Polymer

Download free DLP for AI whitepaper

Summary

  • The U.S. Securities and Exchange Commission (SEC) hit more than a dozen banks with fines totaling almost $2 billion.
  • The fines are for improper use of messaging apps, collaboration tools and other unauthorized services for communication, without the proper policing. 
  • Banks need to address two issues to avoid future fines: using the right technical controls and tackling cultural issues.

This week, The U.S. Securities and Exchange Commission (SEC)  hit more than a dozen banks with fines totaling almost $2 billion. 

The likes of Bank of America, Barclays, Morgan Stanley and more must pay $125 million each to the SEC for improper use of messaging apps, collaboration tools and other unauthorized services for communication, without the proper policing. 

Why have the banks been fined?

Under investor-protection laws, financial organizations must monitor, record and store employee written communications, keeping a paper trail that can be used for reviewing compliance. But with the proliferation of remote work, the cloud and mobile working, many banks started to pivot to new, instant forms of communication without the proper checks and balances in place. 

Aware that something was going awry, the SEC launched an investigation into several banks last year, over violations relating to  “pervasive off-channel communications,” between staff of varying levels of seniority. Executives, junior investment bankers, equity traders and graduates are all embroiled in this scandal. 

Essentially, the SEC uncovered that employees were purposefully sending communications on unpoliced channels—like WhatsApp, Signal, Slack, Google Workspace and more—to avoid the eyes of  internal compliance teams and regulators. 

By communicating in this way, the banks were able to somewhat forge their record-keeping practices, as tens of thousands of messages weren’t recorded, leaving no trace. 

Worse still, this isn’t a case of employees accidentally using Slack or WhatsApp instead of email. The Commodity Futures Trading Commission (CFTC), which worked with the SEC on the case, noted that this practice was wholly intentional.

In a statement, the body shared: “Another common theme is that the CFTC found senior executives — the very people responsible for keeping a bank’s house in order — who directed employees to use unauthorized communications channels and delete messages. Some executives even lied to the CFTC and SEC.”

The organizations involved

The $1.8 billion fine is spread across 27 firms. So far, the Bank of America, Barclays, Citigroup, Goldman Sachs and Morgan Stanley have proactively admitted wrongdoing and will pay $125 million each. 

Elsewhere, brokerage firms Jefferies LLC and Nomura Securities International will pay $50 million each while Cantor Fitzgerald & Co. will pay $10 million.

The case is a landmark one in the history of financial compliance. Until last summer, the last SEC fine of this sort was way back in 2006, when Morgan Stanley (yep, again!) was fined because it failed to deliver email communications during an investigation into public offerings.

Other than that, JPMorgan hit the headlines last year, after the SEC fined the firm $200 million for using text messages and personal devices to communicate. It’s widely thought that this discovery led to the SEC investigating and cracking down on poor banking communications practices across the US. 

$1.8 billion in fines for Wall Street record keeping failings

Why is using chat platforms and apps such a big deal? 

The finance industry is highly-regulated for a reason. Record-keeping and transparency are crucial to ensuring fair practice, preventing market manipulation and catching any misconduct. By circumventing the typical channels, banks are essentially living in the wild west. Who knows what they could do, what they could change and how they could impact the market!

The chair of the SEC, Gary Gensler, summed up the reasons for the fines very nicely in a statement, sharing that:

“Finance, ultimately, depends on trust. By failing to honor their record-keeping and books-and-records obligations, the market participants we have charged today have failed to maintain that trust, As technology changes, it’s even more important that registrants appropriately conduct their communications about business matters within only official channels, and they must maintain and preserve those communications.”

How can banks maintain compliance and stop this happening again? 

We see two major issues that banks need to address: using the right technical controls and tackling cultural issues. 

Firstly, compliance leaders need to deploy cloud-based data loss prevention (DLP). Polymer DLP, for example, uses artificial intelligence and machine learning to discover and protect FS data as it moves through collaboration applications. 

It extends data protection outside of the corporate network and directly into SaaS apps, giving security teams much needed control and visibility over how data is being used and stored, and who accesses it – no matter where it travels. 

At the same time, there’s a real cultural issue that organizations must address. Banks need to change the mindset of employees, teaching them that it’s not OK to use unofficial channels and apps. This needs to be driven into culture from the top-down. Leaders must set an example and security teams should reinforce correct practices through dynamic, ongoing training. 

Polymer DLP uses in-app nudges to deliver security training to employees in real-time. When an employee attempts to violate a security policy – intentionally or otherwise – the solution blocks the behavior and shares a pop-up explaining why the action is non-compliant.

For the banking institution, Routefusion, for example, we deployed Polymer DLP for Slack and Google Drive. 

The integration has successfully protected the company from both accidental and intentional data leaks. We were able to remove over 97% of all sensitive data elements shared in public chats in real-time while blocking virtually all sensitive files from being shared with unauthorized parties. 

“Polymer just worked out of the box. Installation took a minute. Polymer was able to make our Slack & Google Drive compliant very fast.” – Michael Cramer, Head of Operations at Routefusion. 

Learn more about Polymer for financial services today or request further information via this form. 

Polymer is a human-centric data loss prevention (DLP) platform that holistically reduces the risk of data exposure in your SaaS apps and AI tools. In addition to automatically detecting and remediating violations, Polymer coaches your employees to become better data stewards. Try Polymer for free.

SHARE

Get Polymer blog posts delivered to your inbox.

thor311 tajen bali

thor311 alternatif

situs toto4d

thor311 toto4d

thor311 akses

ceri188

KUPU178

daftar ceri188

cery188

ceri188

KUPU178

KUPU178

slot gacor

kupu 178

kupu178

ceri1888

ceri188

slot online

hoki311

togel online

ceri188

ding dong

ratu311

slot gacor

kupu178

live casino

kupu178

RATU311

mix parlay

ceri188

judi bola online

thor311 slot

RATU311

HOKI311

HOKI311

THOR311

RATU311

RATU311

KUPU178

THOR311

THOR311

ceri188

ratu311

slot online

hoki311

kupu178

togel online

kupu178

slot gacor

ceri188

judi bola online

ceri188

ratu311

kupu178

RATU311

RATU311

live casino roullete

ceri188

slot pg soft

kupu178

KUPU178

KUPU178

THOR311

THOR311

THOR311

THOR311

RATU311

KUPU178

KUPU178

THOR311

THOR311

THOR311

RATU311

thor311 domino qq

thor311 akses

thor dingdong

THOR311

ceri188

ceri188

KUPU178

RATU311

RATU311

kupu178

kupu178

HOKI311

togel

kupu178

mix parlay

ceri188

slot online

kupu178

THOR311

THOR311

KUPU178

KUPU178

kupu178

hoki311

togel online

kupu178

ceri188

ceri188

www.vrcorporate.in

phbalance.vn

togel hongkong

kupu178

slot gacor

kupu178

kupu178

ceri188

kupu178

RATU311

KUPU178

RATU311

RATU311

slot online

kupu178

THOR311

KUPU178

slot mahjong ways

hoki311

slot gacor

ceri188

kupu178

Casino Baccarat Online

kupu178

kupu178

ceri188

toto macau

KUPU178

Slot Gacor

KUPU178

RATU311

Mahjong ways

KUPU178

THOR311

RATU311

RATU311

RATU311

KUPU178

KUPU178

RATU311

RATU311

RATU311

Toto Togel

KUPU178

CERI188

Slot Sweet Bonanza 2500

KUPU178

RATU311

RATU311

KUPU178 X SLOT777

judi bola online

THOR311

KUPU178 SLOT TERPERCAYA

KUPU178 TOGEL

TOTO 4D MACAU

KUPU178

KUPU178

THOR311

HOKI311

KUPU178

RATU311

Slot Mahjong Ways

KUPU178

CERI188

Slot Online Resmi

KUPU178

RATU311 SLOT ONLINE

KUPU178

KUPU178: Link Akses Resmi

KUPU178: Strategi Menang Di Game Live Casino

KUPU178

KUPU178: Minimal 200 Rupiah

THOR311

THOR311

THOR311

THOR311

THOR311

KUPU178

Slot Thailand

CERI188

CERI188

THOR311 RTP

RATU311

RATU311

CERI188

KUPU178 TOTO SLOT

CERI188 TOTO Singapore

THOR311

CERI188

RATU311: Alternatif karnpuracollege

Thor311 Terbaru

THOR311 MAHJONG

RATU311: BONUS SABUNG AYAM

CERI188: Masuk Akun Slot Super Cepat

CERI188

CERI188

THOR311

HOKI311

HOKI311

RATU311

HOKI311

KUPU178

RATU311

RATU311

RATU311

THOR311

CERI188

CERI188

RATU311

RATU311

RATU311

Game Thor311

HOKI311

HOKI311

RATU311

HOKI311

HOKI311

THOR311

RATU311 NONTON BOLA

HOKI311 Link QRIS EWALLET

RATU311

HOKI311 Link Apk Resmi

CERI188

RATU311 judi bola

KUPU178

HOKI311

RATU311

THOR311

HOKI311

KUPU178

KUPU178

KUPU178

RATU311

RATU311

KUPU178

THOR311

KUPU178

RATU311

THOR311