10.09.2014

Asset Managers Boost Cyber Security

10.09.2014
Terry Flanagan

The U.S. Securities and Exchange Commission means business when it talks about requiring asset managers to ring-fence their companies against cyber security threats, according to Ryan Bateman, head of technology at Virginia-based asset manager Sands Capital Management.

“Cyber Security is at the start of every client due-diligence meeting that I’ve been doing over the past six months,” Bateman said earlier this week at the Linedata Exchange. “Since the SEC’s notification went out, it’s become important from everyone’s perspective. When you’re talking to your executive team, talking to the board, it’s a reputational risk problem.”

Following a risk alert issued on April 15, the SEC began conducting examinations of more than 50 registered broker-dealers and registered investment advisers, focusing on areas related to cyber security. The SEC also published a document outlining best practices a hedge fund must have from the standpoint of cyber security.

The examinations focus on each entity’s cyber security governance, identification and assessment of cyber security risks, protection of networks and information, risks associated with remote customer access and funds transfer requests, risks associated with vendors and other third parties, detection of unauthorized activity, and experiences with certain cyber security threats.

Bateman noted the harm that can be done to a business and the number of customers it might lose for something caused by a third-party vendor as was the case with Target. “From a reputational risk standpoint you have to invest extremely heavily in security,” said Bateman. “We have selected a third-party vendor as our chief risk officer, chief cyber-security officer that manages our systems. We have layers and layers of technology. We started investing at Sands Capital several years ago, well before it became a big topic of conversation.”

Hedge fund cyber security is a focus area, especially given recently renewed vigor from firms to beef up security in advance of the anticipated release of a Written Information Security Policy (WISP) for hedge funds based on the SEC’s Cyber-Security Risk Alert questionnaire distributed in April. This interest from firms to boost security in advance of industry guidelines represents a new level of concern for and protection from intrusion in the financial services space.

“As many firms are aware of cyber security, but do not take action or the necessary steps to protect their data, firms do not obtain updated software systems, have inadequate password conventions and firewalls, and do not know how to safely transmit confidential information,” said Joe Holman, CEO of Orangefield Columbus, a global hedge fund administrator. “With the right security and software, leakage of information and questioning the integrity of a fund can be prevented.”

Featured image via bluebay2014/Dollar Photo Club

A recent Markets Media article highlights how @tZERO is resetting its vision - focusing on partnerships, regulated infrastructure, and global scale to make tokenized capital markets a reality.

Under CEO @Alan_Konevsky, the company is leveraging regulatory momentum to enable…

Want to know who calls the shots on trading tech? We partnered with @WeAreAdaptive to interview capital markets professionals globally to uncover key trends and evolving patterns in technology deployment. Reach the report here:

Load More

Related articles

  1. Annual industry survey has chronicled a rapid evolution in electronic trading.

  2. BNP Paribas’ Securities Services business is the transfer agent.

  3. This supports the Monetary Authority of Singapore's equity market development programme.

  4. Kinexys Fund Flow addresses challenges of siloed data systems & manual reconciliations.

  5. Nearly all, 87%, of U.S ETF issuers tell Cerulli they are developing transparent active ETFs.

We're Enhancing Your Experience with Smart Technology

We've updated our Terms & Conditions and Privacy Policy to introduce AI tools that will personalize your content, improve our market analysis, and deliver more relevant insights.These changes take effect on Aug 25, 2025.
Your data remains protected—we're simply using smart technology to serve you better. [Review Full Terms] | [Review Privacy Policy] Please review our updated Terms & Conditions and Privacy Policy carefully. By continuing to use our services after Aug 25, 2025, you agree to these

Close the CTA