Getting Smart About Cyber

Recognizing the Risk

When it comes to managing cybersecurity risk, investment advisers are in a tough position. As the frequency and variety of cybersecurity risks mount, IT budgets and staffing do not always follow suit. Compliance and IT professionals are often asked to do more with less, which can seem overwhelming given an ever-expanding list of regulatory and business requirements as well as increased scrutiny of firms’ cybersecurity controls by third parties.

For years, smaller advisers in particular, and private fund advisers who did not process wires or maintain much personally identifiable information about natural persons, seemed to evoke a sense of invincibility in the face of growing cybersecurity threats, perhaps believing that their firms were sufficiently off the radar of hacker groups. Unfortunately, as headlines and anecdotes reveal, ransomware does not discriminate. Cyber incidents caused by negligent employees know no limits, and clients, third-party service providers, or portfolio companies may be the ultimate end targets for hackers simply using the adviser’s systems as a jumping-off point. Hopefully, advisers now are past the point of thinking they are not at risk for a cyber incident.

Want to read more?

Fill in the form below to download the full article.

Loading form...

Latest Content

Advertising Issues: SEC and GIPS Performance in the Private Fund Space

Over a year ago, OCIE released the Risk Alert, “The Most Frequent Advertising Rule Compliance Issues Identified in OCIE Examinations of Investment Advisers.” While the alert highlighted several areas where performance advertising is involved, our recent CSS/Ascendant conference panelists in a session entitled “Best Practices for SEC and GIPS Performance in the Private Fund Space” … Continued

Placing Ethics and Compliance in the Foreground of Business Decision-Making

Thinking about how to make ethics and compliance part of a business’s decision-making can prove to be challenging. By nature, compliance professionals are often results-oriented, focusing on a binary end-result; either you are in compliance, or you are not. That focus is important, but emphasizing process is also vital, John Walsh, Partner at Eversheds Sutherland … Continued