03.08.2018

OPINION: SEC Flexes Reg SCI Muscle

03.08.2018

Ever since the U.S. Securities and Exchange Commission adopted Regulation Systems Compliance and Integrity in November 2014, the industry has waited for the second shoe to fall regarding enforcement.

The second shoe dropped earlier this week squarely on the New York Stock Exchange when it gained the dubious honor of the being the first self-regulatory organization to be charged with violation of Reg SCI.

The $14 million fine levied by the US Securities and Exchange Commission is not just for breaching business continuity and disaster recovery portions of Reg SCI. The charge comes as part of five separate investigations by the regulator.

The primary charges relate to instances where the SRO allegedly played fast and loose with internal processes for which NYSE, NYSE Arca, and NYSE American did not have rules in place.

The SEC cited instances where the exchanges erroneously implemented a market-wide regulatory halt, misrepresented stock prices as automated despite extensive systems issues ahead of a total shut down of two exchanges, and applied price collars without having a rule in effect to permit them.

The reason the SEC decided on the $14 million fine was due to the NYSE had previously settled for $4.5 million for similar rule violations in 2014.

If the SEC were a prosecutor in a criminal case, the Regulation SCI violations likely would have been included under “lesser and included charges.”

Their inclusion, however, shows that the SEC is taking infrastructure integrity exceedingly seriously. It also sends a signal to other regulators that bringing charges over non-compliance with infrastructure-related regulations will not be an exception but the rule.

The timing of the SEC announcement is also interesting. It came five days after the New York State Department of Financial Services’ 23 NYCRR 500 Cybersecuirty Requirements for Financial Services Companies reached a major milestone.

As of March 1, the covered entities are mandated to have a chief information security officer in place. The CISO also had to have submitted a written report to the firm’s board or governing body regarding the firm’s cybersecurity program as well as implemented monitoring and testing of the program’s effectiveness, established efficient cybersecurity controls, and provide cybersecurity-awareness training.

If firms fall behind in their efforts to meet these mandates and future mandates from state regulators, they should expect state financial regulators to enforce their regulations as firmly as the SEC does.

Pension funds, sovereign wealth funds, endowments and other institutional asset owners are sitting on vast troves of data -- but extracting value from that data is more challenging than ever.

#AssetOwners #DataQuality

Technology costs in asset management have grown disproportionately, but McKinsey research finds the increased spending hasn’t consistently translated into higher productivity.
#AI #Fiance

We're in the FINAL WEEK for the European Women in Finance Awards nominations – don't miss your chance to spotlight the incredible women driving change in finance!
#WomenInFinance #FinanceAwards #FinanceCommunity #EuropeanFinance @WomeninFinanceM

ICYMI: @marketsmedia sat down with EDXM CEO Tony Acuña-Rohter to discuss the launch of EDXM International’s perpetual futures platform in Singapore and what it means for institutional crypto trading.
Read the full interview: https://bit.ly/45xRUWh

Load More

Related articles

  1. SIFMA operations conference panel assesses the impact of technological advances and market volatility.

  2. Firms that optimise their operations can better focus on their core competencies.

  3. Firms should ensure a robust operational risk approach in tandem with resilience, ITRS Group says.

  4. Contributed Content

    What's Treasury Worth?

    COVID-19 has boosted demand for fundamental change in treasury operations, Hazeltree's Sameer Shalaby writes.

  5. The alliance with Coremont will cover front, middle and back office operations.

We're Enhancing Your Experience with Smart Technology

We've updated our Terms & Conditions and Privacy Policy to introduce AI tools that will personalize your content, improve our market analysis, and deliver more relevant insights.These changes take effect on Aug 25, 2025.
Your data remains protected—we're simply using smart technology to serve you better. [Review Full Terms] | [Review Privacy Policy] By continuing to use our services after Aug 25, 2025, you agree to these updates.

Close the CTA