Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking & Finance Review®

Global Banking & Finance Review® - Subscribe to our newsletter

Company

    GBAF Logo
    • About Us
    • Advertising and Sponsorship
    • Profile & Readership
    • Contact Us
    • Latest News
    • Privacy & Cookies Policies
    • Terms of Use
    • Advertising Terms
    • Issue 81
    • Issue 80
    • Issue 79
    • Issue 78
    • Issue 77
    • Issue 76
    • Issue 75
    • Issue 74
    • Issue 73
    • Issue 72
    • Issue 71
    • Issue 70
    • View All
    • About the Awards
    • Awards Timetable
    • Awards Winners
    • Submit Nominations
    • Testimonials
    • Media Room
    • FAQ
    • Asset Management Awards
    • Brand of the Year Awards
    • Business Awards
    • Cash Management Banking Awards
    • Banking Technology Awards
    • CEO Awards
    • Customer Service Awards
    • CSR Awards
    • Deal of the Year Awards
    • Corporate Governance Awards
    • Corporate Banking Awards
    • Digital Transformation Awards
    • Fintech Awards
    • Education & Training Awards
    • ESG & Sustainability Awards
    • ESG Awards
    • Forex Banking Awards
    • Innovation Awards
    • Insurance & Takaful Awards
    • Investment Banking Awards
    • Banking Awards
    • Banking Innovation Awards
    • Digital Banking Awards
    • Finance Awards
    • Investor Relations Awards
    • Leadership Awards
    • Islamic Banking Awards
    • Real Estate Awards
    • Project Finance Awards
    • Process & Product Awards
    • Telecommunication Awards
    • HR & Recruitment Awards
    • Trade Finance Awards
    • The Next 100 Global Awards
    • Wealth Management Awards
    • Travel Awards
    • Years of Excellence Awards
    • Publishing Principles
    • Ownership & Funding
    • Corrections Policy
    • Editorial Code of Ethics
    • Diversity & Inclusion Policy
    • Fact Checking Policy
    • Financial Awards
    • Private Banking Awards
    • Private Banking Innovation Awards
    • Retail Banking Awards
    Original content: Global Banking and Finance Review - https://www.globalbankingandfinance.com

    A global financial intelligence and recognition platform delivering authoritative insights, data-driven analysis, and institutional benchmarking across Banking, Capital Markets, Investment, Technology, and Financial Infrastructure.

    Copyright © 2010-2026 - All Rights Reserved. | Sitemap | Tags

    Editorial & Advertiser disclosure

    Global Banking & Finance Review® is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    1. Home
    2. >Business
    3. >Moving the Needle: New SEC Regulation Drives Cybersecurity Forward
    Business

    Moving the Needle: New Sec Regulation Drives Cybersecurity Forward

    Published by Wanda Rich

    Posted on August 17, 2022

    5 min read

    Last updated: February 4, 2026

    Add as preferred source on Google
    An illustration showcasing the SEC's new cybersecurity regulations aimed at enhancing accountability and transparency in the financial sector. This image emphasizes the importance of board-level oversight in cybersecurity risk management, reflecting the article's focus on the evolving landscape of financial regulations.
    Graphic depicting SEC regulations enhancing cybersecurity transparency in financial services - Global Banking & Finance Review
    Why waste money on news and opinion when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Global Banking & Finance Awards 2026 — Now Open for Entries
    Tags:cybersecuritycompliancefinancial servicesrisk managementcorporate governance
    Global Banking & Finance Awards 2026 — Call for Entries

    By Michael Brown, field CISO for financial services, Fortinet

    Michael Brown, field CISO for financial services, Fortinet

    The U.S. Securities and Exchange Commission (SEC)’s proposed new rules regarding cybersecurity transparency and accountability for all public financial services institutions could have a widespread impact on cybersecurity culture in general. By focusing on board-level cybersecurity oversight and reporting, the SEC aims to bring cybersecurity to the forefront of the financial sector’s investments, discussions and planning. Publicly disclosing executive management’s role in cybersecurity risk assessment and implementation will drive training and policy updates across public entities – starting with the most targeted industry, financial services.

    Cybersecurity transparency at the board level

    For all publicly traded companies, the SEC proposal would require total cybersecurity transparency and accountability from all corporate leadership, including the boards of directors. Businesses would be required to disclose severe cybersecurity incidents on their Form 8-K. Additionally, they would have to outline the company’s cybersecurity risk management policies and procedures, as well as how management contributes to their execution. Any board member’s cybersecurity experience would also be disclosed, along with details of the procedure the company’s board of directors uses to monitor cybersecurity risk.

    This proposal could significantly contribute to the long-needed development of cybersecurity risk and strategy being discussed at the board level. Additionally, it could increase business investment on cybersecurity and fuel demand for board-level cybersecurity expertise. It also will highlight how crucial it is to involve CISOs in these board-level discussions and decisions.

    More detail, faster response

    On March 23, the SEC put forth new potential regulations to enhance and standardize the disclosures made by publicly traded companies that must adhere to the Securities Exchange Act of 1934 reporting requirements. Cybersecurity risk strategy, governance, management and incident reporting are all mentioned in these draft standards. The board of directors would be responsible for managing cybersecurity risk and reporting significant cybersecurity occurrences and disclosing cybersecurity policies and procedures would happen on a regular basis.

    After the proposed SEC regulations take effect, financial institutions would have four business days to disclose any significant cybersecurity incidents they’ve discovered. As part of the disclosure procedure, changes will need to be made to the Form 8-K report, which corporations are required to file with the SEC in order to notify shareholders of major incidents. The new proposal also calls for the disclosure of previously unreported and isolated cybersecurity events that, when combined, have grave repercussions.

    Forced transparency

    The proposal’s section on incident reporting pales in comparison to the new recommendations for risk management, strategy and governance disclosure. With this part of the proposal, the cybersecurity risk management policies and procedures of publicly held companies will be made transparent. Additionally, businesses would be required to report how the board of directors manages cybersecurity risk.

    Companies will also have to be transparent about how executive management assesses cybersecurity risk and implements the company’s policies and procedures. This requirement is comparable to publishing the “report card” of an organization online for public scrutiny and feedback.

    Under the new rules, companies would be required to report the procedures and policies they use to monitor and control the risk of cyberattacks. If there aren’t any, the SEC will take notice, and it might have serious repercussions – like fines and penalties for non-compliance. The inclusion of cybersecurity in financial planning, capital allocation and corporate strategy will also need to be disclosed.

    As if that weren’t enough, under the new rules, any board members who have cybersecurity experience would be required to disclose it in the annual report and in some proxy statements. Both internal and external cybersecurity subject matter experts (SMEs) should be on the board. Specialist knowledge should be provided by external SMEs, while institutional knowledge should be provided by internal SMEs.

    Leadership must take the lead

    People play the largest role in making cybersecurity’s defenses vulnerable. The only way to deal with this fact is to make your team an essential component of the solution rather than the problem. Typically, the board of directors sits at the top of the organizational hierarchy; it is here that the new regulations need to be implemented. This must include providing staff with up-to-date technology and regular training.

    To be clear, day-to-day cybersecurity operations aren’t supposed to be on the board’s plate, but cybersecurity is one of the most significant fiduciary duties that directors and officers now have. The board must ensure adherence to cybersecurity policies and procedures. To improve decision-making, leaders must foster a culture of risk awareness throughout the organization.

    Toward a safer financial future for all

    The financial services industry is vital to modern society. It needs to be strengthened and safeguarded right away, not at some vague point in the future. Consequently, new proposals and laws are emerging. In order to make the digital world safer for both investors and consumers, financial services institutions should match their rules and practices with these evolving developments. While these proposals are still just that – proposals – they signify a sea change is coming.

    About the author:

    Michael Brown, field CISO for financial services at Fortinet, is a global security evangelist and advisor, helping financial services firms implement digital transformation while enhancing security and resilience. He specializes in cybersecurity regulations, ESG impact, SD-WAN, SD-Branch, Zero Trust, low-latency electronic trading security, SASE, and multi-cloud solutions.

    Frequently Asked Questions about Moving the Needle: New SEC Regulation Drives Cybersecurity Forward

    1What is cybersecurity?

    Cybersecurity refers to the practice of protecting systems, networks, and programs from digital attacks. It involves implementing measures to safeguard sensitive data from unauthorized access and damage.

    2
    What is corporate governance?

    Corporate governance is the system of rules, practices, and processes by which a company is directed and controlled. It encompasses the relationships among stakeholders and the goals for which the corporation is governed.

    3What is risk management?

    Risk management is the process of identifying, assessing, and controlling threats to an organization's capital and earnings. It involves strategies to minimize potential risks and their impacts.

    4What is compliance in financial services?

    Compliance in financial services refers to the adherence to laws, regulations, and guidelines that govern financial institutions. It ensures that organizations operate within legal frameworks and maintain ethical standards.

    5What is a cybersecurity incident?

    A cybersecurity incident is any event that compromises the confidentiality, integrity, or availability of an organization's information systems. This includes data breaches, malware attacks, and unauthorized access.

    More from Business

    Explore more articles in the Business category

    Image for The Power of Pricing: How Smart Pricing Strategies Drive Profitability and Growth
    The Power of Pricing: How Smart Pricing Strategies Drive Profitability and Growth
    Image for Why Customer Experience Now Defines Success
    Why Customer Experience Now Defines Success
    Image for The New Cost Playbook: Why Strategic Spending Matters More Than Cutting Costs
    The New Cost Playbook: Why Strategic Spending Matters More Than Cutting Costs
    Image for The Trust Economy: Why Credibility and Transparency Are Driving Business Success
    The Trust Economy: Why Credibility and Transparency Are Driving Business Success
    Image for The Hidden Profit Engine: Why Operational Efficiency Is Redefining Business Performance
    The Hidden Profit Engine: Why Operational Efficiency Is Redefining Business Performance
    Image for Built to Withstand: Why Resilience Is Now the Foundation of Sustainable Business Growth
    Built to Withstand: Why Resilience Is Now the Foundation of Sustainable Business Growth
    Image for The Agility Imperative: How Fast-Moving Businesses Are Outpacing the Competition
    The Agility Imperative: How Fast-Moving Businesses Are Outpacing the Competition
    Image for From Instinct to Insight: The Shift to Data
    From Instinct to Insight: The Shift to Data
    Image for Growth Without Chaos: How Businesses Can Scale Efficiently and Sustainably
    Growth Without Chaos: How Businesses Can Scale Efficiently and Sustainably
    Image for From Spreadsheets to AI: The Future of Cash Flow Forecasting for SMEs
    From Spreadsheets to Ai: The Future of Cash Flow Forecasting for SMEs
    Image for Apply Now: Best Leadership Development Program 2026
    Apply Now: Best Leadership Development Program 2026
    Image for The Role of Education in Building Retirement Confidence
    The Role of Education in Building Retirement Confidence
    View All Business Posts
    Previous Business PostDigitising Trade Whilst Standards Are Agreed
    Next Business PostHow to Survive an Economic Downturn: A Beauty Industry Veteran’s Hard-Earned Tips