The SEC’s M Holdings Enforcement Highlights the Importance of IT Fundamentals

Keyboard with a compliance button, representing SEC cybersecurity enforcement and IT controls for RIAs.

TL;DR– The SEC’s action against M Holdings wasn’t simply about multi-factor authentication (MFA).– The case highlights the importance of implementing and maintaining basic security controls and not just documenting them in policy.– For most RIAs with 5–25 employees, those controls are standard enterprise IT practices that are relatively straightforward to put in place with the […]

Can RIAs Use Claude AI Safely? The Questions Advisors Are Actually Asking

iStock 2203181438

TL;DR – Claude AI can be used safely in an RIA, but how you access it matters. Claude AI has been getting a lot of attention in financial services lately. Advisors are hearing that it’s more structured than other AI tools, better at summarizing complex information, and more “human-like” in reports and explanations As a […]

How RIAs Can Use AI Without Compromising Security or SEC Compliance

iStock 2195607659

TL;DR: Registered Investment Advisors can use AI safely, but only if it’s deployed inside a secure, governed environment. Artificial intelligence is everywhere. If you’re a registered investment advisor, you’ve likely heard about tools like ChatGPT, Microsoft Copilot, Claude AI, and other AI platforms promising productivity gains. Some firms are experimenting cautiously. Others are avoiding AI […]

The hidden cost of slow IT help desk support services for financial advisors

img blog IT Problems 06

For small to midsized registered investment advisory (RIA) firms, time translates directly into market opportunities. So when technology stalls, the entire business halts. Financial advisors frequently lose valuable hours waiting for technical issues, such as password resets, multifactor authentication lockouts, or software glitches, to be resolved by unresponsive IT teams. Choosing specialized IT help desk […]

Understanding the SEC cybersecurity rules investment advisors must follow in 2026

unnamed (17)

Running a successful wealth management firm means keeping up with frequent changes in regulations. The Securities and Exchange Commission (SEC) frequently updates its cybersecurity guidelines to protect investors and help maintain stable financial markets. As a financial advisor, you must follow these rules to prevent breaches and avoid costly fines. The SEC cybersecurity rules investment […]

2026 Guide to managed IT services pricing for RIAs

2026 Guide to managed IT services pricing for RIAs

As a small to midsized registered investment advisory (RIA) firm, balancing your technology and cybersecurity budget is a tough act. With mounting regulatory pressures and evolving technology, understanding current managed IT services pricing is crucial for building a secure, compliant, and efficient practice. You need a transparent partner who can cut through the noise to […]

How to choose a managed service provider for your RIA

unnamed (13)

Figuring out how to choose a managed service provider (MSP) can be a daunting task for any registered investment advisor (RIA). The wealth management industry has strict regulatory demands, so you need more than just an external company; you need a partner that understands these complexities. To find the right fit, look past generic promises […]

Understanding NIST password guidelines

password guidelines

The National Institute of Standards and Technology (NIST) is changing how businesses approach password security. Learn how updated guidelines, focused on length, usability, and layered protection, can help safeguard accounts without introducing unnecessary complexity. Why should your business listen to NIST? NIST is a US government agency that sets cybersecurity standards. Although originally created for […]

How to perform a successful IT risk assessment for RIAs

img blog IT staff at work teams 03 (1)

A proper IT risk assessment is one of the most reliable tools for protecting your organization’s sensitive data. Executing a structured risk assessment process helps you find hidden technology gaps before attackers can exploit them while also allowing you to meet demanding regulatory requirements without disrupting your daily operations. At a glance: What RIAs need […]