Members of the U.S. Navy Blue Angels fly over the World Trade Center in lower Manhattan as part of the 25th annual Fleet Week celebration in New York, May 23, 2012.  REUTERS/Eduardo Munoz

Reuters Photojournalism

Our day's top images, in-depth photo essays and offbeat slices of life. See the best of Reuters photography.  See more | Photo caption 

Photo

Maxim Hot 100

The world's most beautiful women as chosen by Maxim readers.  Slideshow 

Shreen Mohammad sits with other recruits during a military exercise at the Kabul Military Training Center (KMTC) in Kabul March 28, 2012. A landmark NATO summit in Chicago endorsed an exit strategy that calls for handing control of Afghanistan to its own security forces by the middle of next year but left questions unanswered about how to prevent a slide into chaos and a Taliban resurgence after allied troops are gone. Picture taken March 28, 2012.   REUTERS/Omar Sobhani (AFGHANISTAN - Tags: POLITICS MILITARY SOCIETY) ATTENTION EDITORS: PICTURE 18 OF 27 FOR PACKAGE 'AFGHAN ARMY RECRUIT'

Afghan army recruit

A look at an Afghan recruit as he goes through the process of joining the Afghan National Army.  Slideshow 

SEC tells companies to disclose cyber attacks

BOSTON/WASHINGTON | Thu Oct 13, 2011 7:55pm EDT

BOSTON/WASHINGTON (Reuters) - U.S. securities regulators formally asked public companies for the first time to disclose cyber attacks against them, following a rash of high-profile Internet crimes.

The Securities and Exchange Commission issued guidelines on Thursday that laid out the kind of information companies should disclose, such as cyber events that could lead to financial losses.

Senator John Rockefeller had asked the SEC to issue guidelines amid concern that it was becoming hard for investors to assess security risks if companies failed to mention data breaches in their public filings.

"Intellectual property worth billions of dollars has been stolen by cyber criminals, and investors have been kept completely in the dark. This guidance changes everything," Rockefeller said in a statement.

"It will allow the market to evaluate companies in part based on their ability to keep their networks secure. We want an informed market and informed consumers, and this is how we do it," Rockefeller said in a statement.

There is a growing sense of urgency about cyber security following breaches at Google Inc, Lockheed Martin Corp, the Pentagon's No. 1 supplier, Citigroup, the International Monetary Fund and others.

Tom Kellermann, chief technology officer of security firm AirPatrol Corp, said that the SEC guidance tells companies to report cyber attacks and disclose steps to remediate problems.

"They must also incorporate cyber events into their material risk reports," said Kellermann, who has advised U.S. President Obama on cyber policy.

The SEC gets into specifics, telling companies what type of data they might need to provide investors.

"Examples of estimates that may be affected by cyber incidents include estimates of warranty liability, allowances for product returns, capitalized software costs, inventory, litigation, and deferred revenue," it says.

(The document can be accessed on the SEC's website: www.sec.gov/divisions/corpfin/guidance/cfguidance-topic2.htm )

A report out earlier this month found that U.S. banks are losing ground in the battle to combat credit and debit card fraud because they balk at the expense of higher security. Globally, however, security is improving in the payment industry, according to data from The Nilson Report, a California trade publication.

There is some hope of U.S. legislation to address the problem, although the House of Representatives appears more interested in tackling it piecemeal while the Senate is opting for a more far-reaching approach.

Most of the concern has been focused on critical facilities like nuclear power, electricity, chemical and water treatment plants.

(Reporting by Sarah N. Lynch in Washington and Jim Finkle in Boston; Editing by Gary Hill, Bob Burgdorfer and Carol Bishopric)

Related Quotes and News

Company
Price
Related News
Comments (0)
This discussion is now closed. We welcome comments on our articles for a limited period after their publication.