Frequently asked questions regarding Business Continuity Planning (BCP) and FINRA Rule 4370.
The Cyber and Analytics Unit (CAU) within FINRA’s Member Supervision program is highlighting recent updates to the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) 2.0, which is a resource designed to help organizations manage and reduce cybersecurity risks, regardless of their degree of cybersecurity sophistication.
This follow-up to the September 2021 targeted exam (sweep) of firms’ practices related to their acquisition of customers through social media channels and their sharing of customers’ usage information with affiliates and non-affiliated third parties summarizes selected practices FINRA has observed firms implement to this point in the sweep.
Is there a rule that addresses prohibited conditions relating to expungement of customer dispute information?
Yes, FINRA Rule 2081 provides that no member or associated person shall condition or seek to condition settlement of a dispute with a customer on, or to otherwise compensate the customer for, the customer’s agreement to consent to, or not to oppose, the member’s or associated person’s