Information on cyber incidents Involving asset management firms Mar to Apr 2022 - May 2022


Reference Case Number: FOI9272

Freedom of Information: Right to know request:

  1. The number of monthly cyber incidents involving asset management firms, dating from March to April 2022.
  2. The percentage of these cyber incidents that involved ransomware.
  3. The percentage of these cyber incidents that involved breach/compromise of confidential information or personal data.

FCA response:

As previously advised, please note that we hold centralised records on major operational incidents reported to the FCA by individual firms under SUP 15.3 and Principle 11.  This includes incidents that are a result of cyber-attacks. 

These figures do not include cyber incidents at FCA regulated firms that have not been reported directly to the FCA.

All data / information is accurate as of 20 May 2022 and is subject to change due to ongoing investigations of incidents.

 

  1. The number of monthly cyber incidents involving asset management firms, dating from March 2022 to April 2022:

Month (2022)

Number of cyber incidents reported to the FCA in Asset Management Portfolio

March

2

April

0

 

  1. The percentage of these cyber incidents that involved ransomware:

 

Out of the 2 incidents reported as stated in Question 1, one / 50% of the incidents reported from March 2022 to April 2022 involved ransomware.

 

  1. The percentage of these cyber incidents that involved breach/compromise of confidential information or personal data:

 

Out of the 2 incidents reported as stated in Question 1, none of the incidents reported a breach/compromise of confidential information or personal data to the FCA.