Financial regulators are emphasizing the risk poor cybersecurity poses to market integrity and financial stability, and elaborating on policies and controls they expect the firms they oversee to have in place. Investment managers’ responsibility for cybersecurity has grown like compound returns. The SEC’s Office of Compliance Inspections and Examinations disclosed that its examination staff would
Robert R. Kiesel
Cybersecurity Update: Takeaways from OCIE’s Examination Initiative and the NFA’s Rulemaking Proposal
As the end of 2015 approaches, financial regulators continue to emphasize the risk that poor cybersecurity poses to market integrity and financial stability, and to elaborate on the policies, procedures and controls they expect investment advisers, commodity pool operators and registered investment companies to have in place.
Click here to read more.
New SEC Cybersecurity Guidance
Cybersecurity continues to be a priority for the Securities and Exchange Commission (SEC). The SEC’s Office of Compliance Inspections and Examinations conducted a cybersecurity “sweep” examination in 2014 and released a summary of its results in early 2015. The SEC’s Division of Investment Management — which regulates investment companies and investment advisers — has now…
Model Cybersecurity Contract Terms and Guidance for Investment Managers to Manage Their Third-Party Vendors
Like many companies, investment managers require a wide range of third-party vendor-provided products and services to manage their daily operations. These vendors have varying levels of access to sensitive data, and policies are needed to reduce the cybersecurity risks that third-party vendors present. It is critical to have comprehensive contract provisions in place to reduce…
Information Security: Obligations and Expectations
Information security is not only a good idea — it is also a legal obligation. Federal and state laws impose obligations on businesses, including investment advisers, to keep their data secure. Most of these laws focus on requiring businesses to take reasonable security measures. While it may take regulators and courts years to clearly define…
New SEC Cybersecurity Guidance: What It Means for Fund Managers
Cybersecurity continues to be a priority for the Securities and Exchange Commission. The SEC’s Office of Compliance Inspections and Examinations conducted a cybersecurity “sweep” examination in 2014 and released a summary of its results in early 2015. The SEC’s Division of Investment Management — which regulates investment companies and investment advisers — has now issued…
SEC Cybersecurity Update: OCIE Risk Alert Provides Insights for Private Fund Managers on SEC Cybersecurity Examinations
Earlier this week, the SEC’s Office of Compliance Inspections and Examinations (“OCIE”) issued a Risk Alert providing observations derived from its “Cybersecurity Examination Initiative,” which was announced on April 15, 2014. The Risk Alert is based on OCIE’s examinations of the cybersecurity policies and practices of 57 registered broker-dealers and 49 registered investment advisers. While…