|
December 2025Each year, regulatory thresholds are adjusted to account for inflation. The following policies have been updated to reflect these threshold adjustments effective January 1, 2026.
Changes have been made to the Succession Planning Policy/Plan and some associated materials to reflect the training requirements for the succession planning rule and to provide some additional consistency with terminology.
November 2025As the usage of artificial intelligence continues to evolve, this policy will continue to evolve to keep pace with expectations for the safe, ethical, and compliant use of AI. With the publication of the National Institute of Standards and Technology Artificial Intelligence Risk Management Framework (AI RMF), credit unions now have a foundation upon which to build. More was added to this policy to assist in developing a more comprehensive program, along with more specific examples such as key controls and risks. (Recommended) Policy 7510 was revised to reference and incorporate compliance with the Servicemembers Civil Relief Act (SCRA) and Military Lending Act (MLA). Additional revisions were made to reference the requirement to follow state law, and follow internal policies on loan workouts. Policy 2245 is being updated to include two new key fields for credit unions to include the actual age as defined in their state for a senior citizen/elder and vulnerable adult, under financial abuse laws. Since each state defines this differently, the credit union will need to research and update their policy accordingly. Other minor changes were made to the policy to improve readability. Policy 2290 was updated to clarify that the member has one year from receipt of confirmation that a wire transfer has been sent in their name to object to the payment, under the Uniform Commercial Code (Article 4A), along with reference to the specific applicability of Subpart B of Regulation E for International Remittance Transfers. Quarterly Update (June - October, 2025)October 2025
September 2025
August 2025June 2025Quarterly Update (May, 2025)May 2025
|
November 2025Section 1673 - Full Cyber Incident Life Cycle was updated to change the NCUA ACET link to the CISA CPG Checklist (recommended) January 2025The NCUA has new cyber incident reporting requirements and an updated webform to make these reports. Sections 1640 and 1654 were updated in response to the availability of the new webform.
November 2024Several sections of the Cyber Incident Response content had minor updates due to recent examiner feedback. One new section (1663: NCUA Guidance – SAR Reporting in a Cyber Incident) was added to the Model BCP.
|
Click here to access additional content update archives.
Using the Content Overview document as a guide along with the redlined documents related to the update, review the changes for each policy, and for each section of content decide if you want to:
If you have any questions, please contact the support team at 360support@infosight360.com.