Cybersecurity weaknesses worry state RIA regulators

More than 698 deficiencies found in 1,200 exams, says NASAA.
SEP 25, 2017

More than 1,200 coordinated examinations of state-registered investment advisers by state securities examiners in 37 jurisdictions uncovered 698 deficiencies involving cybersecurity, the North American Securities Administrators Association (NASAA) said. In examinations conducted between January and June 2017, NASAA said the top five cybersecurity deficiencies found by state examiners were: nonexistent or inadequate cybersecurity insurance, no testing of cybersecurity vulnerability, lack of procedures regarding securing or limiting access to devices, no technology specialist or consultant, and a lack of procedures regarding hardware and software updates or upgrades. At the group's annual meeting this week in Seattle, Mike Rothman, NASAA president and Minnesota's commissioner of commerce, said the group has created a tool for state-registered investment advisers to help them assess their cybersecurity preparedness. Called the NASAA Cybersecurity Checklist for Investment Advisers, it includes 89 assessment areas to help identify, protect and detect cybersecurity vulnerabilities, and to respond to and recover from cyber events. Overall, the group said that 1,203 reported examinations of state-registered investment advisers uncovered 7,907 deficiencies in 25 compliance areas, compared to 4,983 deficiencies in 22 compliance areas uncovered by 1,170 examinations in 2015. This sample data from state securities examiners is collected every two years and reported voluntarily to NASAA's investment adviser operations project group. Ranked by number of deficiencies found, books and records (2,625 deficiencies) continued to be the most problematic compliance area, followed by registration (1,165 deficiencies), contracts (921), cybersecurity (698) and custody matters (364). State securities regulators have regulatory oversight responsibility for investment advisers with assets under management of $100 million or less.

Latest News

Retirement is the new American Dream, but millions doubt they'll get there
Retirement is the new American Dream, but millions doubt they'll get there

ACLI research reveals middle-class financial resilience rebounding, even as inflation anxiety and a deep savings confidence gap cloud the outlook.

Estate planning isn't a service add-on. It's your retention strategy.
Estate planning isn't a service add-on. It's your retention strategy.

As $84 trillion prepares to change hands, advisors who treat estate planning as peripheral are quietly building a sieve, not a book.

Robinhood just made a bold move into AI-powered trading for the retail market
Robinhood just made a bold move into AI-powered trading for the retail market

Traders will be able to connect their own third-party AI agents to the brokerage platform.

Jamie Dimon signals up to $20 billion acquisition for JPMorgan
Jamie Dimon signals up to $20 billion acquisition for JPMorgan

The bank's outspoken CEO says it's scanning for deal targets even as geopolitical risks and elevated asset prices cloud the outlook.

Fintech bytes: Envestnet's Bill Crager wants to fix tech's disconnection dilemma
Fintech bytes: Envestnet's Bill Crager wants to fix tech's disconnection dilemma

Virtual family office platform Strad and Ai-native CRM slant are also supporting centralization for advisors with newly inked partnerships.

SPONSORED Estate planning isn't a service add-on. It's your retention strategy.

As $84 trillion prepares to change hands, advisors who treat estate planning as peripheral are quietly building a sieve, not a book.

SPONSORED Why strategy matters more than performance

In volatile markets, the advisors who win aren't the ones with the best calls - they're the ones whose clients stay the course.