On August 20th, 2024, the SEC announced that it settled charges against Equiniti Trust Company LLC (formerly American Stock & Trust Company, LLC) due to failing to ensure client securities and funds were protected from theft. Equiniti Trust Company LLC (“Equiniti”) incurred two cyber incidents from 2022 to 2023 that resulted in the loss of more than $6.6 million of client funds.
On June 18th, 2024, the SEC announced that R.R. Donnelley & Sons (RRD) agreed to pay over $2.1 million to settle disclosure and internal control failure charges relating to cybersecurity incidents and alerts in late 2021.
The Department of Labor (DOL) announced last week Principles for Developers and Employers when using AI in the workplace. These Principles, which are a directive from President Biden’s Oct. 30, 2023, Executive Order on the Safe, Secure, and Trustworthy Development and Use of Artificial Intelligence, will “create a roadmap for developers and employers on how to harness AI technologies for their businesses while ensuring workers benefit from new opportunities created by AI and are protected from its potential harms.”
The SEC adopted amendments to Regulation S-P requiring broker-dealers, investment companies, registered investment advisors, and transfer agents to implement and maintain policies and procedures regarding an incident response program that are designed to detect, respond, and recover from unwarranted access or use of client information.