AdviserVoice

Regulation/Reform

ASIC reports on cyber resilience assessments of financial markets firms

An ASIC report on the cyber resilience of over 100 firms operating across Australia’s financial markets has shown a growing understanding of cyber risks, but there is still some progress to be made.

Report 555 Cyber resilience of firms in Australia’s financial marketscollates and analyses the results of self-assessments from over 100 stockbrokers, investment banks, market operators, post-trade infrastructure providers and credit rating agencies.

ASIC Commissioner Cathie Armour said, ‘Cyber resilience is now widely regarded as one of the most significant concerns for the financial markets sector and the economy at large. Given the central role financial markets firms play in our economy, the cyber resilience of our regulated population is a key focus for ASIC.

‘While our report shows greater engagement by firms on the issue, there is disparity between firms and insufficient investment in cyber resilience measures.

‘Cyber resilience is not just an IT issue but one that requires a whole-of-organisation response. The dynamic nature of cyber threats requires a comprehensive and long-term commitment to cyber resilience by all organisations operating in the Australian economy’, Ms Armour said.

Report 555 is designed to:

Key insights from the assessments include the following:

ASIC will continue to monitor, assess and measure improvements over time by:

ASIC encourages all financial markets firms to consider and discuss the information in this report as they develop or enhance their cyber resilience frameworks.

Read Report 555

Background

Report 555 builds on ASIC’s cyber resilience assessment of the ASX and Chi-X markets in Report 468 Cyber resilience assessment report: ASX Group Ltd and Chi-X Australia Pty Ltd, published in April 2016.

To help firms operating in Australia’s financial markets improve their cyber resilience, ASIC has published a number of resources on its website, including good practice guidance and key questions for boards to ask about their firm’s cyber resilience.

Visit ASIC’s cyber resilience webpage.

Latest Articles

Exit mobile version