Learn what the information security directive FCA Handbook SYSC 13 states about security awareness training.
Yes, the FCA Handbook SYSC 13 requires firms to ensure employees receive appropriate security awareness training to maintain operational resilience and mitigate cyber risks.
SYSC 13 outlines that financial firms must conduct regular training to educate staff on regulatory requirements, secure IT practices, and recognizing cyber threats. Training should align with the firm’s specific risk profile and operations.
Detailed guidance on SYSC 13 compliance is available from the UK Financial Conduct Authority (FCA) website. Firms can also work with compliance consultants to implement effective training programs.
Learn how Guardey's gamified security awareness training can help your organization with compliance.
Learn more