2022-03-09 | 2022-03145

Added · Updated

Cybersecurity Risk Management for Investment Advisers, Registered Investment Companies, and Business Development Companies

The Securities and Exchange Commission proposes new rules under the Investment Advisers Act and the Investment Company Act requiring registered investment advisers and investment companies to adopt and implement written cybersecurity policies and procedures reasonably designed to address cybersecurity risks. The proposal also introduces a new rule and Form ADV-C to require advisers to report significant cybersecurity incidents affecting the adviser, its funds, or private fund clients to the Commission. Additionally, the document proposes amendments to various disclosure forms, including Form ADV and fund registration statements, to enhance transparency regarding significant cybersecurity risks and incidents, alongside new recordkeeping requirements.

Securities and Exchange Commission logo

US Federal

Securities and Exchange Commission

Click to view full text

More like this from SEC

SEC published 3 documents in the last 30 days. We email you each new one the day it's published.

Share