


Table of Contents
Share with network
Related Insights
Fifteen years after the financial crisis that led to its creation and six and a half years since the issuance of ASU 2016-13, the implementation date for current expected credit loss methodology (CECL) has finally come and gone. As with many areas of CECL, regulatory guidance explaining when model validations are warranted versus when an internal audit may be appropriate, has been infrequent and ambiguous. To make this determination more confusing, there are wide-ranging definitions of the word “validation” being used by vendors across the industry. In this article, we discuss the difference between an internal audit and a validation and provide some perspective on items to be considered when making the determination as to which is more appropriate for your institution.
[hubspot portal="23546948" id="8511bf87-e8d6-4949-a93f-5c445707f203" type="form"]


Learn how vulnerability chaining can turn minor security gaps into full-scale network compromises. Discover real-world penetration testing insights, attack pathways, and how to mitigate risks before cybercriminals strike. Strengthen your security with expert guidance.