FFIEC Guidelines set the framework for financial institutions. They define how to safeguard data, manage risk, and document controls. They cover authentication, encryption, access management, incident response, and vendor oversight.
NIST 800‑53 is the deep catalog. It lists each security and privacy control by family: Access Control (AC), Audit