Hong Kong regulator outlines new cyber security requirements for online trading firms

Maria Nikolova

The measures proposed include two-factor authentication for clients, as well as stringent password policies, after study shows a steep rise in cyber security incidents.

Cyber security is one of the issues on the agenda of financial market regulators, with the latest example provided by the Hong Kong Securities and Futures Commission (SFC), which has earlier today published a Consultation Paper on enhanced cyber security requirements for Internet trading brokers. The proposed requirements concern securities dealers, futures dealers and/or leveraged foreign exchange traders, and seek to reduce hacking risks associated with Internet trading.

The baseline requirements, which include 20 cyber security control practices, concern three main areas:

  • Protection of clients’ Internet trading accounts;
  • Infrastructure security management;
  • Cyber security management and supervision.

For instance, brokers have to implement stringent password policies and session timeout controls in their internet trading systems. Also, they will have to introduce two-factor authentication for their clients, as well as rigid surveillance mechanisms to prevent unauthorized access to accounts.

Since hacking of Internet trading accounts, corporate websites and trading systems is the most serious cyber security risk faced by licensed corporations in Hong Kong, the SFC conducted a thematic review of the resilience to hacking risks of brokers engaged in Internet trading with the assistance of an external cyber security expert in late 2016. The review helped the regulator identify basic cyber security controls.

The consultation paper proposes to include these controls into guidelines to be issued under the Securities and Futures Ordinance (SFO).

Comments on the proposals are expected no later than July 7, 2017.

The proposals are released as data shows that the number of cyber security incidents handled by the Hong Kong Computer Emergency Response Team Coordination Centre of the Hong Kong Productivity Council reached 6,058 in 2016, up 23% from 2015. For the 18 months ended March 31, 2017, 12 licensed corporations (LCs) reported 27 cyber security incidents, with the bulk of them involving hackers getting access to customers’ Internet-based trading accounts with securities brokers. This unauthorized access has resulted in unauthorised trades totalling more than $110 million.

Read this next

blockdag

BlockDAG Attracts $18.1M In Presale, Drawing Investors From Dogecoin And UNUS SED LEO for Potential 30,000x ROI

As the markets for Dogecoin and UNUS SED LEO exhibit volatility, a significant number of investors are redirecting their focus towards BlockDAG during its Batch 9 presale, which has remarkably gathered $18.1 million.

Digital Assets

Coinbase launches perpetual futures trading for Dogwifhat memecoin

Coinbase International Exchange (CIE) will introduce perpetual futures trading for Solana-based memecoin dogwifhat ($WIF), starting April 25. These open-ended futures contracts can be traded using the USDC stablecoin.

Digital Assets

Kraken acquires TradeStation’s cryptocurrency business

Kraken, the second-largest U.S.-based cryptocurrency exchange, has acquired the cryptocurrency arm of online brokerage TradeStation.

Retail FX

The Funded Trader is back? Traders report account closures

Prop trading firm The Funded Trader has updated its website with a few banners, nearly three weeks after it ceased all operations, with claims for a relaunch in the near future. However, there was no official statement on the relaunch on its website, Discord channel, or social media accounts yet.

Executive Moves

NAGA lures former Tickmill compliance exec Loukia Matsia

NAGA Group, a provider of brokerage services, cryptocurrency platform NAGAX and neo-banking app NAGA Pay, appointed Loukia Matsia as their new Head of Compliance and Anti-Money Laundering (AML).

blockdag

Explore 2024’s Top Cryptocurrencies: BlockDAG Leads With 30,000x ROI Potential, Among Surge Predictions For Bitcoin And Ethereum

Navigating the vast ocean of cryptocurrencies might feel overwhelming for many investors, whether seasoned or newbies.

Tech and Fundamental, Technical Analysis

EURUSD Technical Analysis Report 18 April, 2024

EURUSD currency pair can be expected to fall further toward the next support level 1.0600 (which reversed the price earlier this month).

Digital Assets

Binance ordered to remove Changpeng Zhao to get Dubai license

Binance, the world’s largest cryptocurrency exchange, has obtained a Virtual Asset Service Provider (VASP) license in Dubai.

Crypto Insider

Evolution and current state of global crypto adoption

Every four years, the crypto world gets hyped for the Bitcoin halving. Past halvings, like the one of May 2020, saw a massive increase in BTC transactions, which was driven by growing adoption and community involvement.

<