2026 SEC Priorities Signal New Compliance Pressures for Financial Services

 

As financial markets continue to digitalise and compliance frameworks evolve, the SEC’s newly released 2026 Examination Priorities gives some guidance to regulated firms on what to focus on.

 

Chairman Paul Atkins and Acting Division Director Keith Cassidy emphasise a proactive, transparent regulatory direction focused on operational effectiveness. Notably, Atkins has directed the Division to:

 

  • Re-evaluate risk-based priorities in light of economic, technological, and geopolitical shifts;
  • Deploy limited examination resources more strategically, focusing on higher-impact areas such as cybersecurity, vendor oversight, and evolving technologies;
  • Enhance transparency through public engagement and clearer communication of examination observations.

 

This shift reinforces the SEC’s aim to be both risk-sensitive and outcome-oriented—providing firms a clearer compliance roadmap while tightening enforcement around core investor protection and market integrity concerns.

The Regulatory Pulse: Compliance Programs Under the Microscope

The SEC is doubling down on the effectiveness of compliance programs, particularly among investment advisers and broker-dealers. This includes scrutiny of recordkeeping, supervision, and the use of marketing channels—areas where firms’ reliance on electronic communications (email, messaging, voice, video) creates compliance vulnerabilities if not properly recorded and supervised.

Key Risk Areas to Consider

Cybersecurity & Operational Resilience: With high-profile outages (e.g., AWS) and breaches (e.g., Capita) fresh in mind, the SEC is emphasising resilient infrastructures.

 

Third-Party Oversight: The SEC is flagging vendor oversight, especially where third-party tools are used. Firms must ensure these tools are recordable and auditable, with proper governance policies and controls.

 

Use of AI Tools: The SEC, like many other regulators, has also highlighted emerging risks around AI—including transparency, explainability, and supervisory oversight when AI is integrated into compliance functions.

 

Keeping pace with ever-evolving expectations is challenging for firms relying on recording, reconciliation and surveilling over multiple communication channels, and more importantly demonstrating adequate systems and processes in place. Custodia aims to address this challenge by helping firms streamline their communication data record-keeping and reconciliation, and maintaining audit-ready records. For firms preparing for the 2026 exam cycle, investing in our CC1 services can be a practical step towards demonstrating compliance control, strengthening governance and resilience in a demanding regulatory landscape.

Latest news

How Regulators Assess WORM Storage During Audits

9 Mar 2026

How Regulators Assess WORM Storage During Audits

Learn how regulators assess data integrity during audits, why WORM storage matters, and where immuta…
Shadow Channels in Financial Services | WhatsApp & SMS Compliance

26 Feb 2026

Shadow Channels in Financial Services | WhatsApp & SMS Compliance

Shadow channels like WhatsApp, SMS, and personal devices lead to compliance risk due to data blind s…
Custodia and TD SYNNEX Announce New Strategic Partnership

19 Feb 2026

Custodia and TD SYNNEX Announce New Strategic Partnership

Custodia announces new partnership with TD SYNNEX to expand access to CC1, helping firms capture, se…