Results from the SEC’s First Round of Cybersecurity Examinations. On February 3, 2015, the OCIE published a risk alert summarizing its findings from its examinations of over 100 registered investment advisers and broker-dealers. The examinations were conducted as part of the OCIE’s cybersecurity examination initiative, announced in April 2014, to assess cybersecurity preparedness in the securities industry and gather information on common practices and trends among registered firms. The OCIE interviewed key personnel and reviewed documents at 49 registered investment advisers and 57 registered broker-dealers. The OCIE’s findings focused on how registered investment advisers and broker-dealers:
- Identify cybersecurity risks;
- Establish cybersecurity policies, procedures and oversight processes;
- Protect their networks and information;
- Identify and address risks associated with remote access to client information, funds transfer requests and third-party vendors; and
- Detect and handle unauthorized activities and other cyber-attacks.