Sector Coordinating Council funding detail
Funding detailFunding overview
Funding rounds
Investors
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Financial Services Sector Coordinating Council M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Financial Services Sector Coordinating Council
What does Financial Services Sector Coordinating Council do?
FSSCC is an industry-led non-profit organization established in 2002 that coordinates critical infrastructure and homeland security activities for the financial services industry. It convenes 70+ member organizations spanning financial trade associations, financial utilities, and critical financial firms to develop and publish cybersecurity, AI risk management, cloud security, and operational resilience frameworks and guidance documents. The organization operates through industry collaboration with the U.S. Department of the Treasury (its Sector Risk Management Agency) and other federal agencies to enhance the resilience of the U.S. financial system.
Is Financial Services Sector Coordinating Council a public or private company?
Financial Services Sector Coordinating Council is a private company. It is classified as nonprofit foundation owned and is currently operating.
When was Financial Services Sector Coordinating Council founded?
Financial Services Sector Coordinating Council was founded in 2002. It employs 1 to 10 people.
Where is Financial Services Sector Coordinating Council based?
Financial Services Sector Coordinating Council is headquartered in Reston, United States, in the North America region.
How does Financial Services Sector Coordinating Council make money?
One revenue line is on record: membership Dues.
Who are Financial Services Sector Coordinating Council's main competitors?
Broad incumbents on record are American Bankers Association (ABA), Securities Industry and Financial Markets Association (SIFMA) and Bank Policy Institute (BPI). Direct peers are Financial Services Information Sharing and Analysis Center (FS-ISAC), Communications ISAC (C-ISAC), Health Information Sharing and Analysis Center (Health-ISAC), Cyber Risk Institute (CRI), Electricity Information Sharing and Analysis Center (E-ISAC), Information Technology Information Sharing and Analysis Center (IT-ISAC) and National Council of ISACs.
Does Financial Services Sector Coordinating Council have an API?
No public API is recorded for Financial Services Sector Coordinating Council.
What industry is Financial Services Sector Coordinating Council in?
Financial Services Sector Coordinating Council's product category is Industry Coordination and Critical Infrastructure Protection. Its primary akta.pro industry code is FSAFAOAG, Risk, Controls & Governance (GRC) Platforms, with a secondary code of BPAEAPAA, Governance, Risk & Compliance (GRC) Platforms. Its NAICS code is 813410 and its SIC code is 6199.