Law.com Subscribers SAVE 30%

Call 855-808-4530 or email [email protected] to receive your discount on a new subscription.

<b><i>Online Extra:</b></i> SEC to Focus on Cybersecurity Compliance in 2016

By Marlisse Silver Sweeney
January 26, 2016

In 2016, the U.S. Securities and Exchange Commission will remain focused on assessing cybersecurity efforts by investment adviseors and broker-dealers. The agency's Office of Compliance Inspections and Examinations'announced its 'examination priorities' for the year'on Jan. 13 and cybersecurity protocols were once again a top concern. This is the third year in a row tha cybersecurity protocols made the cut, according to Anne Peterson of McGuireWoods, who'blogged about the OCIE guidance. Here's what Peterson says you have to know:

  • Secure? Prove it: 'Security is no longer an academic discussion and ' OCIE examiners will ask hard questions,' warns Peterson. They'll want to know exactly how security measures work and will demand proof that they protect customers.
  • Assess and Assess Again: 'Periodic risk assessments, with documented benchmarks for success, are now an integral part of verifying compliance with SEC obligations,' Peterson says. OCIE will want to know that new information about cyberattacks is routinely incorporated into existing security programs.
  • Oversight Is Here to Stay: Peterson predicts that the SEC's focus on cybersecurity will continue into 2017. She envisions the 'SEC mandat[ing] that financial firms exchange information regarding cyberattacks to maintain industry awareness of threats to consumer information.'

'


Marlisse Silver Sweeney'writes for'Corporate Counsel, an ALM sibling of'e-Commerce Law & Strategy. Follow her on Twitter'@MarlisseSS.

In 2016, the U.S. Securities and Exchange Commission will remain focused on assessing cybersecurity efforts by investment adviseors and broker-dealers. The agency's Office of Compliance Inspections and Examinations'announced its 'examination priorities' for the year'on Jan. 13 and cybersecurity protocols were once again a top concern. This is the third year in a row tha cybersecurity protocols made the cut, according to Anne Peterson of McGuireWoods, who'blogged about the OCIE guidance. Here's what Peterson says you have to know:

  • Secure? Prove it: 'Security is no longer an academic discussion and ' OCIE examiners will ask hard questions,' warns Peterson. They'll want to know exactly how security measures work and will demand proof that they protect customers.
  • Assess and Assess Again: 'Periodic risk assessments, with documented benchmarks for success, are now an integral part of verifying compliance with SEC obligations,' Peterson says. OCIE will want to know that new information about cyberattacks is routinely incorporated into existing security programs.
  • Oversight Is Here to Stay: Peterson predicts that the SEC's focus on cybersecurity will continue into 2017. She envisions the 'SEC mandat[ing] that financial firms exchange information regarding cyberattacks to maintain industry awareness of threats to consumer information.'

'


Marlisse Silver Sweeney'writes for'Corporate Counsel, an ALM sibling of'e-Commerce Law & Strategy. Follow her on Twitter'@MarlisseSS.

Read These Next
Bankruptcy Sales: Finding a Diamond In the Rough Image

There is no efficient market for the sale of bankruptcy assets. Inefficient markets yield a transactional drag, potentially dampening the ability of debtors and trustees to maximize value for creditors. This article identifies ways in which investors may more easily discover bankruptcy asset sales.

Law Firms are Reducing Redundant Real Estate by Bringing Support Services Back to the Office Image

A trend analysis of the benefits and challenges of bringing back administrative, word processing and billing services to law offices.

Bit Parts Image

Summary Judgment Denied Defendant in Declaratory Action by Producer of To Kill a Mockingbird Broadway Play Seeking Amateur Theatrical Rights

Risks of “Baseball Arbitration” in Resolving Real Estate Disputes Image

“Baseball arbitration” refers to the process used in Major League Baseball in which if an eligible player's representative and the club ownership cannot reach a compensation agreement through negotiation, each party enters a final submission and during a formal hearing each side — player and management — presents its case and then the designated panel of arbitrators chooses one of the salary bids with no other result being allowed. This method has become increasingly popular even beyond the sport of baseball.

Disconnect Between In-House and Outside Counsel Image

'Disconnect Between In-House and Outside Counsel is a continuation of the discussion of client expectations and the disconnect that often occurs. And although the outside attorneys should be pursuing how inside-counsel actually think, inside counsel should make an effort to impart this information without waiting to be asked.