Cybersecurity and Risk Insights and Alerts

Cyber risks and threats continue to evolve, and firms are under pressure to meet SEC and FCA expectations for operational resilience as well as their own internal and client expectations for cybersecurity and privacy. Stay current on the latest cybersecurity, privacy, and risk threat and regulatory alerts, and build your cybersecurity and privacy knowledge with insights from our cybersecurity and technology risk experts.

ACA Aponix Cybersecurity Checklist

Download and review the following cybersecurity safeguards and evaluate your firm’s cybersecurity program.

Cyber alerts and insights

cyber outage

Recent Rackspace Exchange Outage is Another Reminder to Firms of the Importance of Business Continuity Planning

The ongoing, systemwide Microsoft Exchange outage demonstrates the importance of having contingency strategies in case of business disruptions.

Cyber Alert
  • Cybersecurity
top down roads

SEC Strategic Plan: More Enforcement, More Rules, and More Technology

The SEC issued its four-year strategic plan for 2022-2026. We summarize the goals of the plan and explore what it means for the next four years.

Compliance Alert
  • Compliance
  • SEC
  • Cybersecurity
  • ESG
  • RegTech
cyber background

SEC Proposed Rule Includes New 48-Hour Cyber Incident Reporting Requirement

According to the SEC proposed Rule 206(4)-9, RIAs and private funds must now submit a confidential report to the SEC within 48 hours from when a “significant cyber incident” is discovered.

Article
  • Cybersecurity
  • SEC
geometric background

SEC Reopens Select Comment Periods After Tech Glitch

The SEC reopened the public comment periods for certain proposed rules due to a technological error earlier this year. We share which proposed rules were affected and should be checked for accurate comment submission.

Compliance Alert
  • SEC
  • Compliance
  • Cybersecurity
  • ESG
abstract image with a lock and shield

Phishing as a Service (PaaS): Cybercriminals Turned Service Providers

Cybercriminals have become service providers offering Phishing as a Service (PaaS) on the dark web, with products such as one-time phishing kits or subscription offers to help others launch multiple attacks for a monthly fee.

Article
  • Cybersecurity
  • Cybersecurity Resources
purple streak

Penalizing Pirates: Hackers Push NullMixer Campaigns to Pilfer Data

A recent press release from Kaspersky warns of a malware that can steal users' personal information. We discuss how it works and our guidance for preventing an attack.

Cyber Alert
  • Cybersecurity