Marketplace Pricing Download

FINRA Broker-Dealer Cybersecurity Guidance Expert

FINRA Broker-Dealer Cybersecurity Guidance expert. Stub-depth framework plugin that routes to the SCF crosswalk. Level up by adding framework-specific context, assessment workflow, and evidence patterns.

ID: us.securities.us-finra-expert Version: 0.1.0 License: MIT Author: GRCEngClub Language: en Added: 2026-06-01
⬇ Download

FINRA Broker-Dealer Cybersecurity Guidance Expert

Stub-depth expertise for FINRA Cybersecurity Rules (builds on SEC Reg S-P and SEC 17a-4). This plugin is scaffolded from the SCF crosswalk (17 SCF controls map to 39 framework controls) and defers to /grc-engineer:gap-assessment for the actual compliance check.

Framework identity

  • SCF framework ID: usa-federal-sro-finra
  • Region: Americas
  • Country: US
  • Regulator: FINRA (Financial Industry Regulatory Authority)
  • Canonical source: FINRA cybersecurity guidance for broker-dealers

Scope and posture (placeholder — fill in when leveling up)

TODO: replace with framework-specific overview. Minimum sections for Reference-depth upgrade:

  • Territorial scope (who and where the framework applies)
  • Controlled-entity obligations (controller, processor, covered entity, etc.)
  • Mandatory timelines (breach notification, assessment cadence)
  • Regulator and enforcement mechanism
  • Interaction with other frameworks (adequacy decisions, mutual recognition)

Command routing

All commands in this plugin route through /grc-engineer:gap-assessment with framework ID usa-federal-sro-finra. Reference-depth plugins add:

  • evidence-checklist — framework-native evidence by control family
  • scope — applicability determination for the organization

Full-depth plugins add framework-specific workflow commands (examples in sibling plugins like soc2, fedramp-rev5, pci-dss).

Levelling up

See the Framework Plugin Guide for the Stub → Reference → Full progression checklist.

Related Skills

United States flagUnited States · securities

ATM Equity Distribution Agreement

Drafts a market-standard At-The-Market (ATM) Equity Distribution Agreement for public issuers conducting continuous shelf offerings under Rule 415(a)…

CaseMark
United States flagUnited States · securities

Bad Actor Disqualification Review (Rule 506(d))

Produces a Rule 506(d) bad actor disqualification review for private securities offerings, including a covered persons register, tailored questionnai…

CaseMark
United States flagUnited States · securities

Blue Sky Filings Compliance Workflow

Produces a practitioner-grade Blue Sky compliance memorandum and execution plan for U.S. securities offerings. Analyzes NSMIA covered securities pree…

CaseMark
United States flagUnited States · securities

Broker-Dealer Customer Agreement

Drafts SEC/FINRA-compliant Broker-Dealer Customer Agreements covering account opening, trading, margin, fees, risk disclosures, privacy, arbitration,…

CaseMark
United States flagUnited States · securities

Form ADV Part 1A — Filing Data

Fetches Form ADV Part 1A filing data and generates an interactive HTML filing guide + Excel filing reference. Covers Items 5.D/F/H, Schedule D §7.B.(…

carta