News & Analysis as of

Broker-Dealer Cyber Attacks

Morrison & Foerster LLP

Top 5 SEC Developments for July 2023

In order to provide an overview for busy in-house counsel and compliance professionals, we summarize below some of the most important SEC enforcement developments from the past month, with links to primary resources. This...more

Eversheds Sutherland (US) LLP

Financial services regulators ramp up cybersecurity reporting requirements

US financial services regulators are continuing to enhance cyber reporting requirements in response to increasing geopolitical tensions, emerging technologies, the proliferation of cyber-attacks, and larger market events....more

Dechert LLP

Dechert Cyber Bits - Issue 25

Dechert LLP on

SEC Division of Examinations Issues Risk Alert on Regulation S-ID and Identity Theft Prevention Programs - On December 5, 2022, the Securities and Exchange Commission (“SEC”) Division of Examinations (“EXAMS”) issued a...more

Mayer Brown Free Writings + Perspectives

US Securities and Exchange Commission Increases Focus on Cybersecurity

This past summer’s string of cyber enforcement actions signals that cybersecurity has become a top priority for the US Securities and Exchange Commission (“SEC”). This focus is consistent with the SEC’s Division of...more

Farrell Fritz, P.C.

A Cybersecurity Wake Up Call: SEC Sanctions Eight Firms For Cybersecurity Deficiencies

Farrell Fritz, P.C. on

The U.S. Securities and Exchange Commission (“SEC”) recently identified cyberthreats as an enforcement priority (see 2021 Examination Priorities). Within months of the Commission’s announcement, the Commission brought three...more

Balch & Bingham LLP

SEC Issues Cybersecurity Sanctions Against Eight Firms

Balch & Bingham LLP on

Background - On August 30, 2021, the Securities and Exchange Commission (SEC) sanctioned eight firms in three actions for cybersecurity failures in their policies and procedures that exposed the personal information of...more

Goodwin

SEC Makes Cybersecurity Top Priority; Sanctions Firms for Cybersecurity Failures

Goodwin on

There is little doubt that the U.S. Securities and Exchange Commission is making cybersecurity a top priority. SEC Chair Gary Gensler told a Senate committee on Tuesday, September 14, 2021 that the agency is developing a...more

Faegre Drinker Biddle & Reath LLP

SEC “Sweep” of Public Companies’ & Registrants’ Responses to the SolarWinds Cyberbreach

As publicly reported late last week, the Securities and Exchange Commission’s Division of Enforcement (SEC) sent voluntary requests for information to a range of public companies and investment firms seeking voluntary...more

Eversheds Sutherland (US) LLP

A Cybersecurity Storm and Winds of Change: NY DFS requires all New York financial institutions to report effects of SolarWinds...

The massive SolarWinds security breach, which affected not only the private sector, but federal, state and local governments, has caused some to question whether to share data with the government. On Friday, December 18, the...more

Kilpatrick

OCIE Issues Second Cybersecurity Risk Alert of Q3-2020

Kilpatrick on

On September 15, 2020, the SEC’s Office of Compliance Inspections and Examinations (“OCIE”) issued a cybersecurity risk alert highlighting the increased use of “credential stuffing” attacks against investment advisers and...more

Kramer Levin Naftalis & Frankel LLP

OCIE Warns of Increased ‘Credential Stuffing’ Cyberattacks on Investment Advisers, Broker-Dealers

The  Securities and Exchange Commission’s (SEC) Office of Compliance Inspections and Examinations (OCIE) has published a risk alert, warning SEC-registered investment advisers, brokers and dealers about the increasing use of...more

Dechert LLP

OCIE Issues Cybersecurity Risk Alert on the Risk of Credential Stuffing Attacks

Dechert LLP on

The Risk Alert makes clear that OCIE has observed an increase in the frequency of credential stuffing attacks against Registrants, including some successful credential stuffing attacks that resulted in the loss of customer...more

Faegre Drinker Biddle & Reath LLP

SEC Issues New Risk Alert on “Credential Stuffing” Attacks

On September 15, 2020, the SEC’s Office of Compliance Inspections and Examinations (OCIE) issued a Risk Alert highlighting the recent uptick in “credential stuffing” cyber-attacks against SEC-registered investment advisors...more

NAVEX

3 Coronavirus Compliance Tips From the SEC

NAVEX on

The coronavirus crisis is far from over, and compliance professionals still need every scrap of guidance that regulators can provide about how to run compliance programs in these difficult times. So when the Securities and...more

BCLP

SEC Encourages Enhanced Data Security in Wake of Increasingly Sophisticated Ransomware Attacks Following NAIC Brief Encouraging...

BCLP on

The SEC's Office of Compliance and Examinations (OCIE) issued a risk alert on July 10th about its observation of an apparent increase in sophistication of ransomware attacks on SEC registrants, including broker-dealers,...more

Akin Gump Strauss Hauer & Feld LLP

SEC’s Examination Function Warns Its Registrants of Risks Associated with Dangerous Malware

- In the age of broad corporate teleworking brought on by COVID-19, OCIE of the SEC has observed during recent examinations that investment advisers, broker-dealers and investment companies are subject to an increased threat...more

King & Spalding

FINRA Offers Member Firms Continued Guidance on Cybersecurity

King & Spalding on

On December 20, 2018, the Financial Industry Regulatory Authority (FINRA) issued a “Report on Selected Cybersecurity Practices” (the “Report”) as part of its ongoing efforts to assist broker-dealer firms in developing...more

BakerHostetler

Broker-Dealer and Investment Adviser Agrees to Settle SEC Enforcement Action Arising From a Data Security Incident

BakerHostetler on

The U.S. Securities and Exchange Commission (SEC) recently announced a consent order settling an enforcement action brought by the SEC against Voya Financial Advisors Inc. (VFA) in connection with a data security incident...more

Jones Day

Global Privacy & Cybersecurity Update Vol. 15

Jones Day on

UNITED STATES - Regulatory—Policy, Best Practices, and Standards - FTC Comments on Improvements to IoT Device Security - On June 19, the Federal Trade Commission ("FTC") submitted comments to a working group organized by the...more

Nossaman LLP

SEC Urges Investment Firms to Better Prepare for Ransomware Attacks

Nossaman LLP on

On May 17, 2017, the SEC’s Office of Compliance Inspection and Examination (“OCIE”) issued a risk alert urging broker-dealers, investment advisors and investment companies to safeguard themselves against ransomware in light...more

Dechert LLP

OCIE Publishes Risk Alert In Response to WannaCry Ransomware

Dechert LLP on

The Office of Compliance Inspections and Examinations (OCIE) of the U.S. Securities and Exchange Commission (SEC) issued a National Exam Program Risk Alert (Risk Alert) on May 17, 2017 in response to “WannaCry,” the ongoing...more

Ballard Spahr LLP

SEC Emphasizes Cybersecurity Preparedness in Wake of Global Ransomware Attack

Ballard Spahr LLP on

The U.S. Securities and Exchange Commission's Office of Compliance Inspections and Examinations (OCIE) has issued a Risk Alert in the wake of the widespread WannaCry ransomware attack that has inflicted hundreds of thousands...more

Patterson Belknap Webb & Tyler LLP

SEC Warns of Ransomware Attacks

The U.S. Securities and Exchange Commission is asking broker-dealers, investment advisers and funds to redouble their cybersecurity efforts in wake of the global cyber-attack of the WannaCry virus that has spread to more than...more

Eversheds Sutherland (US) LLP

FinCEN Issues Advisory to Financial Institutions on Suspicious Activity Reports of Cyber-Events and Cyber-Enabled Crime

On October 25, the Financial Crimes Enforcement Network (FinCEN), one of the U.S. Department of the Treasury’s lead agencies in the fight against money laundering, issued an Advisory to Financial Institutions on Cyber-Events...more

Proskauer on Privacy

SEC Cybersecurity Update

Proskauer on Privacy on

Results from the SEC’s First Round of Cybersecurity Examinations - On February 3, 2015, the OCIE published a risk alert summarizing its findings from its examinations of over 100 registered investment advisers and...more

48 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide