Compliance frameworks, security audits, and quality certifications this company maintains.
CIBC maintains PCI DSS Level 1 certification, the highest standard for payment card security, protecting credit card transaction data across its 10+ million active card accounts and payment processing infrastructure.
CIBC's digital banking platform and cloud infrastructure are audited annually against SOC 2 Type II controls, ensuring ongoing security, availability, and confidentiality of client financial data.
CIBC holds ISO 27001 certification for its information security management systems, supporting its enterprise risk management framework across Canadian, U.S., and international banking operations.
CIBC complies with Canada's Personal Information Protection and Electronic Documents Act (PIPEDA), governing the collection, use, and disclosure of personal financial information for all Canadian clients.
Regulatory
OSFI Guideline B-10
CompliantCIBC complies with OSFI Guideline B-10 on outsourcing and technology risk, satisfying Canada's banking regulator requirements for third-party technology vendor management and cloud computing governance.
CIBC meets Basel III capital adequacy, leverage ratio, and liquidity coverage requirements, maintaining a CET1 capital ratio above 12% as required by OSFI for domestic systemically important banks.
CIBC complies with FINTRAC (Financial Transactions and Reports Analysis Centre of Canada) regulations, implementing AML and terrorist financing monitoring across all domestic and international banking activities.
Accessibility
WCAG 2.1 Level AA
CompliantCIBC's online banking portal and mobile applications are designed to WCAG 2.1 Level AA accessibility standards, ensuring equal access to banking services for clients with disabilities.
CIBC complies with GDPR requirements for European personal data handled through CIBC capital markets and wealth management operations, implementing appropriate data processing agreements and privacy controls for EU client data.
Security
OSFI Guideline B-13
CompliantCIBC operates in full compliance with OSFI Guideline B-13 on technology and cyber risk management, implementing the cybersecurity controls and governance frameworks required of federally regulated Canadian financial institutions.