SEC proposes new cybersecurity risk management rules for RIAs and funds

Home  /  Chicago Securities Law Blog  /  SEC proposes new cybersecurity risk management rules for RIAs and funds
SEC proposes new cybersecurity risk management rules for RIAs and funds
On Behalf of Hyman Cotter PC
  |   Feb 21, 2022  |  Securities and Compliance

The Securities and Exchange Commission is proposing new rules and amendments aimed at protecting the financial industry from cybersecurity threats.

In a news release issued last week, the SEC said the proposed rules would require registered investment advisers and funds to formally implement written policies and procedures to address cybersecurity risks These policies would have to be reviewed and evaluated at least annually.

Advisers would also be required to report significant cybersecurity incidents affecting the adviser, its fund, or private fund clients These incidents would be reported to the SEC on a new confidential form, Form ADV-C.

The commission said dealing with cyber risk is part of its mission of protecting investors and maintaining orderly markets. “The proposed rules and amendments are designed to enhance cybersecurity preparedness and could improve investor confidence in the resiliency of advisers and funds against cybersecurity threats and attacks,” said SEC Chair Gary Gensler.

The proposed rules, which fall under the Investment Advisers Act of 1940 and the Investment Company Act of 1940, would also require advisers and funds to publicly disclose cybersecurity risks and significant cybersecurity incidents that occurred in the last two fiscal years in their brochures and registration statements.

In addition, advisers and funds would be given new recordkeeping requirements to make cybersecurity information more widely available.

There will be a public comment period of 60 days after the proposal is published on the SEC’s website and in the Federal Register.

RIAs are strictly regulated not only by the SEC, but also by state securities regulators. The attorneys at Hyman Cotter PC have helped RIA clients better understand the constantly shifting regulatory landscape impacting RIA regulatory compliance. For more information about the services we provide to RIAs, please contact Hyman Cotter PC at 312-291-4600 or through our online contact form.

Contact Our Firm

While this website provides general information, it does not constitute legal advice. The best way to get guidance on your specific legal issue is to contact a lawyer. To schedule a meeting with an attorney, please call the firm or complete the intake form below.

Fields marked with an * are required

"*" indicates required fields

This field is for validation purposes and should be left unchanged.
*

Chicago Office

77 W Wacker Drive
Suite 4500
Chicago, IL 60601
Chicago Office

Contact Numbers

© 2026 Hyman Cotter PC • All Rights Reserved. Disclaimer | Site Map | Privacy Policy.
*images Are Obtained Under License From Canva and Other Third-party Stock Image Providers, With Attribution Included Where Required. Digital Marketing By: rizeup media logo