X
  • About
  • Advertise
  • Contact
Get the latest news! Subscribe to the ifa bulletin
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
No Results
View All Results
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
No Results
View All Results
No Results
View All Results
Home News

Industry suffers from ‘lack of proper education’ around cyber security

Financial advice practices should consider outsourcing their cyber security risks, a local CEO has advocated.

by Neil Griffiths
August 29, 2022
in News
Reading Time: 3 mins read
Share on FacebookShare on Twitter

Virtual Business Partners head, David Carney, has called for better management of cyber security risks following May’s landmark ruling against RI Advice which saw the Federal Court rule that the advice group failed to have adequate risk management systems to manage its cyber security risks.

According to ASIC,  a “significant number” of cyber incidents occurred at authorised representatives of RI Advice between June 2014 and May 2020, including an incident where “an unknown malicious agent obtained, through a brute force attack, unauthorised access to an authorised representative’s file server from December 2017 to April 2018 before being detected, resulting in the potential compromise of confidential and sensitive personal information of several thousand clients and other persons”.

X

Mr Carney said the ruling has motivated licensees and insurers to “critically” examine their standards in a new opinion piece published on ifa.

“Whilst all advice businesses have professional indemnity (PI), very few have coverage specifically for cyber security. This is due to a lack of proper education by the industry around the issue. In addition, cyber security is currently not a requirement for corporate authorised representatives or PI insurers,” Mr Carney wrote.

“This is expected to change. If cyber security protection is not mandated, it should be considered best practice given the rate of attempted cyber attacks globally as infrastructure moves to digital storage via remote access.”

Mr Carney said practices should consider outsourcing as while most risk compliance managers understand what is required to manage threats, corporate governance frameworks offer “little insight” in how to execute a proper strategy.

He suggested this is because cyber security approaches take on by businesses can vary.

“As more practices shift to self-licensing, there is also a greater need for businesses to understand issues of governance, cyber security and sustainability as they are no longer outsourcing these competencies to a licensee,” Mr Carney wrote.

“Advice practices have no excuse to not implement cyber security into their governance framework. Not only will it provide the principal (and the team) peace of mind, but it will also give them assurance that they won’t be prone to data breaches and become the next whose licensee finds themselves on the wrong side of ASIC.”

Read the full opinion piece here.

Late last month, ASIC warned that failure to address cyber security could see company directors fall short of their regulatory obligations.

Commissioner Danielle Press said that the ruling against RI Advice should serve as a timely reminder for company directors about cyber security risk oversight and disclosure obligations.

“ASIC expects directors to ensure their organisation’s risk management framework adequately addresses cyber security risk, and that controls are implemented to protect key assets and enhance cyber resilience. Failing to do so could cause you to fall foul of your regulatory obligations,” Mr Press said.

Tags: Education

Related Posts

How mapping client emotions can transform apprehension into trust

by Keith Ford
November 11, 2025
1

Clients undergo a range of emotional responses throughout the advice process and, according to new financial adviser-led research, advisers’ ability...

Iress launches business efficiency program for FY26

by Olivia Grace-Curran
November 11, 2025
0

The financial services software firm said its renewed focus on core platforms, technology investment and client engagement reflects a leaner,...

Regulator updates guidance for exchange-traded products

by Shy-ann Arkinstall
November 11, 2025
0

ASIC has released a new regulatory guide for exchange-traded products that consolidates previous guidance as the ETF market undergoes significant...

Comments 1

  1. Anonymous says:
    3 years ago

    It’s a bit rich for ASIC to be lecturing everyone around cyber security when they themselves have experienced a significant hack which exposed sensitive information. Based on Danielle Press’s attitude who exactly at ASIC faced the consequences of their failings? Or was it as she likes to say “above her pay grade”.

    Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

VIEW ALL
Promoted Content

Private Credit in Transition: Governance, Growth, and the Road Ahead

Private credit is reshaping commercial real estate finance. Success now depends on collaboration, discipline, and strong governance across the market.

by Zagga
October 29, 2025
Promoted Content

Boring can be brilliant: why steady investing builds lasting wealth

Excitement sells stories, not stability. For long-term wealth, consistency and compounding matter most — proving that sometimes boring is the...

by Zagga
September 30, 2025
Promoted Content

Helping clients build wealth? Boring often works best.

Excitement drives headlines, but steady returns build wealth. Real estate private credit delivers predictable performance, even through volatility.

by Zagga
September 26, 2025
Promoted Content

Navigating Cardano Staking Rewards and Investment Risks for Australian Investors

Australian investors increasingly view Cardano (ADA) as a compelling cryptocurrency investment opportunity, particularly through staking mechanisms that generate passive income....

by Underfive
September 4, 2025

Join our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

Poll

This poll has closed

Do you have clients that would be impacted by the proposed Division 296 $3 million super tax?
Vote
www.ifa.com.au is a digital platform that offers daily online news, analysis, reports, and business strategy content that is specifically designed to address the issues and industry developments that are most relevant to the evolving financial planning industry in Australia. The platform is dedicated to serving advisers and is created with their needs and interests as the primary focus.

Subscribe to our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

About IFA

  • About
  • Advertise
  • Contact
  • Terms & Conditions
  • Privacy Collection Notice
  • Privacy Policy

Popular Topics

  • News
  • Risk
  • Opinion
  • Podcast
  • Promoted Content
  • Video
  • Profiles
  • Events

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited

No Results
View All Results
NEWSLETTER
  • News
  • Opinion
  • Podcast
  • Risk
  • Events
  • Video
  • Promoted Content
  • Webcasts
  • About
  • Advertise
  • Contact Us

© 2025 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited