BROWSE BY TOPIC
- Bad Brokers
- Compliance Concepts
- Investor Protection
- Investments - Unsuitable
- Investments - Strategies
- Investments - Private
- Features/Scandals
- Companies
- Technology/Internet
- Rules & Regulations
- Crimes
- Investments
- Bad Advisors
- Boiler Rooms
- Hirings/Transitions
- Terminations/Cost Cutting
- Regulators
- Wall Street News
- General News
- Donald Trump & Co.
- Lawsuits/Arbitrations
- Regulatory Sanctions
- Big Banks
- People
TRENDING TAGS
Stories of Interest
- Sarah ten Siethoff is New Associate Director of SEC Investment Management Rulemaking Office
- Catherine Keating Appointed CEO of BNY Mellon Wealth Management
- Credit Suisse to Pay $47Mn to Resolve DOJ Asia Probe
- SEC Chair Clayton Goes 'Hat in Hand' Before Congress on 2019 Budget Request
- SEC's Opening Remarks to the Elder Justice Coordinating Council
- Massachusetts Jury Convicts CA Attorney of Securities Fraud
- Deutsche Bank Says 3 Senior Investment Bankers to Leave Firm
- World’s Biggest Hedge Fund Reportedly ‘Bearish On Financial Assets’
- SEC Fines Constant Contact, Popular Email Marketer, for Overstating Subscriber Numbers
- SocGen Agrees to Pay $1.3 Billion to End Libya, Libor Probes
- Cryptocurrency Exchange Bitfinex Briefly Halts Trading After Cyber Attack
- SEC Names Valerie Szczepanik Senior Advisor for Digital Assets and Innovation
- SEC Modernizes Delivery of Fund Reports, Seeks Public Feedback on Improving Fund Disclosure
- NYSE Says SEC Plan to Limit Exchange Rebates Would Hurt Investors
- Deutsche Bank faces another challenge with Fed stress test
- Former JPMorgan Broker Files racial discrimination suit against company
- $3.3Mn Winning Bid for Lunch with Warren Buffett
- Julie Erhardt is SEC's New Acting Chief Risk Officer
- Chyhe Becker is SEC's New Acting Chief Economist, Acting Director of Economic and Risk Analysis Division
- Getting a Handle on Virtual Currencies - FINRA
ABOUT FINANCIALISH
We seek to provide information, insights and direction that may enable the Financial Community to effectively and efficiently operate in a regulatory risk-free environment by curating content from all over the web.
Stay Informed with the latest fanancialish news.
SUBSCRIBE FOR
NEWSLETTERS & ALERTS
CFTC Failed to Verify Brokers Have Proper Cyber Policies
An internal audit of the CFTC concluded that the Agency fails to verify whether futures and swaps brokerage firms have adequate policies to help ward off cyber attacks. The audit, completed in October by Brown & Company CPAs and Management Consultants PLLC, had been requested by the CFTC inspector general. Results of the audit were posted online after Reuters requested it through a Freedom of Information Act request.
Auditors took issue with the method the Division of Swap Dealer and Intermediary Oversight used when it conducted cyber security exams. They said the CFTC merely asked the brokers for information about their cyber security policies and procedures without checking to see if the information was accurate.
"Validating registrant data submitted in the assessments can enhance the agency's ability to effectively deploy its limited staff resources and may reduce cybersecurity risks," the audit said.
The CFTC defended its exams and disputed the way the watchdog characterized them saying, in part, that "due to budgetary constraints, the creation of an independent testing program is not feasible."
An internal audit of the CFTC revealed that the Agency fails to verify whether futures and swaps brokerage firms have adequate policies to help ward off cyber attacks. The audit, completed in October by Brown & Company CPAs and Management Consultants PLLC, had been requested by the CFTC inspector general. Results of the audit were posted online after Reuters requested it through a Freedom of Information Act request.
Auditors took issue with the method the Division of Swap Dealer and Intermediary Oversight used when it conducted cyber security exams. They said the CFTC merely asked the brokers for information about their cyber security policies and procedures without checking to see if the information was accurate.
"Validating registrant data submitted in the assessments can enhance the agency's ability to effectively deploy its limited staff resources and may reduce cybersecurity risks," the audit said.
The CFTC defended its exams and disputed the way the watchdog characterized them saying, in part, that "due to budgetary constraints, the creation of an independent testing program is not feasible."
SEC Cyber Exam Protocol. The audit found that the CFTC based its cyber security reviews of 48 futures firms and 49 swap dealers on the SEC's cyber examination initiative - a series of questions, a request for supporting documentation to verify the information and, in some cases, a visit to the firms. Apparently the CFTC's efforts fell short compared with the SEC's methods because of the lack of verification.
The CFTC sharply refuted that claim, saying its approach to assessing the firms was "virtually identical" to that employed by the SEC and much more than simply a "request for information."