Tr?id=566623520170033&ev=PageView&noscript=1

ÍøÆØ³Ô¹Ï

SEC Updates Regulation S-P to Enhance Customer Data Protection

Posted on October 4th, 2024 at 2:10 PM
SEC Updates Regulation S-P to Enhance Customer Data Protection

From the desk of Jim Eccleston at ÍøÆØ³Ô¹Ï

The SEC has introduced long-awaited updates to Regulation S-P, originally adopted in 2000, to improve the protection of customer records and information for broker-dealers, investment companies, and RIAs. According to ÍøÆØ³Ô¹ÏalthManagement, these updates focus on strengthening cybersecurity measures and improving the procedures for notifying customers in the event of data breaches.

Under the amended rules, financial institutions are now required to maintain written procedures for responding to cyber breach incidents. These procedures must include steps to detect the extent of a breach and to prevent further data leaks. Companies must inform affected customers as soon as possible, but no later than 30 days after discovering a breach. SEC Chair Gary Gensler emphasized the importance of these updates, noting the significant transformation in the nature, scale, and impact of data breaches over the past 24 years.

Michael Cocanower, founder and CEO of AdviserCyber, highlighted the SEC's increasing focus on cybersecurity, adding that the 30-day notification window allows sufficient time for investigation and customer notification. However, he acknowledged that complying may still present challenges to some firms.

While the updated regulations mandate written response policies and customer reporting, they do not require companies to have separate cyber insurance policies. Cocanower recommended that firms consider purchasing such policies, as they can provide critical resources for technical mitigation, investigation, legal counsel, customer notification, and credit monitoring services in the event of a breach.

The SEC’s amendments to Regulation S-P will take effect 60 days after their publication in the Federal Register. Larger entities will have 18 months to comply with the new rules, while smaller entities will have 24 months.

 

ÍøÆØ³Ô¹Ï LLC represents investors and financial advisors nationwide in securities, employment, transition, regulatory, and disciplinary matters.

Tags: eccleston, eccleston law, sec

Return to Archive

TESTIMONIALS

Previous
Next
Quotes Bigger

I want to extend a tremendous thank you for your dedication, professionalism, hard work and patient demeanor through this challenging time. It was enjoyable interacting with everyone on your team, this certainly helped while dealing with the situation and working towards resolution.

Dan M.

LATEST NEWS AND ARTICLES

1778000603 Law
May 5, 2026
Commonwealth Financial Network Resolves SEC Conflict of Interest Case

Commonwealth Financial Network has agreed to pay $5 million to resolve a long-standing conflict of interest case brought by the Securities and Exchange Commission, according to reporting by ThinkAdvisor.

1777908810 Law
May 4, 2026
KKR Limits Redemptions in Private Credit Fund Amid Rising Investor Withdrawals

KKR & Co.

1777663103 Law
May 1, 2026
Former Texas Advisor Pleads Guilty in Multi-Million Dollar Ponzi Scheme

A former financial advisor and media personality in San Antonio has admitted to defrauding clients in a large-scale Ponzi scheme involving hundreds of investors and millions of dollars, according to reporting by Financial Advisor News.