Marketplace Create skill Sign in

FINRA Broker-Dealer Cybersecurity Guidance Expert

FINRA Broker-Dealer Cybersecurity Guidance expert. Stub-depth framework plugin that routes to the SCF crosswalk. Level up by adding framework-specific context, assessment workflow, and evidence patterns.

ID: 90efc5df-5052-4c2b-98a4-22fa855b0929 Version: 0.1.0 License: MIT Author: GRCEngClub Language: en Added: 2026-06-15
⬇ Download

FINRA Broker-Dealer Cybersecurity Guidance Expert

Stub-depth expertise for FINRA Cybersecurity Rules (builds on SEC Reg S-P and SEC 17a-4). This plugin is scaffolded from the SCF crosswalk (17 SCF controls map to 39 framework controls) and defers to /grc-engineer:gap-assessment for the actual compliance check.

Framework identity

  • SCF framework ID: usa-federal-sro-finra
  • Region: Americas
  • Country: US
  • Regulator: FINRA (Financial Industry Regulatory Authority)
  • Canonical source: FINRA cybersecurity guidance for broker-dealers

Scope and posture (placeholder — fill in when leveling up)

TODO: replace with framework-specific overview. Minimum sections for Reference-depth upgrade:

  • Territorial scope (who and where the framework applies)
  • Controlled-entity obligations (controller, processor, covered entity, etc.)
  • Mandatory timelines (breach notification, assessment cadence)
  • Regulator and enforcement mechanism
  • Interaction with other frameworks (adequacy decisions, mutual recognition)

Command routing

All commands in this plugin route through /grc-engineer:gap-assessment with framework ID usa-federal-sro-finra. Reference-depth plugins add:

  • evidence-checklist — framework-native evidence by control family
  • scope — applicability determination for the organization

Full-depth plugins add framework-specific workflow commands (examples in sibling plugins like soc2, fedramp-rev5, pci-dss).

Levelling up

See the Framework Plugin Guide for the Stub → Reference → Full progression checklist.

Comments

Loading…

Related Skills

United States flagUnited States · securities

Sarbanes-Oxley Act of 2002 (SOX) Expert

Sarbanes-Oxley Act of 2002 (SOX) expert for ICFR-relevant IT and security work. Deep knowledge of 15 U.S.C. §§ 7201 et seq., §302/§404/§906 certifica…

GRCEngClub
United States flagUnited States · securities

Transfer Agent Agreement

Drafts U.S. transfer agent agreements between issuers and SEC-registered transfer agents covering appointment, stock ledger, transfer processing, Rul…

CaseMark
United States flagUnited States · securities

Securities Regulation Summary

Generates thematic compliance summaries of US securities regulation developments. Triggered when a user needs briefings on SEC rulemaking, enforcemen…

CaseMark
United States flagUnited States · securities

Simple Agreement for Future Equity (SAFE)

Drafts Simple Agreements for Future Equity (SAFE) for early-stage venture capital financing with valuation cap/discount mechanics, investor qualifica…

CaseMark
United States flagUnited States · securities

Suitability and Best Interest Policy (Reg BI)

Drafts board-ready Suitability and Best Interest policies for broker-dealers under FINRA Rule 2111 and SEC Regulation Best Interest (Reg BI). Covers …

CaseMark