Remove Business Services Remove Compliance Remove Phishing Remove Training
article thumbnail

FCA Publishes Wholesale Banks and Asset Management Cyber Multi-Firm Review Findings

Data Matters

Effectiveness of second line functions in overseeing and managing cyber risks – all relevant areas of the business must have the relevant expertise. phishing) and systems (e.g., Testing – the FCA observed wide variations in the difference in approaches to firms’ cybersecurity testing. simulated attacks).

article thumbnail

Proposed Amendments to NY Financial Services Cybersecurity Regulations Impose New Obligations on Large Entities, Boards of Directors and CISOs

Hunton Privacy

As part of the “training and monitoring” requirements under Section 500.14 A covered entity’s cyber program must include phishing training and exercises, as well as monitoring and filtering of emails to block malicious content. As part of the “risk assessment” requirements under Section 500.9