October 15, 2018 What Am I Looking At? Making Sense of Your Cyber Testing Reports It’s no surprise that Compliance and IT do not speak the same language. Compliance staff often speak in terms of…
October 10, 2018 Lessons Learned: Wargaming Your Incident Response Plan Data breaches and cyber incidents made headlines again recently with the announcement that 50 million Facebook accounts were compromised as…
October 8, 2018 Race to the Top – States Push to Broaden Breach Reporting Requirements Facebook just reported a massive data breach impacting over 50 million user accounts. And while most investment advisers are not…
September 7, 2018 Data Breach Prevention and Response According to the Investment Firm of the Future, a report published by CFA Institute earlier this year, 24% of the organization’s…
July 3, 2018 California Privacy Law Brings ‘GDPR-Lite’ to the U.S. In what has become an ongoing race among states to have the toughest privacy regulation in the U.S., California has…
June 14, 2018 Advisers Beware: FBI “Operation WireWire” Shows Firms Increasingly Being Targeted Using SEC Filings CSS has observed more and more investment advisers falling victim to Business Email Compromise, or “BEC” schemes over the past…
April 13, 2018 Cyber Threat – Why the Best Defenders are Often the Worst Responders The firms with the best and most pro-active cyber defenses are often the worst responders if their defenses are actually…
March 12, 2018 Paradigm Shift in SEC Exams, Benefits of a Mock Exam For investment advisers currently going through an SEC exam, the process likely bears little resemblance to exams of old. Call…
December 14, 2017 Transparency Spreads to FINRA Exam Findings On December 6, 2017, FINRA did something it has never done before: It released a summary report of its examination…
October 30, 2017 Publicly Available Information Heightens Need for Cybersecurity Vigilance For any business, “ports” that allow for communication generally need to be open (for example, ports 80 and 443 for…
October 4, 2017 The SEC Data Breach And Impact On New Reporting Rules The U.S. Securities and Exchange Commission disclosed recently that its Electronic Data Gathering, Analysis and Retrieval (EDGAR) system, a comprehensive…
September 25, 2017 SEC Discloses Cybersecurity Breach That May Have Led to Insider Trading The determination of hackers to exploit existing cybersecurity vulnerabilities of government agencies and businesses shot to the forefront again last…