2010-03-18
Added · Updated
The Securities and Futures Commission issued this circular to licensed corporations to address IT deficiencies that expose firms and clients to information security risks. The regulator requires firms to implement robust internal controls, including strict access management, password policies, and audit logging, to prevent unauthorized transactions and fraud. Additionally, the document provides an appendix detailing suggested control techniques for information security, access control, encryption, change management, user monitoring, and data backup to ensure operational integrity.
More like this from HKMA
HKMA published 11 documents in the last 30 days. We email you each new one the day it's published.