ASIC warns AFSLs of cyber-attack risk

19 March 2015
| By Nicholas |
image
image
expand image

Australian Financial Services Licensees (AFSLs) are being urged to ensure they meet their cyber-security obligations following the release of the Australian Securities and Investments Commission's (ASIC's) Cyber resilience: Health Check report.

ASIC chairman, Greg Medcraft, warned AFSLs that cyber-attacks posed a "major risk" to the financial services sector.

"The electronic linkages within the financial system mean the impact of a cyber-attack can spread quickly—potentially affecting the integrity and efficiency of global markets, and trust and confidence in the financial system," he said.

"This report outlines some ‘health check prompts' to help businesses review their cyber resilience—including flagging relevant legal and compliance requirements, particularly on risk management and disclosure.

"We encourage businesses, particularly where their exposure to a cyber-attack may have a significant impact on financial consumers and investors or market integrity, to consider using the United States' NIST Cybersecurity Framework to manage their cyber risks or stocktake their risk management practices."

The report stated that AFSLs were required to "explicitly identify the risks" they face and have measures in place to mitigate or avoid those risks.

ASIC said it expected AFSLs to ensure their risk management systems will:

  • be based on a structured and systematic process that takes into account your obligations under the Corporations Act;
  • identify and evaluate risks faced by your business, focusing on risks that adversely affect consumers or market integrity (this includes risks of non-compliance with the financial services laws);
  • establish and maintain controls designed to manage or mitigate those risks; and
  • fully implement and monitor those controls to ensure they are effective.

AUTHOR

Recommended for you

sub-bgsidebar subscription

Never miss the latest news and developments in wealth management industry

MARKET INSIGHTS

So we are now underwriting criminal scams?...

1 month 1 week ago

Glad to see the back of you Steve. You made financial more expensive, not more affordable as you claim, and presided ...

1 month 2 weeks ago

Completely agree Peter. The definition of 'significant change is circumstances relevant to the scope of the advice' is s...

3 months 2 weeks ago

Entireti has unveiled the new name for the AMP financial advice businesses that it acquired last year....

1 week 1 day ago

Platinum Asset Management has announced co-chief investment officers Andrew Clifford and Clay Smolinski are to step down from their roles....

2 weeks 2 days ago

Having sold off its advice division for a loss, AMP has reported a 43 per cent reduction in statutory net profit after tax in FY24, with the business now focusing on beco...

3 weeks 6 days ago

TOP PERFORMING FUNDS