Search
Close this search box.

We are creating some awesome events for you. Kindly bear with us.

New Zealand Enhancing Financial Sector Cyber Resilience

Getting your Trinity Audio player ready...

Recently, the Financial Markets Authority (FMA) published a consultation document outlining its proposal to implement a novel standard condition for specific holders of financial market licenses. This proposed license condition will primarily ensure business continuity and robust technology systems within the licensed entities.

Through this initiative, the FMA aims to enhance the cyber resilience and effectiveness of financial market participants in New Zealand. By emphasising business continuity and technology systems, the FMA intends to address potential risks and vulnerabilities in the financial sector, safeguarding investors’ interests and maintaining the market’s stability.

This consultation document serves as an opportunity for stakeholders to provide feedback and contribute to shaping the future regulatory framework that ensures the integrity and reliability of financial markets in New Zealand. The FMA’s proactive approach in seeking input from industry participants and stakeholders reflects its commitment to maintaining a well-regulated and secure economic environment that fosters trust and confidence among market participants and the public.

Recognising the significance of the resilience of businesses, the FMA has prioritised establishing measures to ensure that market service providers are well-prepared to tackle emerging challenges related to business continuity and cyber risks.

By actively addressing these risks, the FMA aims to support the smooth functioning of financial markets, fostering an environment of trust and confidence for consumers. Individuals and investors must have assurance that their information and investments are appropriately safeguarded.

This consultation document is specifically relevant to several types of market service licenses. It encompasses managers responsible for overseeing registered schemes, except restricted procedures. Additionally, providers offering discretionary investment management services fall within the scope of this consultation. Furthermore, derivatives issuers are included in the considerations outlined in the document.

Lastly, specified intermediary services, encompassing peer-to-peer lending and crowdfunding service providers, are also subject to consultation. The Financial Markets Authority seeks to gather input and insights from stakeholders in these specific areas to ensure the development of appropriate standards and regulations tailored to each license category.

The proposed new standard condition entails that licensees must possess and uphold a business continuity plan that suits the size and extent of their service. This plan aims to ensure the operational resilience of their critical technology systems. If a substantial disruption impacts the service provision, licensees must promptly notify the FMA, adhering to a maximum timeframe of 72 hours following the occurrence.

The 72 hours notification period considers the heavy reliance on technology by the relevant license holders and the potential risks posed to consumers and investors in the event of disruptions. It also acknowledges the critical role played by technology in maintaining robust and efficient financial markets.

By setting this timeframe, the proposal underscores the importance of timely communication and response to mitigate the adverse effects of disruptions and safeguard stakeholders’ interests.

In 2020, the FMA implemented a standard condition for Financial Advice Providers, focusing on business continuity planning (BCP) and technology resilience. This requirement is also incorporated into the Conduct of Financial Institutions regime, effective from 2025.

The FMA has highlighted deficiencies in cyber resilience and operational systems within licensed entities, including insufficient investment in technology and using unsupported or outdated systems. These observations from the FMA emphasise the need for enhanced cyber resilience and technological capabilities among licensed entities to ensure the robustness and effectiveness of their operations.

Paul Gregory, FMA Executive Director of Response and Enforcement, expressed that the financial services sector faces escalating technological risks. It underscores licensees’ importance in adhering to minimum business continuity and technology standards.

This proposal signifies the FMA’s ongoing efforts to implement this standard condition across various license types, reflecting the significance of ensuring that license holders consistently deliver their market services. By prioritising operational resilience, consumers and investors can have confidence in accessing services and products per their preferences and requirements.

PARTNER

Qlik’s vision is a data-literate world, where everyone can use data and analytics to improve decision-making and solve their most challenging problems. A private company, Qlik offers real-time data integration and analytics solutions, powered by Qlik Cloud, to close the gaps between data, insights and action. By transforming data into Active Intelligence, businesses can drive better decisions, improve revenue and profitability, and optimize customer relationships. Qlik serves more than 38,000 active customers in over 100 countries.

PARTNER

CTC Global Singapore, a premier end-to-end IT solutions provider, is a fully owned subsidiary of ITOCHU Techno-Solutions Corporation (CTC) and ITOCHU Corporation.

Since 1972, CTC has established itself as one of the country’s top IT solutions providers. With 50 years of experience, headed by an experienced management team and staffed by over 200 qualified IT professionals, we support organizations with integrated IT solutions expertise in Autonomous IT, Cyber Security, Digital Transformation, Enterprise Cloud Infrastructure, Workplace Modernization and Professional Services.

Well-known for our strengths in system integration and consultation, CTC Global proves to be the preferred IT outsourcing destination for organizations all over Singapore today.

PARTNER

Planview has one mission: to build the future of connected work. Our solutions enable organizations to connect the business from ideas to impact, empowering companies to accelerate the achievement of what matters most. Planview’s full spectrum of Portfolio Management and Work Management solutions creates an organizational focus on the strategic outcomes that matter and empowers teams to deliver their best work, no matter how they work. The comprehensive Planview platform and enterprise success model enables customers to deliver innovative, competitive products, services, and customer experiences. Headquartered in Austin, Texas, with locations around the world, Planview has more than 1,300 employees supporting 4,500 customers and 2.6 million users worldwide. For more information, visit www.planview.com.

SUPPORTING ORGANISATION

SIRIM is a premier industrial research and technology organisation in Malaysia, wholly-owned by the Minister​ of Finance Incorporated. With over forty years of experience and expertise, SIRIM is mandated as the machinery for research and technology development, and the national champion of quality. SIRIM has always played a major role in the development of the country’s private sector. By tapping into our expertise and knowledge base, we focus on developing new technologies and improvements in the manufacturing, technology and services sectors. We nurture Small Medium Enterprises (SME) growth with solutions for technology penetration and upgrading, making it an ideal technology partner for SMEs.

PARTNER

HashiCorp provides infrastructure automation software for multi-cloud environments, enabling enterprises to unlock a common cloud operating model to provision, secure, connect, and run any application on any infrastructure. HashiCorp tools allow organizations to deliver applications faster by helping enterprises transition from manual processes and ITIL practices to self-service automation and DevOps practices. 

PARTNER

IBM is a leading global hybrid cloud and AI, and business services provider. We help clients in more than 175 countries capitalize on insights from their data, streamline business processes, reduce costs and gain the competitive edge in their industries. Nearly 3,000 government and corporate entities in critical infrastructure areas such as financial services, telecommunications and healthcare rely on IBM’s hybrid cloud platform and Red Hat OpenShift to affect their digital transformations quickly, efficiently and securely. IBM’s breakthrough innovations in AI, quantum computing, industry-specific cloud solutions and business services deliver open and flexible options to our clients. All of this is backed by IBM’s legendary commitment to trust, transparency, responsibility, inclusivity and service.