Logical Encryption For Your Firm

Logical Encryption Controls to Secure Your Firm Encryption is all the rage today. Regulators are asking firms about their encryption policies, and those who do not have well-executed strategies can find themselves at risk of examination deficiencies or enforcement. With NSA spying allegations, the general public has begun to understand that encryption [...]

By |2018-01-22T11:39:11-05:00September 8th, 2015|Cyber Security, Data Protection, Encryption|Comments Off on Logical Encryption For Your Firm

Why Investment Advisers Should Care About FINRA

SEC Risk-Based Exam Navigation Utilize FINRA’s RCA Survey for SEC Examination Prep Many Investment Advisers pay little attention to the Financial Industry Regulatory Authority’s guidance and news items.  This is a mistake, not only because FINRA has been out in front on issues such as Business Continuity, Identity Theft, AML, and Cybersecurity, [...]

By |2018-01-22T11:41:27-05:00September 1st, 2015|Cyber Security|Comments Off on Why Investment Advisers Should Care About FINRA

What to Expect from the SEC as Cybersecurity Hits the Docket

What to Expect from the SEC as Cybersecurity Hits the Docket The New York Times reported on Sunday that the Securities and Exchange Commission has enforcement with cybersecurity implications on the schedule.  The authors speculated about something that we have all known for years, the SEC is going for high-profile or impact [...]

By |2018-01-22T11:46:26-05:00August 11th, 2015|Cyber Security, Private Equity|Comments Off on What to Expect from the SEC as Cybersecurity Hits the Docket

Due Diligence – How CCOs Can Slay the Two-Headed Dragon

Due Diligence For Your Vendors And Your Firm Bolstering fortifications around vendors is a critical area of any firm's cybersecurity program. At the same time, investment advisers, investment companies, and broker-dealers, as vendors themselves, are subject to increasing scrutiny by their institutional investors. Both the SEC and FINRA have recognized the importance [...]

By |2018-01-22T11:48:36-05:00August 3rd, 2015|Cyber Security|Comments Off on Due Diligence – How CCOs Can Slay the Two-Headed Dragon

Enlist Your Customers to Secure Your Firm

A compliance officer knows that he or she must consider third party risks in any assessment. As the threat landscape has changed, third-party risk has become more and more focused on information security. The need for initial and ongoing due diligence of critical third parties is understood and should be part of [...]

By |2018-01-22T11:50:25-05:00July 28th, 2015|Cyber Security|Comments Off on Enlist Your Customers to Secure Your Firm

Cyber Insurance – Transferring the Risk, Not the Responsibility

A first glance, Cyber Liability Insurance seems like a panacea for the harried financial services firm looking to shore up its defenses from nefarious hackers. However, if you don’t have your cybersecurity house in order, you can find yourself doubling down on the losing end: paying for a policy that doesn’t pay [...]

By |2018-01-22T11:52:10-05:00July 21st, 2015|Cyber Security|Comments Off on Cyber Insurance – Transferring the Risk, Not the Responsibility

5 Basic Exam Questions of The Future: Are You Prepared?

Regulatory guidance on cybersecurity shows little sign of abating and additional governmental legislation continues to complicate every CCO’s day. With the regulatory landscape continuing to grow more complex, we pause to ask the question: Have you thought about your next presence exam? Preparing today can be the most important step you as [...]

By |2018-01-22T11:53:50-05:00July 14th, 2015|Cyber Security|Comments Off on 5 Basic Exam Questions of The Future: Are You Prepared?

Aguilar Discusses Cybersecurity and Enforcement

Commissioner Luis A. Aguilar delivered the morning keynote address last Thursday at the SINET Innovation Summit 2015 in New York. We continue to pay close attention when the Commissioner speaks as he has been a proponent on the subject of Cybersecurity, has contributed key guidance in previous speeches, and was the driving [...]

By |2018-01-22T11:55:16-05:00June 29th, 2015|Cyber Security|Comments Off on Aguilar Discusses Cybersecurity and Enforcement

Wire Fraud and Executive Email – Are you Doing Enough?

Recent guidance from the Financial Services Information Sharing and Analysis Center (FS-ISAC) and the FBI suggests that Business Email Compromise (BEC) that leads to fraudulent wire transactions remains a significant threat to the industry. While the controls listed in the June 19th Fraud Alert were primarily directed at executives, Advisors and other [...]

By |2018-01-25T20:18:56-05:00June 25th, 2015|Cyber Security, Data Protection|Comments Off on Wire Fraud and Executive Email – Are you Doing Enough?

Training – Are You Doing Enough To Meet Regulatory Expectations?

The Division of Investment Management’s recent cybersecurity guidance suggested that firms consider implementing training to provide guidance to officers and employees “concerning applicable threats and measures to prevent, detect, and respond to… threats and that monitor compliance with cybersecurity policies and procedures.” In addition, the Division suggested that firms “may wish to [...]

By |2018-01-25T21:28:17-05:00June 17th, 2015|Best Practices, Cyber Security|Comments Off on Training – Are You Doing Enough To Meet Regulatory Expectations?
Go to Top