Insight Search

Sort by:
  • Podcast

    June 6, 2024
    In September 2023, California legislators passed the first mandatory climate disclosure bills in the United States. Governor Gavin Newsom signed the two climate-impact reporting measures into law on October 7, 2023. The measures are expected to have far-reaching effects not only for the U.S.-based businesses that are required to comply but also for their trading partners around the world.In this…
  • Whitepaper

    March 31, 2021
    New presidential administrations often establish new demands and priorities with regard to addressing and enforcing current regulations based on their own priorities. The latest change in the White House, with the Biden administration assuming control, has been no exception. Whereas the Trump administration scaled back enforcement of financial regulations in a number of areas, including but not…
  • Whitepaper

    October 11, 2017
    ​Ihre Herausforderung Technisch und organisatorisch ist Ihre IT auf dem neuesten Stand. Hackerangriffe über das Netzwerk wehren Sie erfolgreich ab. Allerdings erhalten Ihre Mitarbeiter immer öfter gefälschte E-Mails und dubiose Anrufe mit Zahlungsaufforderungen oder Mailanhänge sollen geöffnet und installiert werden.
  • Whitepaper

    October 5, 2020
    An emerging trend among private equity firms is their growing attention to the remediation, monitoring and reporting of cybersecurity capabilities of the companies in their portfolios. Historically, they have not fully appreciated the varying degrees of cybersecurity risk relative to a company’s specific industry. And understandably, the emphasis on investing in promising businesses and improving…
  • Whitepaper

    June 24, 2022
    On April 29, 2022, the PCI Security Standards Council (PCI SSC) released new versions of the PCI DSS Self-Assessment Questionnaires (SAQs) ahead of the anticipated June 2022 release timeline. After the release of the new version of PCI DSS 4.0 a month prior, the new versions of the SAQs have been updated to reflect changes in the standard, as well as to adjust requirements applicable for…
  • Whitepaper

    July 12, 2021
    In spite of over 20 years of experience as an industry, Identity & Access Management (IAM) programmes continue to struggle — and with good reason. There is a lot that can go wrong with an IAM programme. Lack of funding, treating IAM like a project and not a programme, not having business buy-in, and trying to overly customise packaged software are all examples of significant challenges that…
  • Whitepaper

    July 13, 2021
    Identity management doesn’t happen overnight; there’s no “Easy” button to press, or magic snap-of-the-fingers instant fix. In fact, identity management has transformed into something far more complex than password authentication and simple security measures. It’s important to understand that jumping into a new technology instantaneously isn’t necessarily the right first step to ensuring a…
  • Newsletter

    May 10, 2022
    A Decade of Testing and ResilienceOver the past 10 years, the Securities Industry and Financial Markets Association (SIFMA) has coordinated a series of industrywide resilience exercises known as Quantum Dawn. These exercises provide a forum for financial firms, regulatory bodies, central banks, law enforcement, government agencies, trade associations and information-sharing organisations to…
  • Infographic

    June 3, 2024
    Quantum Dawn VII is the latest iteration of SIFMA's biannual cybersecurity exercise focused on the outage of a critical third-party service provider (CTP). The simulation and concluding survey found many financial institutions are already experienced with the loss of CTPs, with protocols established for managing the outage. With such outages increasingly commonplace and regulators holding firms…
  • Whitepaper

    May 9, 2024
    The latest iteration of SIFMA’s biannual cybersecurity exercise focused on the outage of a critical third-party service provider. The simulation and concluding survey found many financial institutions are already experienced with the loss of a critical third-party, with protocols established for managing the outage. In this after-action report, we look at the lessons learned from the Quantum Dawn…