‘You will be hacked’: Are your 401(k) assets adequately protected?
Employers are constantly reminding employees to put enough money aside in their 401(k)s to ensure a comfortable lifestyle when it’s time to retire, but can you guarantee those funds are safe in the meantime?
The idea of workers’ 401(k) accounts falling victim to cyber-attacks is an alarming thought, but it’s something that employers should keep on their radars.
For one thing, it’s already happening. The Securities and Exchange Commissions (SEC) Office of Compliance Inspections and Examinations just issued a risk alert after its second round of examinations into retirement plans’ broker-dealers and registered investment advisors (RIAs) internal risk protections.
And with good reason. A staggering 88% of broker-dealers and 74% of RIAs told the SEC they’ve been subject to cyber-attacks (directly or through third-party vendors).
According to the SEC, malware and fraudulent emails were responsible for the bulk of the attacks and, while a number of attacks were stopped, an alarming number of breaches actually did take place.
Case in point: Around 25% of broker-dealers had losses of at least $5,000, and one RIA recorded a loss greater than $75,000 — though the client was eventually made whole on the loss.
The SEC’s findings also showed why employers have a reason to be concerned about the security of their401(k) plans: A quarter of broker-dealer losses stemmed from workers who were not following their established identity authentication processes.
‘Everyone is susceptible’
How dire is the 401(k) cyber-attack threat?
Peter Martini, the co-founder of iBoss Cybersecurity, puts it like this:
At the end of the day, your network will be hacked … 401(k) accounts really present some of the biggest exposure because people don’t check their accounts. Advisors and providers to plans also hold so much information on participants that hackers can steal [and] sell on the black market, which can then be leveraged for other attempts at fraud.
Martini went on to say that while everybody was at risk for this type of security issue, some firms were more vulnerable than others by stating:
Everyone is susceptible. Even more so with smaller firms, which usually have less protection less software, infrastructure and overall, less resources. They’re often the easiest targets. Thieves go after easy targets.
Based on these findings, Finance pros may want to sit down with any vendors, providers or RIA associated with their 401(k) plans to see what type of cyber-attack security they have in place.
Free Training & Resources
Webinars
Provided by Yooz
White Papers
Provided by UJET
Further Reading
Spreadsheets are the backbone of financial reporting, forecasting, and day-to-day analysis. But their flexibility comes with a trade-off: e...
Professional formatting enhances the readability and impact of your spreadsheets. Excel offers a wealth of tools to make your data visually...
A recent ransomware attack illustrates why an attacked company that pays ransom shouldn’t expect the hackers to live up to their end ...
Although Congress isn’t famous for cooperation, there was enough bipartisan support for the Secure 2.0 Act of 2022 (pages 817-946 of ...
Efficient navigation is key when working with large datasets and multiple worksheets in Excel. Mastering navigation shortcuts can save you ...
Looks like company executives are damned if they do and damned if they don’t report a financial violation committed by their companie...