The proposals will enhance cyber and technology risk management requirements for key entities that underpin the US securities market.
March 17, 2023The advisory calls on firms to take into account concentration risk when outsourcing multiple critical services to the same third party vendor.
February 28, 2023The standards include new penetrating testing guidelines which the CSRC says will strengthen the security of information systems in the industry.
February 14, 2023The SEC has strengthened the obligations of capital markets and digital assets firms to supervise and manage the risks to their IT systems.
November 9, 2022Regulated entities will have to obtain source code from vendors for critical applications or ensure a software escrow agreement is in place.
October 24, 2022Financial firms are reportedly concerned that proposed new rules on cybersecurity could make them vulnerable to hackers and present sector-wide risks.
June 6, 2022Stock exchanges, clearing corporations, and depositories are required to conduct a comprehensive cyber audit at least twice each financial year.
May 24, 2022The revised rules apply to securities and derivatives businesses, digital asset operators, clearinghouses, depositories, exchanges, digital token platforms, and crowdfunding platforms.
May 12, 2022Firms that provide penetration testing or managed security operations centre monitoring services have to apply for a licence by 11 October.
April 14, 2022The SEC reminds crypto businesses to bolsters their cybersecurity systems, safeguard customer assets, and comply with IT audit and penetration testing requirements.
February 9, 2022