Cybersecurity and Risk Insights and Alerts
Cyber risks and threats continue to evolve, and firms are under pressure to meet SEC and FCA expectations for operational resilience as well as their own internal and client expectations for cybersecurity and privacy. Stay current on the latest cybersecurity, privacy, and risk threat and regulatory alerts, and build your cybersecurity and privacy knowledge with insights from our cybersecurity and technology risk experts.
ACA Aponix Cybersecurity Checklist
Cyber alerts and insights

Active Risk Alert: Firms Receiving Phishing Attempts from Compromised Internal Emails
On August 11th, ACA confirmed three financial services firms are experiencing phishing attacks using identical phishing emails and tactics. Firms should be on heightened alert.
- Cybersecurity

Zoom’s New Terms of Service Create Data Privacy Concerns
Zoom's updated Terms of Service introduce changes allowing broader use of customer data for its AI programs, raising privacy concerns due to vague language and limited opt-out options.
- Privacy
- Cybersecurity

Myths About Cybersecurity Portfolio Oversight: Myth #4
In part 4 of our series we tackle the myth that cyber oversight is (only) about downside risk management.
- Cybersecurity Resources
- Cybersecurity
- Portfolio Company Risk Management

SEC Proposes Rule to Limit Conflicts of Interest in AI-Based Investor Engagement Tools
The SEC proposed two new rules to put guardrails around the use of predictive data analytics by broker-dealers and investment advisers. The goal is to limit the use of technology in ways that favor financial firms’ interests.
- Compliance
- Cybersecurity
- Privacy

Myths About Cybersecurity Portfolio Oversight: Myth #3
In part 3 of our series we tackle the myth that "investors don’t care and/or are satisfied with our current approach to cybersecurity."
- Cybersecurity Resources
- Cybersecurity
- Portfolio Company Risk Management

Merger and Acquisition Platform Datasite Named as a Victim of MOVEit Breach
Datasite, which provides a data sharing platform and encrypted data rooms for potential merger and acquisition partners, is the latest victim of the MOVEit Breach.
- Cybersecurity