SEC Cybersecurity Guidance: Incident Response

When firms think about cybersecurity, they’re tempted to focus on the tech.  Hopefully, you're already having internal conversations about which tools you need to fight phishing or to keep your mobile devices safe. One area where we've seen a lot of firms struggle, though, is in figuring out what to do when something BAD happens. [...]

SEC Cybersecurity Guidance: Data Loss Prevention

As businesses are digitally transformed, our exposure to risk is changing. In the financial industry, the stakes are much higher. The SEC Cybersecurity Guidance helps registered investment advisors respond to these threats. It also makes sure that they have a plan in place to respond to them. For example, one such threat is the loss [...]

SEC Cybersecurity Guidance: Phishing

As our work moves online and becomes more digital, our risks are changing. In recognition of this fact, registered investment advisors must take cybersecurity seriously. The SEC cybersecurity guidance lays out clear directions for taking cybersecurity risks seriously. And one of the biggest threats to your firm today is phishing. The SEC Cybersecurity Guidance seems [...]

Are Chromebooks HIPAA compliant?

If you're a medical practice, you're probably tempted to give Chromebooks a try.  They're cheaper than a traditional Windows or Mac computer, and they're a lot easier and cheaper to maintain. But are Chromebooks appropriate for a medical company?  Can they be used to handle medical data?  Are Chromebooks HIPAA compliant? We think they [...]

By |2019-04-16T18:57:58+00:00February 28th, 2019|Computer Cyber Security, HIPAA|0 Comments

SEC Cybersecurity Guidance: Wire Fraud

Wire fraud is a huge problem for Registered Investment Advisors. Every day, criminals trick firms like yours into wiring funds out of client OR firm accounts. What is the SEC Cybersecurity Guidance on wire fraud? And what are the best practices to stop wire fraud in firms today? It’s critical that your staff identify [...]

SEC Cybersecurity Guidance: Mobile Device Management

Protecting Your Business’ Most Sensitive Mobile Data Gone are the days of the rotary phone.  Data is immensely portable.  As we — individuals, consumers, corporate employees, investment advisors and financial investors — continue to rely on our mobile devices for everything, the level and amount of sensitive data that is stored on our mobile devices [...]

SEC Cybersecurity Guidance: Business Continuity Planning (Pt. 2)

Welcome back to SEC Cybersecurity Guidance: Business Continuity Planning.  The first steps (found here in Part 1) are: List your Specific Needs, and Discuss and Document... and here, in Part 2, we talk, and plan, and test. Disclaimer: we are STILL not lawyers.  We are cybersecurity practitioners who work with a lot of registered [...]

SEC Cybersecurity Guidance: Business Continuity Planning (Pt.1)

If you’ve come to this site, you’re probably doing some research about SEC Cybersecurity Guidance. As part of the OCIE Cybersecurity Initiative, #6 in the SEC cybersecurity guidance clearly states that business continuity planning is a priority. Here’s what the SEC Cybersecurity Guidance says: “Please provide a copy of the Firm’s written business continuity [...]

Do You Need Cybersecurity Insurance?

It's a good idea... We have a lot of conversations with our clients about cybersecurity insurance.  Adelia Risk doesn't sell cybersecurity insurance. Instead, we provide a holistic cybersecurity service to small, high value, heavily regulated firms. As part of providing our service, cybersecurity insurance is a common topic. The single biggest misconception that we see? [...]

How to Make Gmail HIPAA Compliant

Google’s email, calendar, and productivity tools (recently renamed to “G Suite”) are absolutely fantastic.  They’re easy to use and very affordable. G Suite is also highly secure, but there are very specific things that you need to do to make G Suite / Gmail HIPAA-compliant.  Here are some big ones... Disclaimer: we are not lawyers. [...]

By |2019-02-15T19:28:06+00:00December 20th, 2018|Cloud Cyber Security, HIPAA|1 Comment