Bringing you live news and features since 2013
Bringing you news, views and analysis since 2013
Michael Corcione, Cordium

27577

Most financial services firms not prepared for GDPR, says survey

RELATED TOPICS​

With only 30 days until implementation, more than 50 per cent of investment firms globally are unlikely to be ready for the European Union’s new General Data Protection Regulation (GDPR) on 25 May 2018.

That’s according to a global industry survey of over 250 financial firms carried out by Cordium, a leading provider of governance, risk and compliance services, along with AmberGate, a data protection and security compliance specialist.
 
Designed to benchmark investment management firms’ readiness for GDPR, the survey revealed a lack of preparedness in advance of the regulation’s implementation date. With time running out, only 2 per cent of surveyed firms had finished putting their GDPR policies and procedures in place; 59 per cent of firms said they were unprepared to comply with the required 72-hour window to report a personal breach to regulators; and 64 per cent were unprepared to respond to an exercise of data subject rights.
 
Michael Corcione (pictured), Managing Director, Cybersecurity and Data Protection Consulting Services at Cordium, says: “Companies that have not yet started their GDPR program – or those still at the early stages – expose themselves to significant compliance and reputational risk. Lack of readiness is due to a failure by firms to understand their exposure to the regulation, as well as MiFID II’s earlier deadline, leaving GDPR to fall down the priority list. With just a four-week window firms should be practicing these procedures, not defining them.”
 
Robert Baugh, Founder and CEO, AmberGate, says: “The lack of GDPR preparedness in the industry is concerning, particularly given the risk of regulatory action and the potential impact to a firm’s reputation. Many firms will now need to divert significant resource and time to the project – there is clearly still much to do across most organisations. Firms will face growing pressure from an internal governance perspective, from investors, and from regulators likely to take an increasingly firm stance on the issue.”
 
The European Union’s GDPR comes into effect next month and introduces a demanding set of data privacy and security requirements on firms, with potential global reach. GDPR greatly extends EU data protection law’s territorial reach, not only applying directly to firms based in the EU but also, for example, to those offering services to or monitoring the data of individuals in the EU, irrespective of where the firm is located.

Latest News

Designed to meet the growing needs of investors seeking to combine financial returns with impact..
MSCI has launched MSCI AI Portfolio Insights, writing that it combines generative artificial intelligence “GenAI”..
The Capgemini Research Institute’s World Wealth Report 2024, published today, reveals the number of high-net-worth..

Related Articles

graph
The exodus from hedge funds continues with investors questioning unswayed by relatively strong performance from the alternative asset class...
The exodus from hedge funds continues with investors questioning unswayed by relatively strong performance from the alternative asset class...
Waves
A joint statement from BNP Paribas Asset Management, Federated Hermes Limited, Mirova, Robeco and Storebrand Asset Management has been published, entitled The urgent need for better ocean-related data to make informed investment decisions...
A joint statement from BNP Paribas Asset Management, Federated Hermes Limited, Mirova, Robeco and Storebrand Asset Management has been published,..
Frozen soap bubble
From the end of this month, the UK’s Sustainability Disclosure Requirements (SDR) regime comes into force which the Financial Conduct Authority says has a simple aim: “Financial products that are marketed as sustainable should do as they claim and have the evidence to back it up.”..
From the end of this month, the UK’s Sustainability Disclosure Requirements (SDR) regime comes into force which the Financial Conduct..
Global ESG Investing
On May 15 Florida’s Republican Governor Ron DeSantis signed legislation that furthers his ongoing campaign to oppose the role of climate change and ESG factors in state policymaking...
On May 15 Florida’s Republican Governor Ron DeSantis signed legislation that furthers his ongoing campaign to oppose the role of..
Subscribe to the Institutional Asset Manager newsletter

Subscribe for access to our weekly newsletter, newsletter archive, updates on the site and exclusive email content.

Marketing by